Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gallery.gtsplus.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gallery.gtsplus.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://gallery.gtsplus.net/ | 200 OK Content-Length: 158 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.gtsplus.net <br /> <b>Fatal error</b>: Call-time pass-by-reference has been removed in <b>/home/gtsplus/public_html/files/pages/gallery.php</b> on line <b>448</b><br /> | ||
http://gallery.gtsplus.net/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gallery.gtsplus.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 06 Oct 2014 01:53:32 GMT
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html
Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' www.gtsplus.net gtsplus.net files.gtsplus.net pc.gtsplus.net trade.gtsplus.net files.gpxpl.us s7.addthis.com ct1.addthis.com pagead2.googlesyndication.com www.google-analytics.com www.gstatic.com
X-Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' www.gtsplus.net gtsplus.net files.gtsplus.net pc.gtsplus.net trade.gtsplus.net files.gpxpl.us s7.addthis.com ct1.addthis.com pagead2.googlesyndication.com www.google-analytics.com www.gstatic.com
X-Powered-By: PHP/5.4.30
X-Webkit-CSP: script-src 'self' 'unsafe-inline' 'unsafe-eval' www.gtsplus.net gtsplus.net files.gtsplus.net pc.gtsplus.net trade.gtsplus.net files.gpxpl.us s7.addthis.com ct1.addthis.com pagead2.googlesyndication.com www.google-analytics.com www.gstatic.com
GET / HTTP/1.1
Host: gallery.gtsplus.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 06 Oct 2014 01:53:32 GMT
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html
Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' www.gtsplus.net gtsplus.net files.gtsplus.net pc.gtsplus.net trade.gtsplus.net files.gpxpl.us s7.addthis.com ct1.addthis.com pagead2.googlesyndication.com www.google-analytics.com www.gstatic.com
X-Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' www.gtsplus.net gtsplus.net files.gtsplus.net pc.gtsplus.net trade.gtsplus.net files.gpxpl.us s7.addthis.com ct1.addthis.com pagead2.googlesyndication.com www.google-analytics.com www.gstatic.com
X-Powered-By: PHP/5.4.30
X-Webkit-CSP: script-src 'self' 'unsafe-inline' 'unsafe-eval' www.gtsplus.net gtsplus.net files.gtsplus.net pc.gtsplus.net trade.gtsplus.net files.gpxpl.us s7.addthis.com ct1.addthis.com pagead2.googlesyndication.com www.google-analytics.com www.gstatic.com
Second query (visit from search engine):
GET / HTTP/1.1
Host: gallery.gtsplus.net
Referer: http://www.google.com/search?q=gallery.gtsplus.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gallery.gtsplus.net
Referer: http://www.google.com/search?q=gallery.gtsplus.net
Result:
The result is similar to the first query. There are no suspicious redirects found.