Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=onlinefilmbesplatno.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://onlinefilmbesplatno.ru/ | 200 OK Content-Length: 48090 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: my-tdska.com ...[1121 bytes skipped]... src="http://onlinefilmbesplatno.ru/speller/spell.js"></script> <script type="text/javascript" src="http://onlinefilmbesplatno.ru/js/script.js"></script> <script type="text/javascript" src="http://onlinefilmbesplatno.ru/behavior.js"></script> <script type="text/javascript" src="http://onlinefilmbesplatno.ru/js/rating.js"></script> <script type="text/javascript" src="http://my-tdska.com/js.js?p=%2Flpkplay7%2F&id=u5f5359539048d6eaea705630b7bedbe2&mf&be&mt"></script> <script src="http://userapi.com/js/api/openapi.js" type="text/javascript" charset="windows-1251"></script> <script type="text/javascript" src="http://vkontakte.ru/js/api/share.js" charset="windows-1251"></script> <link href="http://stg.odnoklassniki.ru/share/odkl_share.css" rel="stylesheet"> <script src="http://stg.odnoklassnik ...[2524 bytes skipped]... | ||
http://onlinefilmbesplatno.ru/js/jquery.js | 200 OK Content-Length: 57272 Content-Type: application/x-javascript | clean |
http://onlinefilmbesplatno.ru/js/script.js | 200 OK Content-Length: 939 Content-Type: application/x-javascript | clean |
http://onlinefilmbesplatno.ru/speller/spell.js | 200 OK Content-Length: 1779 Content-Type: application/x-javascript | clean |
http://onlinefilmbesplatno.ru/behavior.js | 404 Not Found Content-Length: 2267 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: my-tdska.com ...[1125 bytes skipped]... src="http://onlinefilmbesplatno.ru/speller/spell.js"></script> <script type="text/javascript" src="http://onlinefilmbesplatno.ru/js/script.js"></script> <script type="text/javascript" src="http://onlinefilmbesplatno.ru/behavior.js"></script> <script type="text/javascript" src="http://onlinefilmbesplatno.ru/js/rating.js"></script> <script type="text/javascript" src="http://my-tdska.com/js.js?p=%2Flpkplay7%2F&id=u5f5359539048d6eaea705630b7bedbe2&mf&be&mt"></script> <script src="http://userapi.com/js/api/openapi.js" type="text/javascript" charset="windows-1251"></script> <script type="text/javascript" src="http://vkontakte.ru/js/api/share.js" charset="windows-1251"></script> <link href="http://stg.odnoklassniki.ru/share/odkl_share.css" rel="stylesheet"> <script src="http://stg.odnoklassnik ...[661 bytes skipped]... | ||
http://onlinefilmbesplatno.ru/js/rating.js | 200 OK Content-Length: 3496 Content-Type: application/x-javascript | clean |
http://my-tdska.com/js.js?p=%2Flpkplay7%2F&id=u5f5359539048d6eaea705630b7bedbe2&mf&be&mt | HTTP/1.1 302 Found Connection: close Date: Thu, 22 Jan 2015 13:51:47 GMT Location: http://coskoro.ru/js.js?p=%2Flpkplay7%2F&id=u5f5359539048d6eaea705630b7bedbe2&mf=&be=&mt= Server: nginx_moded_by_kam/1.5.6 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://coskoro.ru/js.js?p=%2flpkplay7%2f&id=u5f5359539048d6eaea705630b7bedbe2&mf=&be=&mt= | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 22 Jan 2015 13:51:47 GMT Pragma: no-cache Location: http://cdn9.jump-wap.com/?redirect=http%3A%2F%2Fcoskoro.ru%2Fjs.js%3Fp%3D%252flpkplay7%252f%26id%3Du5f5359539048d6eaea705630b7bedbe2%26mf%3D%26be%3D%26mt%3D%26wft%3D1&hash=3add6797e0452b5edd942afbf3ac3532 Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=pttrhe8uefdb8jau02g1k4vo84; path=/ Set-Cookie: zewrbnmjfvgkuyhenb_sdcew_wft=1421934707 X-Powered-By: PHP/5.4.4-14+deb7u14 | clean |
http://cdn9.jump-wap.com/?redirect=http%3a%2f%2fcoskoro.ru%2fjs.js%3fp%3d%252flpkplay7%252f%26id%3du5f5359539048d6eaea705630b7bedbe2%26mf%3d%26be%3d%26mt%3d%26wft%3d1&hash=3add6797e0452b5edd942afbf3ac3532 | HTTP/1.1 302 Found Connection: close Date: Thu, 22 Jan 2015 13:51:47 GMT Location: http://coskoro.ru/js.js?p=%2flpkplay7%2f&id=u5f5359539048d6eaea705630b7bedbe2&mf=&be=&mt=&wft=1&hash=6ba6aa2be4bef368500ff55211859ee8 Server: nginx/1.6.2 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.4-14+deb7u14 | clean |
http://coskoro.ru/js.js?p=%2flpkplay7%2f&id=u5f5359539048d6eaea705630b7bedbe2&mf=&be=&mt=&wft=1&hash=6ba6aa2be4bef368500ff55211859ee8 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://coskoro.ru/test404page.js | 404 Not Found Content-Length: 288 Content-Type: text/html | clean |
http://userapi.com/js/api/openapi.js | 200 OK Content-Length: 64063 Content-Type: application/x-javascript | clean |
http://vkontakte.ru/js/api/share.js | 200 OK Content-Length: 10156 Content-Type: application/x-javascript | clean |
http://stg.odnoklassniki.ru/share/odkl_share.js | 200 OK Content-Length: 12312 Content-Type: application/x-javascript | clean |
http://st.pc.adonweb.ru/js/adv_out.js | 200 OK Content-Length: 8095 Content-Type: application/javascript | clean |
http://biggnatas.uk.to/NDI1MzMwOWFwaS9kaXN0cmliLnBocD9pZD0zMzYzJmNvZGVfdHlwZT1V | 500 Can't connect to biggnatas.uk.to:80 Content-Length: 190 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: onlinefilmbesplatno.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 22 Jan 2015 13:52:09 GMT
ETag: "a66543e044f917de862ff872d1f4151d"
Server: nginx
Content-Length: 48090
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.3
...48090 bytes of data.
GET / HTTP/1.1
Host: onlinefilmbesplatno.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 22 Jan 2015 13:52:09 GMT
ETag: "a66543e044f917de862ff872d1f4151d"
Server: nginx
Content-Length: 48090
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.3
...48090 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: onlinefilmbesplatno.ru
Referer: http://www.google.com/search?q=onlinefilmbesplatno.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: onlinefilmbesplatno.ru
Referer: http://www.google.com/search?q=onlinefilmbesplatno.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.