Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=es-pmr.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://es-pmr.com/ | 200 OK Content-Length: 300432 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: company.es-pmr.com <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ru" lang="ru">
<head> <title>Ñàéòû, Ðåêëàìà è Îáúÿâëåíèÿ ÏÌÐ (Ïðèäíåñòðîâüÿ): Òèðàñïîëü, Áåíäåðû, Äíåñòðîâñê, Ñëîáîäçåÿ, Ãðèãîðèîïîëü, Äóáîññàðû, Ðûáíèöà, Êàìåíêà</title> <meta http-equiv="Content-Type" content="text/html; charset=windows-1251" /> <meta name="description" content="Ïîðòàë ES-PMR.COM" /> <meta name="keywords" content="DataLi ...[4201 bytes skipped]... | ||
http://es-pmr.com/inc/JsHttpRequest/JsHttpRequest.js | 200 OK Content-Length: 13892 Content-Type: text/javascript | clean |
http://es-pmr.com/inc/jquery-1.5.2.min.js | 200 OK Content-Length: 85927 Content-Type: text/javascript | clean |
http://es-pmr.com/templates/gamigo/js/tsurka_js.js | 200 OK Content-Length: 2074 Content-Type: text/javascript | clean |
http://es-pmr.com/templates/gamigo/js/dropdowntabs.js | 200 OK Content-Length: 6921 Content-Type: text/javascript | clean |
http://es-pmr.com/message_to_admin/message_to_admin.js | 200 OK Content-Length: 2589 Content-Type: text/javascript | clean |
http://es-pmr.com/engine/ajax/menu.js | 200 OK Content-Length: 3368 Content-Type: text/javascript | clean |
http://es-pmr.com/engine/ajax/dle_ajax.js | 200 OK Content-Length: 5167 Content-Type: text/javascript | clean |
http://es-pmr.com/engine/ajax/js_edit.js | 200 OK Content-Length: 7045 Content-Type: text/javascript | clean |
http://es-pmr.com/logo/jquery.Scroller-1.0.min.js | 200 OK Content-Length: 4087 Content-Type: text/javascript | clean |
http://es-pmr.com/logo/logo.js | 200 OK Content-Length: 3355 Content-Type: text/javascript | clean |
http://es-pmr.com/poll/js/ajax.js | 200 OK Content-Length: 4969 Content-Type: text/javascript | clean |
http://es-pmr.com/poll/js/ajax-poller.js | 200 OK Content-Length: 6478 Content-Type: text/javascript | clean |
http://es-pmr.com/inc/sun/sun_js.js | 200 OK Content-Length: 144 Content-Type: text/javascript | clean |
http://www.gmodules.com/gadgets/js/core:core.iglegacy:core.io.js?v=cafdd8afc8e09c11c8f958dcefe4924&container=default&debug=0 | 200 OK Content-Length: 48634 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: es-pmr.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 27 Aug 2014 23:17:20 GMT
Pragma: no-cache
Server: nginx/1.4.7
Content-Type: text/html; charset=WINDOWS-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=jalkjk9njin9v50qi9e5rdtp76; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.es-pmr.com; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.es-pmr.com; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.es-pmr.com; httponly
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: es-pmr.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 27 Aug 2014 23:17:20 GMT
Pragma: no-cache
Server: nginx/1.4.7
Content-Type: text/html; charset=WINDOWS-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=jalkjk9njin9v50qi9e5rdtp76; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.es-pmr.com; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.es-pmr.com; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.es-pmr.com; httponly
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: es-pmr.com
Referer: http://www.google.com/search?q=es-pmr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: es-pmr.com
Referer: http://www.google.com/search?q=es-pmr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.