Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kinook.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: alsrockofages.com
Result:
GET / HTTP/1.1
Host: alsrockofages.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: alsrockofages.com
Referer: http://www.google.com/search?q=alsrockofages.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: alsrockofages.com
Referer: http://www.google.com/search?q=alsrockofages.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://kinook.ru/ | HTTP/1.1 302 Found Connection: close Date: Tue, 26 Aug 2014 20:43:32 GMT Location: http://mobuna.com/e/3234 Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 3 Content-Type: text/html X-Powered-By: PHP/5.4.4-14+deb7u2 | malicious |
http://mobuna.com/e/3234 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 26 Aug 2014 21:00:26 GMT Pragma: no-cache Location: http://nihiu.net/m/CvUwHB0pU956AoWjjz7rQp0cGrw Server: nginx Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: phpsid=5kn3ra0h9trfh0uffdmfce8ns7; path=/ X-Powered-By: PHP/5.3.10-1ubuntu3.4 | malicious |
http://nihiu.net/m/cvuwhb0pu956aowjjz7rqp0cgrw | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 26 Aug 2014 21:00:27 GMT Pragma: no-cache Location: /e/2 Server: nginx Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: phpsid=5s6b4lbivdqlqtasi28apd8pg6; path=/ X-Powered-By: PHP/5.3.10-1ubuntu3.4 | clean |
http://nihiu.net/e/2 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 26 Aug 2014 21:00:27 GMT Pragma: no-cache Location: http://retoq.com/l/IyvlkgW4e7DWIaH5kqj8hvwH1Mt Server: nginx Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: phpsid=th7tlrtvsufkfr45g53hevlh24; path=/ X-Powered-By: PHP/5.3.10-1ubuntu3.4 | malicious |
http://retoq.com/l/iyvlkgw4e7dwiah5kqj8hvwh1mt | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 26 Aug 2014 21:00:28 GMT Pragma: no-cache Location: /e/2 Server: nginx Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: phpsid=qq6j23mohg6umab33uhg8k9ke3; path=/ X-Powered-By: PHP/5.3.10-1ubuntu3.4 | clean |
http://retoq.com/e/2 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 26 Aug 2014 21:00:28 GMT Pragma: no-cache Location: http://retoq.com/l/KEibCSrfKVxS67hhsZ6MW824Q4b Server: nginx Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: phpsid=u6o5juu9ae2i0rgmtb1tivtsu1; path=/ X-Powered-By: PHP/5.3.10-1ubuntu3.4 | clean |
http://retoq.com/test404page.js | 404 Not Found Content-Length: 13 Content-Type: text/html | clean |