Scanned pages/files
Request | Server response | Status |
http://kino-mironline.ru/ | 200 OK Content-Length: 118894 Content-Type: text/html | suspicious |
Suspicious code found <div id="ambn93034"></div> | ||
http://kino-mironline.ru/js/libs.js | 200 OK Content-Length: 1436 Content-Type: text/javascript | clean |
http://s3.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s3.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 22097 Content-Type: text/javascript | clean |
http://s3.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228554 Content-Type: text/javascript | clean |
http://kino-mironline.ru/news/ | 200 OK Content-Length: 89284 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. (function(){ var D=new Date(),d=document,b='body',ce='createElement',ac='appendChild',st='style',ds='display',n='none',gi='getElementById'; var i=d[ce]('iframe');i[st][ds]=n;d[gi]("MarketGidScriptRootC584405")[ac](i);try{var iw=i.contentWindow.document;iw.open();iw.writeln("<ht"+"ml><bo"+"dy></bo"+"dy></ht"+"ml>");iw.close();var c=iw[b];} catch(e){var iw=d;var c=d[gi]("MarketGidScriptRootC584405");}var dv=iw[ce]('div');dv.id="MG_ID";dv[st][ds]=n;dv.innerHTML=584405;c[ac](dv); var s=iw[ce]('script');s.async='async';s.defer='defer';s.charset='utf-8';s.src="//jsc.marketgid.com/1/k/1.kino-mironline.ru.584405.js?t="+D.getYear()+D.getMonth()+D.getDate()+D.getHours();c[ac](s);})(); | ||
http://kino-mironline.ru/forum/ | 200 OK Content-Length: 56493 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. (function(){ var D=new Date(),d=document,b='body',ce='createElement',ac='appendChild',st='style',ds='display',n='none',gi='getElementById'; var i=d[ce]('iframe');i[st][ds]=n;d[gi]("MarketGidScriptRootC584405")[ac](i);try{var iw=i.contentWindow.document;iw.open();iw.writeln("<ht"+"ml><bo"+"dy></bo"+"dy></ht"+"ml>");iw.close();var c=iw[b];} catch(e){var iw=d;var c=d[gi]("MarketGidScriptRootC584405");}var dv=iw[ce]('div');dv.id="MG_ID";dv[st][ds]=n;dv.innerHTML=584405;c[ac](dv); var s=iw[ce]('script');s.async='async';s.defer='defer';s.charset='utf-8';s.src="//jsc.marketgid.com/1/k/1.kino-mironline.ru.584405.js?t="+D.getYear()+D.getMonth()+D.getDate()+D.getHours();c[ac](s);})(); | ||
http://gonews3.net/news.js | 200 OK Content-Length: 24741 Content-Type: application/x-javascript | clean |
http://tech4215978.ru/code/show.php?id=118 | 200 OK Content-Length: 1506 Content-Type: text/javascript | clean |
http://st.n.pc2ads.ru/js/adv_out.js | 200 OK Content-Length: 7462 Content-Type: application/x-javascript | clean |
http://kino-mironline.ru/gb/ | 200 OK Content-Length: 87910 Content-Type: text/html | suspicious |
Suspicious code found <div id="ambn93034"></div> | ||
http://kino-mironline.ru/index/0-3 | 200 OK Content-Length: 40851 Content-Type: text/html | suspicious |
Suspicious code found <div id="ambn93034"></div> | ||
http://kino-mironline.ru/index/faq_po_formatam_video/0-5 | 200 OK Content-Length: 52376 Content-Type: text/html | suspicious |
Suspicious code found <div id="ambn93034"></div> | ||
http://kino-mironline.ru/index/my_v_socialnykh_setjakh/0-10 | 200 OK Content-Length: 37438 Content-Type: text/html | suspicious |
Suspicious code found <div id="ambn93034"></div> | ||
http://kino-mironline.ru/index/0-2 | 200 OK Content-Length: 64269 Content-Type: text/html | suspicious |
Suspicious code found <div id="ambn93034"></div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kino-mironline.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Mon, 29 Jun 2015 03:07:30 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 2tv-zoomuCoz=; path=/; expires=Sat, 29-Jun-2013 03:07:30 GMT; domain=.kino-mironline.ru;
Set-Cookie: 2tv-zoomuCoz=; path=/; expires=Sat, 29-Jun-2013 03:07:30 GMT; domain=.kino-mironline.ru;
Set-Cookie: 2tv-zoomuCoz=; path=/; expires=Sat, 29-Jun-2013 03:07:30 GMT; domain=.kino-mironline.ru;
Set-Cookie: 2tv-zoomuzll=1435547250; path=/; expires=Tue, 28-Jun-2016 03:07:30 GMT; domain=.kino-mironline.ru;
GET / HTTP/1.1
Host: kino-mironline.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Mon, 29 Jun 2015 03:07:30 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 2tv-zoomuCoz=; path=/; expires=Sat, 29-Jun-2013 03:07:30 GMT; domain=.kino-mironline.ru;
Set-Cookie: 2tv-zoomuCoz=; path=/; expires=Sat, 29-Jun-2013 03:07:30 GMT; domain=.kino-mironline.ru;
Set-Cookie: 2tv-zoomuCoz=; path=/; expires=Sat, 29-Jun-2013 03:07:30 GMT; domain=.kino-mironline.ru;
Set-Cookie: 2tv-zoomuzll=1435547250; path=/; expires=Tue, 28-Jun-2016 03:07:30 GMT; domain=.kino-mironline.ru;
Second query (visit from search engine):
GET / HTTP/1.1
Host: kino-mironline.ru
Referer: http://www.google.com/search?q=kino-mironline.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kino-mironline.ru
Referer: http://www.google.com/search?q=kino-mironline.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kino-mironline.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kino-mironline.ru/
Result: kino-mironline.ru is not infected or malware details are not published yet.
Result: kino-mironline.ru is not infected or malware details are not published yet.