Scanned pages/files
Request | Server response | Status |
http://kinogo.net/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 06 Aug 2015 12:15:33 GMT Location: http://kinogo.co/ Server: cloudflare-nginx Content-Type: text/html CF-RAY: 211aaafa85120af6-WAW Set-Cookie: __cfduid=dd57b6692d191cc23d57431ad8007d6951438863333; expires=Fri, 05-Aug-16 12:15:33 GMT; path=/; domain=.kinogo.net; HttpOnly | clean |
http://kinogo.co/ | 200 OK Content-Length: 71452 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript"> var head = document.getElementsByTagName("head")[0], s = document.createElement("script"); s.setAttribute("type", "text/javascript"); s.setAttribute("src", "//psma02.com/js/sys.js"); s.onload = function(){ PSMA.display(["bn","89","600x300"]); } head.insertBefore(s, head.firstChild);</script> | ||
http://kinogo.co/kinogo.prm11.js | 200 OK Content-Length: 4732 Content-Type: application/x-javascript | clean |
http://kinogo.net/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: public, max-age=14400 Connection: close Date: Thu, 06 Aug 2015 12:15:34 GMT Location: http://kinogo.co/test404page.js Server: cloudflare-nginx Content-Type: text/html Expires: Thu, 06 Aug 2015 16:15:34 GMT CF-Cache-Status: MISS CF-RAY: 211aaafe65f505e1-WAW Set-Cookie: __cfduid=d7949753fd6e13c0dcef0bb50b9a67ecc1438863334; expires=Fri, 05-Aug-16 12:15:34 GMT; path=/; domain=.kinogo.net; HttpOnly | clean |
http://kinogo.co/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kinogo.net
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 06 Aug 2015 12:15:33 GMT
Location: http://kinogo.co/
Server: cloudflare-nginx
Content-Type: text/html
CF-RAY: 211aaafa85120af6-WAW
Set-Cookie: __cfduid=dd57b6692d191cc23d57431ad8007d6951438863333; expires=Fri, 05-Aug-16 12:15:33 GMT; path=/; domain=.kinogo.net; HttpOnly
GET / HTTP/1.1
Host: kinogo.net
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 06 Aug 2015 12:15:33 GMT
Location: http://kinogo.co/
Server: cloudflare-nginx
Content-Type: text/html
CF-RAY: 211aaafa85120af6-WAW
Set-Cookie: __cfduid=dd57b6692d191cc23d57431ad8007d6951438863333; expires=Fri, 05-Aug-16 12:15:33 GMT; path=/; domain=.kinogo.net; HttpOnly
Second query (visit from search engine):
GET / HTTP/1.1
Host: kinogo.net
Referer: http://www.google.com/search?q=kinogo.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kinogo.net
Referer: http://www.google.com/search?q=kinogo.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kinogo.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kinogo.net/
Result: kinogo.net is not infected or malware details are not published yet.
Result: kinogo.net is not infected or malware details are not published yet.