Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kinofond.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 25 Feb 2015 22:17:07 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Thu, 26 Feb 2015 00:17:07 +0200 GMT
Set-Cookie: PHPSESSID=pi81i39soa4ptrad9clqdj4lt5; path=/
X-Powered-By: PHP/5.3.10-1ubuntu3.11
GET / HTTP/1.1
Host: kinofond.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 25 Feb 2015 22:17:07 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Thu, 26 Feb 2015 00:17:07 +0200 GMT
Set-Cookie: PHPSESSID=pi81i39soa4ptrad9clqdj4lt5; path=/
X-Powered-By: PHP/5.3.10-1ubuntu3.11
Second query (visit from search engine):
GET / HTTP/1.1
Host: kinofond.net
Referer: http://www.google.com/search?q=kinofond.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kinofond.net
Referer: http://www.google.com/search?q=kinofond.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://kinofond.net/ | 200 OK Content-Length: 10753 Content-Type: text/html | clean |
http://kinofond.net/combine/jquery.js,jqueryui.js,engine.js,pack.js,slider.js | 200 OK Content-Length: 175708 Content-Type: application/x-javascript | clean |
http://kinofond.net/reviews | 200 OK Content-Length: 93235 Content-Type: text/html | clean |
http://kinofond.net/control | 200 OK Content-Length: 10800 Content-Type: text/html | clean |
http://kinofond.net/rules | 200 OK Content-Length: 48257 Content-Type: text/html | clean |
http://kinofond.net/how | 200 OK Content-Length: 10968 Content-Type: text/html | clean |
http://kinofond.net/search?q=:now | 200 OK Content-Length: 42708 Content-Type: text/html | clean |
http://kinofond.net/top | 200 OK Content-Length: 9630 Content-Type: text/html | clean |
http://kinofond.net/top?c=video | 200 OK Content-Length: 9638 Content-Type: text/html | clean |
http://kinofond.net/top?c=game | 200 OK Content-Length: 9633 Content-Type: text/html | clean |
http://kinofond.net/top?c=audio | 200 OK Content-Length: 9636 Content-Type: text/html | clean |
http://kinofond.net/top?c=soft | 200 OK Content-Length: 9643 Content-Type: text/html | clean |
http://kinofond.net/top?c=file | 200 OK Content-Length: 9635 Content-Type: text/html | clean |
http://kinofond.net/contacts | 200 OK Content-Length: 12283 Content-Type: text/html | clean |
http://kinofond.net/contacts?c=video | 200 OK Content-Length: 12291 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kinofond.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kinofond.net/
Result: kinofond.net is not infected or malware details are not published yet.
Result: kinofond.net is not infected or malware details are not published yet.