Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fortuna.km.ua
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fortuna.km.ua/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fortuna.km.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 12 Sep 2014 01:00:22 GMT
Pragma: no-cache
Server: nginx/0.5.34
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Fri, 12 Sep 2014 01:00:21 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: e47a7f1958d27dd2129755241a6b1653=96bf29df880529a66619947d141a5952; path=/
Set-Cookie: virtuemart=96bf29df880529a66619947d141a5952
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: fortuna.km.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 12 Sep 2014 01:00:22 GMT
Pragma: no-cache
Server: nginx/0.5.34
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Fri, 12 Sep 2014 01:00:21 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: e47a7f1958d27dd2129755241a6b1653=96bf29df880529a66619947d141a5952; path=/
Set-Cookie: virtuemart=96bf29df880529a66619947d141a5952
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: fortuna.km.ua
Referer: http://www.google.com/search?q=fortuna.km.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fortuna.km.ua
Referer: http://www.google.com/search?q=fortuna.km.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://fortuna.km.ua/ | 200 OK Content-Length: 79582 Content-Type: text/html | clean |
http://fortuna.km.ua/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://fortuna.km.ua/modules/mod_swmenupro/DropDownMenuX_Packed.js | 200 OK Content-Length: 6091 Content-Type: application/javascript | clean |
http://fortuna.km.ua/images/stories/price/Fortuna_sayt_PRICE.xls | 200 OK Content-Length: 218624 Content-Type: application/vnd.ms-excel | clean |
http://fortuna.km.ua/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://fortuna.km.ua/index.php?option=com_content&view=frontpage&Itemid=1 | 200 OK Content-Length: 79719 Content-Type: text/html | clean |
http://fortuna.km.ua/index.php?option=com_content&view=article&id=137&Itemid=45 | 200 OK Content-Length: 26488 Content-Type: text/html | clean |
http://fortuna.km.ua/index.php?option=com_content&view=article&id=13&Itemid=35 | 200 OK Content-Length: 48880 Content-Type: text/html | clean |
http://fortuna.km.ua/index.php?option=com_content&view=article&id=47&Itemid=37 | 200 OK Content-Length: 88732 Content-Type: text/html | clean |
http://fortuna.km.ua/index.php?option=com_content&view=category&layout=blog&id=1&Itemid=4 | 200 OK Content-Length: 30784 Content-Type: text/html | clean |
http://fortuna.km.ua/index.php?option=com_virtuemart&Itemid=41 | 200 OK Content-Length: 30078 Content-Type: text/html | clean |
http://fortuna.km.ua/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/default&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js&subdir[2]=/js/mootools&file[2]=mootools-release-1.11.js&subdir[3]=/js/mootools&file[3]=mooPrompt.js | 200 OK Content-Length: 56751 Content-Type: text/javascript | clean |
http://fortuna.km.ua/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/js&file[0]=wz_tooltip.js | 200 OK Content-Length: 38065 Content-Type: text/javascript | clean |
http://fortuna.km.ua/index.php?option=com_kunena&Itemid=5 | 200 OK Content-Length: 30425 Content-Type: text/html | clean |
http://fortuna.km.ua/components/com_kunena/template/default/js/jquery-1.3.2.min.js | 200 OK Content-Length: 57254 Content-Type: application/javascript | clean |