Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nonku.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nonku.ru/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nonku.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 01 Sep 2014 01:24:28 GMT
Pragma: no-cache
Server: nginx/1.2.3
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: acc=13789; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: pss=1409534668; expires=Mon, 01-Sep-2014 11:24:28 GMT; path=/
Set-Cookie: country=LT; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: country=LT; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: c0524=1; expires=Mon, 01-Sep-2014 04:24:28 GMT; path=/
Set-Cookie: _ft=1409545468; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: sid=u2qneeav06fmfoidan0f1nfb96; path=/
X-Powered-By: PHP/5.4.6
GET / HTTP/1.1
Host: nonku.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 01 Sep 2014 01:24:28 GMT
Pragma: no-cache
Server: nginx/1.2.3
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: acc=13789; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: pss=1409534668; expires=Mon, 01-Sep-2014 11:24:28 GMT; path=/
Set-Cookie: country=LT; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: country=LT; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: c0524=1; expires=Mon, 01-Sep-2014 04:24:28 GMT; path=/
Set-Cookie: _ft=1409545468; expires=Wed, 01-Oct-2014 01:24:28 GMT; path=/
Set-Cookie: sid=u2qneeav06fmfoidan0f1nfb96; path=/
X-Powered-By: PHP/5.4.6
Second query (visit from search engine):
GET / HTTP/1.1
Host: nonku.ru
Referer: http://www.google.com/search?q=nonku.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nonku.ru
Referer: http://www.google.com/search?q=nonku.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nonku.ru/ | 200 OK Content-Length: 52285 Content-Type: text/html | clean |
http://nonku.ru/design/js/jquery.js | 200 OK Content-Length: 72174 Content-Type: application/x-javascript | clean |
http://nonku.ru/design/js/jquery.jcarousel.min.js | 200 OK Content-Length: 15650 Content-Type: application/x-javascript | clean |
http://nonku.ru/design/js/selectbox.js | 200 OK Content-Length: 3976 Content-Type: application/x-javascript | clean |
http://nonku.ru/design/js/lib.js | 200 OK Content-Length: 6997 Content-Type: application/x-javascript | clean |
http://nonku.ru/design/js/geo.js | 200 OK Content-Length: 3306 Content-Type: application/x-javascript | clean |
http://userapi.com/js/api/openapi.js?49 | 200 OK Content-Length: 64013 Content-Type: application/x-javascript | clean |
http://nonku.ru/registration/ | 200 OK Content-Length: 22034 Content-Type: text/html | clean |
http://nonku.ru/design/js/jquery.cookie.js | 200 OK Content-Length: 1941 Content-Type: application/x-javascript | clean |
http://nonku.ru/search/ | 200 OK Content-Length: 22034 Content-Type: text/html | clean |
http://nonku.ru/user/?id=114823 | 200 OK Content-Length: 17223 Content-Type: text/html | clean |
http://nonku.ru/design/js/facebox/facebox.js | 200 OK Content-Length: 9409 Content-Type: application/x-javascript | clean |
http://nonku.ru/login/ | 200 OK Content-Length: 11757 Content-Type: text/html | clean |
http://nonku.ru/feedback/ | 200 OK Content-Length: 13541 Content-Type: text/html | clean |
http://nonku.ru/subs/rules/ | 200 OK Content-Length: 43602 Content-Type: text/html | clean |