Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fighters.kg
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://fighters.kg/ | 200 OK Content-Length: 42709 Content-Type: text/html | clean |
http://fighters.kg/engine/classes/js/jquery.js | 200 OK Content-Length: 91340 Content-Type: application/x-javascript | clean |
http://fighters.kg/engine/classes/js/jqueryui.js | 200 OK Content-Length: 64578 Content-Type: application/x-javascript | clean |
http://fighters.kg/engine/classes/js/dle_js.js | 200 OK Content-Length: 16095 Content-Type: application/x-javascript | clean |
http://fighters.kg/engine/classes/highslide/highslide.js | 200 OK Content-Length: 32993 Content-Type: application/x-javascript | clean |
http://fighters.kg/templates/Default/css/monkey.js | 200 OK Content-Length: 74404 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var MooTools={version:'1.11'};function $defined(obj){return(obj!=undefined);};function $type(obj){if(!$defined(obj))return false;if(obj.htmlElement)return'element';var type=typeof obj;if(type=='object'&&obj.nodeName){switch(obj.nodeType){case 1:return'element';case 3:return(/\S/).test(obj.nodeValue)?'textnode':'whitespace';}} if(type=='object'||type=='function'){switch(obj.constructor){case Array:return'array';case RegExp:return'regexp';case Class:return'class';} if(typeof obj.le Antivirus reports:
| ||
http://fighters.kg/templates/Default/css/engine.js | 200 OK Content-Length: 2206 Content-Type: application/x-javascript | clean |
http://fighters.kg/templates/Default/css/image_show.js | 200 OK Content-Length: 6392 Content-Type: application/x-javascript | clean |
http://fighters.kg/templates/Default/css/script.js | 200 OK Content-Length: 3013 Content-Type: application/x-javascript | clean |
http://fighters.kg/index.php?do=register | 200 OK Content-Length: 20949 Content-Type: text/html | clean |
http://fighters.kg/index.php?do=lostpassword | 200 OK Content-Length: 20453 Content-Type: text/html | clean |
http://www.google.com/recaptcha/api/challenge?k=6LeoTu4SAAAAAE9vm2JrJuAJy_v8SedKwhZ-k22O | 200 OK Content-Length: 8926 Content-Type: text/javascript | clean |
http://fighters.kg/soldiers/ | 200 OK Content-Length: 34553 Content-Type: text/html | clean |
http://fighters.kg/photo_gallery/ | 200 OK Content-Length: 34721 Content-Type: text/html | clean |
http://fighters.kg/video_gallery/ | 200 OK Content-Length: 33982 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fighters.kg
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 15 Jun 2014 16:18:04 GMT
Pragma: no-cache
Server: nginx/1.4.7
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=f522e380b76f2c1ced770748a125d2cf; path=/
Set-Cookie: dle_user_id=deleted; expires=Sat, 15-Jun-2013 16:18:06 GMT; path=/; domain=.fighters.kg; httponly
Set-Cookie: dle_password=deleted; expires=Sat, 15-Jun-2013 16:18:06 GMT; path=/; domain=.fighters.kg; httponly
Set-Cookie: dle_hash=deleted; expires=Sat, 15-Jun-2013 16:18:06 GMT; path=/; domain=.fighters.kg; httponly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: fighters.kg
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 15 Jun 2014 16:18:04 GMT
Pragma: no-cache
Server: nginx/1.4.7
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=f522e380b76f2c1ced770748a125d2cf; path=/
Set-Cookie: dle_user_id=deleted; expires=Sat, 15-Jun-2013 16:18:06 GMT; path=/; domain=.fighters.kg; httponly
Set-Cookie: dle_password=deleted; expires=Sat, 15-Jun-2013 16:18:06 GMT; path=/; domain=.fighters.kg; httponly
Set-Cookie: dle_hash=deleted; expires=Sat, 15-Jun-2013 16:18:06 GMT; path=/; domain=.fighters.kg; httponly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: fighters.kg
Referer: http://www.google.com/search?q=fighters.kg
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fighters.kg
Referer: http://www.google.com/search?q=fighters.kg
Result:
The result is similar to the first query. There are no suspicious redirects found.