Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cyberjunkie.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cyberjunkie.org
Result:
HTTP/1.1 302 Found
Connection: close
Date: Thu, 26 Feb 2015 22:23:11 GMT
Location: http://reltime2012.ru/frunleh?9
Server: Apache
Content-Length: 215
Content-Type: text/html; charset=iso-8859-1
...215 bytes of data.
GET / HTTP/1.1
Host: cyberjunkie.org
Result:
HTTP/1.1 302 Found
Connection: close
Date: Thu, 26 Feb 2015 22:23:11 GMT
Location: http://reltime2012.ru/frunleh?9
Server: Apache
Content-Length: 215
Content-Type: text/html; charset=iso-8859-1
...215 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: cyberjunkie.org
Referer: http://www.google.com/search?q=cyberjunkie.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cyberjunkie.org
Referer: http://www.google.com/search?q=cyberjunkie.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://cyberjunkie.org/ | HTTP/1.1 302 Found Connection: close Date: Thu, 26 Feb 2015 22:23:11 GMT Location: http://reltime2012.ru/frunleh?9 Server: Apache Content-Length: 215 Content-Type: text/html; charset=iso-8859-1 | clean |
http://reltime2012.ru/frunleh?9 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 26 Feb 2015 22:23:11 GMT Location: http://www.reltime2012.ru/frunleh?9 Server: nginx/1.4.1 Content-Length: 323 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.reltime2012.ru/frunleh?9 | 404 Not Found Content-Length: 1464 Content-Type: text/html | clean |
https://s3-eu-west-1.amazonaws.com/img.leads.su/leads_ad.js | 200 OK Content-Length: 1537 Content-Type: application/javascript | clean |
http://cyberjunkie.org/test404page.js | HTTP/1.1 302 Found Connection: close Date: Thu, 26 Feb 2015 22:23:12 GMT Location: http://reltime2012.ru/frunleh?9 Server: Apache Content-Length: 215 Content-Type: text/html; charset=iso-8859-1 | clean |
http://reltime2012.ru/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 26 Feb 2015 22:23:13 GMT Location: http://www.reltime2012.ru/test404page.js Server: nginx/1.4.1 Content-Length: 328 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.reltime2012.ru/test404page.js | 404 Not Found Content-Length: 1464 Content-Type: text/html | clean |
http://www.reltime2012.ru/ | 200 OK Content-Length: 155595 Content-Type: text/html | clean |
http://www.reltime2012.ru/kredityi.html | 200 OK Content-Length: 118965 Content-Type: text/html | clean |
http://www.reltime2012.ru/kreditnyie-kartyi.html | 200 OK Content-Length: 104435 Content-Type: text/html | clean |
http://www.reltime2012.ru/bizneskredit.html | 200 OK Content-Length: 92485 Content-Type: text/html | clean |
http://www.reltime2012.ru/ipoteka.html | 200 OK Content-Length: 88602 Content-Type: text/html | clean |
http://www.reltime2012.ru/avtokredityi.html | 200 OK Content-Length: 92425 Content-Type: text/html | clean |
http://www.reltime2012.ru/mikrokredityi.html | 200 OK Content-Length: 108339 Content-Type: text/html | clean |
http://www.reltime2012.ru/send/mili_m | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 26 Feb 2015 22:23:16 GMT Pragma: no-cache Location: http://cityadspix.com/click-DQBVTWCP-OKGCQ18V?bt=25&tl=1&sa=SU37_www_4996_89959 Server: nginx/1.4.1 Content-Length: 3 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=2sfibrr9f0q54kf74rhudef236; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://cityadspix.com/click-dqbvtwcp-okgcq18v?bt=25&tl=1&sa=su37_www_4996_89959 | HTTP/1.1 200 OK Connection: close Date: Thu, 26 Feb 2015 22:23:16 GMT Server: nginx Content-Type: text/html; charset=utf-8 Set-Cookie: skip_js_r=1; expires=Sat, 28-Mar-2015 22:23:16 GMT | clean |
http://cityadspix.com/click-dqbvtwcp-okgcq18v?bt=25&tl=1&sa=su37_www_4996_89959&no_js=1 | HTTP/1.1 301 Found Connection: close Date: Thu, 26 Feb 2015 22:23:16 GMT Location: http://cityads.ru/zrxMTI4MDg5NQ==/url/1?sa=backurl Server: nginx Content-Type: text/html P3P: policyref="/w3c/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA" Set-Cookie: cnt=c6a0e5ac984c657f659a3e11b256476f; expires=Fri, 26-Feb-2016 22:23:16 GMT; path=/; domain=.cityadspix.com | clean |
http://cityads.ru/zrxmti4mdg5nq==/url/1?sa=backurl | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Feb 2015 22:23:16 GMT Location: http://gameleads.ru/guide.php?cid=&sa=backurl Server: nginx Content-Type: text/html Set-Cookie: cnt=c57ee6940acd148bbe47933a534afa3d; expires=Fri, 26-Feb-2016 22:23:17 GMT; path=/; domain=.cityads.ru | clean |
http://gameleads.ru/guide.php?cid=&sa=backurl | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 26 Feb 2015 22:23:17 GMT Pragma: no-cache Location: http://cityadspix.com/click?trc=1424989397327632&cid=&sa=backurl Server: nginx Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Thu, 26 Feb 2015 22:23:17 GMT P3P: policyref="/w3c/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA" Set-Cookie: PHPSESSID=fffp3sdfht7p1udes5uvum73a3; path=/ Set-Cookie: nw=1; expires=Fri, 26-Feb-2016 22:23:17 GMT; path=/; domain=.gameleads.ru | clean |
http://cityadspix.com/click?trc=1424989397327632&cid=&sa=backurl | HTTP/1.1 200 OK Connection: close Date: Thu, 26 Feb 2015 22:23:17 GMT Server: nginx Content-Type: text/html; charset=utf-8 Set-Cookie: skip_js_r=1; expires=Sat, 28-Mar-2015 22:23:17 GMT | clean |
http://cityadspix.com/test404page.js | 200 OK Content-Length: 159 Content-Type: image/png | clean |
http://www.reltime2012.ru/send/platiza_m | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 26 Feb 2015 22:23:18 GMT Pragma: no-cache Location: http://pxl.leads.su/click/52ea450d93476dcbaf4e859a11b833c2?&aff_sub=SU37_www&aff_sub2=%2Fsend%2Fplatiza_m&aff_sub4=74122&aff_sub5=x&aff_sub3=x Server: nginx/1.4.1 Content-Length: 3 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=q79t33p4fr6j1ic6ktglorj0g2; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://pxl.leads.su/click/52ea450d93476dcbaf4e859a11b833c2?&aff_sub=su37_www&aff_sub2=%2fsend%2fplatiza_m&aff_sub4=74122&aff_sub5=x&aff_sub3=x | HTTP/1.1 302 OK Cache-Control: no-cache, no-store, must-revalidate Connection: close Date: Thu, 26 Feb 2015 22:23:18 GMT Pragma: no-cache Location: https://platiza.ru/index/register/?utm_source=leads&utm_medium=cpa&utm_campaign=lp1&partner_sale=leads&landing=236904&affiliate_id=988 Server: nginx Content-Type: text/html P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: session-click-351=rX3yadZWZa%2BgTFF%2F0LIwsMqXGmjaUj1Tz8PZOf2veDl%2Fe1N%2Fzzkk0rQ8hWcpefnkb21ayZ2fjMHMaqmIZ49TOGGefzhYWHGjjdZrjiiZEduQVDbX92KoqmZIm%2FKyjdA8VRf7HGx5blI9erdZG6vTBXCsJLkxSY%2F8VJVAitjH4Vwny18urArAWmrVMFfSNGXujcWq5miSVkRiyJ9Jvn4V0qnjTktPmEROo52se%2BKEBuTlxw0XyJEQIFKu6km5bPTClXpEsYmYCYFB2f2IDKC1%2FHE0rMKOblltwFnRNk5OlnI%3D; expires=Sun, 12-Apr-2015 22:23:18 GMT; path=/; httponly | clean |
https://platiza.ru/index/register/?utm_source=leads&utm_medium=cpa&utm_campaign=lp1&partner_sale=leads&landing=236904&affiliate_id=988 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Feb 2015 22:23:18 GMT Location: /old_browser/index.html Server: nginx/1.6.0 Content-Type: text/html | clean |
https://platiza.ru/old_browser/index.html | 200 OK Content-Length: 5541 Content-Type: text/html | clean |
https://platiza.ru/old_browser/js/qtabs.js | 200 OK Content-Length: 3164 Content-Type: application/javascript | clean |
http://www.reltime2012.ru/send/moneyman_m | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 26 Feb 2015 22:23:19 GMT Pragma: no-cache Location: http://pxl.leads.su/aff_c?offer_id=208&aff_id=988&pltfm_id=1080783&aff_sub=SU37_www&aff_sub2=%2Fsend%2Fmoneyman_m&aff_sub4=64677&aff_sub5=x&aff_sub3=x Server: nginx/1.4.1 Content-Length: 3 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=psjbh2ink3saahak0jbhanbbd6; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://pxl.leads.su/aff_c?offer_id=208&aff_id=988&pltfm_id=1080783&aff_sub=su37_www&aff_sub2=%2fsend%2fmoneyman_m&aff_sub4=64677&aff_sub5=x&aff_sub3=x | HTTP/1.1 302 OK Cache-Control: no-cache, no-store, must-revalidate Connection: close Date: Thu, 26 Feb 2015 22:23:19 GMT Pragma: no-cache Location: http://moneyman.ru/?partner=leadssu&partner_affiliate_id=988&partner_subid=f8f94be7a7f0526d505cbc193289f39c Server: nginx Content-Type: text/html P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: session-click-208=RUyoxZYkN1AlT7yR3ioAQvnjnr3ia8ifwJjuk63jrkEFAfL6Uczi73qQskzqLQrGPWX2lMjAewAMlEaV9SbyqQ0QMNoihQvhVCM3IeOX4u3dpSnpf8UPiro%2BVJ7D7L9W4gWcGuaDjGHIBnCSGN4LEkk4nWtwANPbZ%2FAGAscppGDm%2B78usopMmmKn08OMiroNYv7mmV1Y8A8Pg6fmEVggLsRvc1RpF0SRZ2d4WA7VG6yLrzBMgUYhT623uV277ECqzA1dOQWAmOIRdrcGisLCZA%3D%3D; expires=Mon, 27-Apr-2015 22:23:19 GMT; path=/; httponly | clean |
http://moneyman.ru/?partner=leadssu&partner_affiliate_id=988&partner_subid=f8f94be7a7f0526d505cbc193289f39c | 200 OK Content-Length: 87322 Content-Type: text/html | clean |
http://moneyman.ru//yandex.st/share/share.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 26 Feb 2015 22:23:20 GMT Location: http://moneyman.ru/yandex.st/share/share.js Server: nginx Vary: Accept-Encoding Content-Length: 330 Content-Type: text/html; charset=iso-8859-1 | clean |
http://moneyman.ru/yandex.st/share/share.js | 404 Not Found Content-Length: 34525 Content-Type: text/html | clean |