Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gopamarinki.tk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gopamarinki.tk
Result:
HTTP/1.1 203 Non-Authoritative Information
Cache-Control: no-cache
Connection: close
Date: Sun, 18 Jan 2015 12:56:32 GMT
Pragma: no-cache
Server: nginx/1.6.2
Vary: Accept-Encoding
Content-Length: 652
Content-Type: text/html;charset=UTF-8
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: JSESSIONID=EF160B51C1A54C00AD036F2B9C3480DE; Path=/; HttpOnly
X-Server: d55532222ff3
...652 bytes of data.
GET / HTTP/1.1
Host: gopamarinki.tk
Result:
HTTP/1.1 203 Non-Authoritative Information
Cache-Control: no-cache
Connection: close
Date: Sun, 18 Jan 2015 12:56:32 GMT
Pragma: no-cache
Server: nginx/1.6.2
Vary: Accept-Encoding
Content-Length: 652
Content-Type: text/html;charset=UTF-8
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: JSESSIONID=EF160B51C1A54C00AD036F2B9C3480DE; Path=/; HttpOnly
X-Server: d55532222ff3
...652 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: gopamarinki.tk
Referer: http://www.google.com/search?q=gopamarinki.tk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gopamarinki.tk
Referer: http://www.google.com/search?q=gopamarinki.tk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gopamarinki.tk/ | HTTP/1.1 203 Non-Authoritative Information Cache-Control: no-cache Connection: close Date: Sun, 18 Jan 2015 12:56:32 GMT Pragma: no-cache Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 652 Content-Type: text/html;charset=UTF-8 Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: JSESSIONID=EF160B51C1A54C00AD036F2B9C3480DE; Path=/; HttpOnly X-Server: d55532222ff3 | clean |
http://domain.dot.tk/p/?d=gopamarinki.tk&i=78.158.11.226&c=370&ro=0&ref=unknown&_=1421585792598 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 18 Jan 2015 12:56:32 GMT Location: http://fn.hgin.com/&_=1421585793 Server: Apache/1.3.41 (Unix) mod_perl/1.30 Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 | clean |
http://fn.hgin.com/&_=1421585793 | HTTP/1.1 302 Found Connection: close Date: Sun, 18 Jan 2015 12:56:33 GMT Location: http://a6shd.realshieldlinked.com/?kw=fn Server: Apache/2.2.15 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3 | clean |
http://a6shd.realshieldlinked.com/?kw=fn | HTTP/1.1 302 Moved Temporarily Connection: Close Date: Sun, 18 Jan 2015 12:56:34 GMT Location: http://et2zz.reward-zone.classkitten.country/?sov=265069507&hid=bthnhnnhhljbjblf&redid=6201&id=XNSX.-r6201 Server: nginx/1.2.8 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.23 | clean |
http://et2zz.reward-zone.classkitten.country/?sov=265069507&hid=bthnhnnhhljbjblf&redid=6201&id=xnsx.-r6201 | 200 OK Content-Length: 12365 Content-Type: text/html | clean |
http://et2zz.reward-zone.classkitten.country/terms/privacy.html | 200 OK Content-Length: 24260 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://et2zz.reward-zone.classkitten.country/templates/_common/footer_links/js/script.js | 200 OK Content-Length: 5674 Content-Type: application/javascript | clean |
http://et2zz.reward-zone.classkitten.country//translate.google.com/translate_a/element.js?cb=googleTranslateElementInit/ | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://et2zz.reward-zone.classkitten.country/test404page.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://gopamarinki.tk/terms/terms.html | HTTP/1.1 203 Non-Authoritative Information Cache-Control: no-cache Connection: close Date: Sun, 18 Jan 2015 12:56:38 GMT Pragma: no-cache Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 652 Content-Type: text/html;charset=UTF-8 Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: JSESSIONID=17C91BE887D4A6EE9C8B0EC5F1BEA177; Path=/; HttpOnly X-Server: 9a65da567311 | clean |
http://domain.dot.tk/p/?d=gopamarinki.tk&i=78.158.11.226&c=370&ro=0&ref=unknown&_=1421585798012 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 18 Jan 2015 12:56:38 GMT Location: http://fn.hgin.com/&_=1421585798 Server: Apache/1.3.41 (Unix) mod_perl/1.30 Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 | clean |
http://fn.hgin.com/&_=1421585798 | HTTP/1.1 302 Found Connection: close Date: Sun, 18 Jan 2015 12:56:38 GMT Location: http://a6shd.realshieldlinked.com/?kw=fn Server: Apache/2.2.15 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3 | clean |
http://gopamarinki.tk/terms/aboutus.html | HTTP/1.1 203 Non-Authoritative Information Cache-Control: no-cache Connection: close Date: Sun, 18 Jan 2015 12:56:38 GMT Pragma: no-cache Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 652 Content-Type: text/html;charset=UTF-8 Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: JSESSIONID=A46D7AA83ECAA1AF97D72EB49F8B66DA; Path=/; HttpOnly X-Server: d55532222ff3 | clean |
http://domain.dot.tk/p/?d=gopamarinki.tk&i=78.158.11.226&c=370&ro=0&ref=unknown&_=1421585798869 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 18 Jan 2015 12:56:38 GMT Location: http://fn.hgin.com/&_=1421585799 Server: Apache/1.3.41 (Unix) mod_perl/1.30 Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 | clean |
http://fn.hgin.com/&_=1421585799 | HTTP/1.1 302 Found Connection: close Date: Sun, 18 Jan 2015 12:56:39 GMT Location: http://a6shd.realshieldlinked.com/?kw=fn Server: Apache/2.2.15 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3 | clean |
http://gopamarinki.tk/terms/privacy.html | HTTP/1.1 203 Non-Authoritative Information Cache-Control: no-cache Connection: close Date: Sun, 18 Jan 2015 12:56:39 GMT Pragma: no-cache Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 652 Content-Type: text/html;charset=UTF-8 Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: JSESSIONID=D79C387E9284A5D4DB84993518096FDB; Path=/; HttpOnly X-Server: d55532222ff3 | clean |
http://domain.dot.tk/p/?d=gopamarinki.tk&i=78.158.11.226&c=370&ro=0&ref=unknown&_=1421585799488 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 18 Jan 2015 12:56:39 GMT Location: http://fn.hgin.com/&_=1421585799 Server: Apache/1.3.41 (Unix) mod_perl/1.30 Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 | clean |
http://gopamarinki.tk//reward-zone.classkitten.country/admin_config/ | HTTP/1.1 203 Non-Authoritative Information Cache-Control: no-cache Connection: close Date: Sun, 18 Jan 2015 12:56:39 GMT Pragma: no-cache Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 652 Content-Type: text/html;charset=UTF-8 Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: JSESSIONID=FA0CFC55E1E1C20FC41B033BB4A9E35B; Path=/; HttpOnly X-Server: 2ba43aed9191 | clean |
http://domain.dot.tk/p/?d=gopamarinki.tk&i=78.158.11.226&c=370&ro=0&ref=unknown&_=1421585799815 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 18 Jan 2015 12:56:39 GMT Location: http://fn.hgin.com/&_=1421585799 Server: Apache/1.3.41 (Unix) mod_perl/1.30 Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 | clean |