Scanned pages/files
Request | Server response | Status |
http://file-base.ru/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 25 Feb 2015 21:58:17 GMT Pragma: no-cache Location: http://mnog0ofilues.xdisil.pp.ua/?r=6767 Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=oAIw1EkZxOCUJDZ1qzOXy0; expires=Thu, 26-Feb-2015 03:58:17 GMT; path=/ Set-Cookie: cook=ok; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/ Set-Cookie: advData=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Set-Cookie: acc=6767; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/ Set-Cookie: pss=1424901497; expires=Thu, 26-Feb-2015 07:58:17 GMT; path=/ Set-Cookie: country=LT; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://mnog0ofilues.xdisil.pp.ua/?r=6767 | 200 OK Content-Length: 41946 Content-Type: text/html | clean |
http://mnog0ofilues.xdisil.pp.ua/js/jquery.min.js | 200 OK Content-Length: 93867 Content-Type: application/x-javascript | clean |
http://file-base.ru/js/main.js | 200 OK Content-Length: 1957 Content-Type: application/x-javascript | clean |
http://file-base.ru/login/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 25 Feb 2015 21:58:19 GMT Pragma: no-cache Location: http://mnog0ofilues.xdisil.pp.ua/?r=6767 Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=ueA-Ae-K6k-vUryRWB9He1; expires=Thu, 26-Feb-2015 03:58:19 GMT; path=/ Set-Cookie: cook=ok; expires=Fri, 27-Mar-2015 21:58:19 GMT; path=/ Set-Cookie: advData=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Set-Cookie: acc=6767; expires=Fri, 27-Mar-2015 21:58:19 GMT; path=/ Set-Cookie: pss=1424901499; expires=Thu, 26-Feb-2015 07:58:19 GMT; path=/ Set-Cookie: country=LT; expires=Fri, 27-Mar-2015 21:58:19 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://mnog0ofilues.xdisil.pp.ua/test404page.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://file-base.ru/?category=1 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 25 Feb 2015 21:58:19 GMT Pragma: no-cache Location: http://mnog0ofilues.xdisil.pp.ua/?category=1&r=6767 Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=nCLoqtgAbOk%2CIHI-hVylz1; expires=Thu, 26-Feb-2015 03:58:19 GMT; path=/ Set-Cookie: cook=ok; expires=Fri, 27-Mar-2015 21:58:19 GMT; path=/ Set-Cookie: advData=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Set-Cookie: acc=6767; expires=Fri, 27-Mar-2015 21:58:19 GMT; path=/ Set-Cookie: pss=1424901499; expires=Thu, 26-Feb-2015 07:58:19 GMT; path=/ Set-Cookie: country=LT; expires=Fri, 27-Mar-2015 21:58:19 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://mnog0ofilues.xdisil.pp.ua/?category=1&r=6767 | 200 OK Content-Length: 80426 Content-Type: text/html | clean |
http://mnog0ofilues.xdisil.pp.ua/js/main.js | 200 OK Content-Length: 1957 Content-Type: application/x-javascript | clean |
http://file-base.ru/?category=2 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 25 Feb 2015 21:58:20 GMT Pragma: no-cache Location: http://mnog0ofilues.xdisil.pp.ua/?category=2&r=6767 Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=t1bFxQseaSDo5wpslUywN3; expires=Thu, 26-Feb-2015 03:58:20 GMT; path=/ Set-Cookie: cook=ok; expires=Fri, 27-Mar-2015 21:58:20 GMT; path=/ Set-Cookie: advData=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/ Set-Cookie: acc=6767; expires=Fri, 27-Mar-2015 21:58:20 GMT; path=/ Set-Cookie: pss=1424901500; expires=Thu, 26-Feb-2015 07:58:20 GMT; path=/ Set-Cookie: country=LT; expires=Fri, 27-Mar-2015 21:58:20 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://mnog0ofilues.xdisil.pp.ua/?category=2&r=6767 | 200 OK Content-Length: 87265 Content-Type: text/html | clean |
http://mnog0ofilues.xdisil.pp.ua/ | 200 OK Content-Length: 44964 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4830 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/login/ | 200 OK Content-Length: 29887 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4797 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/sub_rules | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 25 Feb 2015 21:58:22 GMT Location: http://mnog0ofilues.xdisil.pp.ua/sub_rules/ Server: nginx/1.2.3 Content-Length: 184 Content-Type: text/html | clean |
http://mnog0ofilues.xdisil.pp.ua/sub_rules/ | 200 OK Content-Length: 71907 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4830 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/sub_control | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 25 Feb 2015 21:58:22 GMT Location: http://mnog0ofilues.xdisil.pp.ua/sub_control/ Server: nginx/1.2.3 Content-Length: 184 Content-Type: text/html | clean |
http://mnog0ofilues.xdisil.pp.ua/sub_control/ | 200 OK Content-Length: 34334 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4809 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/?category=1 | 200 OK Content-Length: 82668 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4777 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/?category=2 | 200 OK Content-Length: 89606 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4746 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/?category=3 | 200 OK Content-Length: 71686 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4827 bytes skipped]... | ||
http://mnog0ofilues.xdisil.pp.ua/?category=4 | 200 OK Content-Length: 67727 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mnogofiles.org <!DOCTYPE html>
<html> <head> <meta charset="UTF-8"> <title>MnogoFiles - CкаÑивайÑе: ÑоÑÑ, мÑзÑкÑ, видео, игÑÑ, книги, ÑеÑÐ¸Ð°Ð»Ñ Ð¸ мÑлÑÑÑилÑмÑ.</title> <link href='http://fonts.googleapis.com/css?family=PT+Sans&subset=latin,cyrillic-ext' rel='stylesheet' type='text/css'> <link rel="stylesheet" href="/css/style.css"> ...[4765 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: file-base.ru
Result:
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 25 Feb 2015 21:58:17 GMT
Pragma: no-cache
Location: http://mnog0ofilues.xdisil.pp.ua/?r=6767
Server: nginx/1.2.3
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=oAIw1EkZxOCUJDZ1qzOXy0; expires=Thu, 26-Feb-2015 03:58:17 GMT; path=/
Set-Cookie: cook=ok; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/
Set-Cookie: advData=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/
Set-Cookie: acc=6767; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/
Set-Cookie: pss=1424901497; expires=Thu, 26-Feb-2015 07:58:17 GMT; path=/
Set-Cookie: country=LT; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/
X-Powered-By: PHP/5.4.6
...0 bytes of data.
GET / HTTP/1.1
Host: file-base.ru
Result:
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 25 Feb 2015 21:58:17 GMT
Pragma: no-cache
Location: http://mnog0ofilues.xdisil.pp.ua/?r=6767
Server: nginx/1.2.3
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=oAIw1EkZxOCUJDZ1qzOXy0; expires=Thu, 26-Feb-2015 03:58:17 GMT; path=/
Set-Cookie: cook=ok; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/
Set-Cookie: advData=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/
Set-Cookie: acc=6767; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/
Set-Cookie: pss=1424901497; expires=Thu, 26-Feb-2015 07:58:17 GMT; path=/
Set-Cookie: country=LT; expires=Fri, 27-Mar-2015 21:58:17 GMT; path=/
X-Powered-By: PHP/5.4.6
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: file-base.ru
Referer: http://www.google.com/search?q=file-base.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: file-base.ru
Referer: http://www.google.com/search?q=file-base.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=file-base.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://file-base.ru/
Result: file-base.ru is not infected or malware details are not published yet.
Result: file-base.ru is not infected or malware details are not published yet.