Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=planalt.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://planalt.ru/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://planalt.ru/ | 200 OK Content-Length: 41058 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: softportalcnn.info </div> <!-- #footer --> <style type="text/css"> .footer_menu ul li,.footer_menu ul li a, .txt_footer{ color:#999; font-size:10px; } </style> <script src="http://softportalcnn.info//skins/default/css/lending/js/jquery.cookie.js"></script> <script type="text/javascript" src="http://softportalcnn.info//skins/default/css/lending/js/script.js"></script> <script type="text/javascript"> $('.button_download, .button_down, .button_down_t').bind('click', function(){ $('.right_box_download').hide(); $('.reg').show(); } ); </script> <scr ...[37442 bytes skipped]... | ||
http://softportalcnn.info//skins/default/css/lending/js/jquery.cookie.js/ | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://softportalcnn.info/test404page.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://softportalcnn.info//skins/default/css/lending/js/script.js/ | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://softportalcnn.info//skins/default/css/lending/js/default_com.js/ | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://softportalcnn.info//skins/default/css/lending/js/vk_com.js/ | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: planalt.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 17 Jul 2014 08:05:11 GMT
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html
X-Powered-By: PHP/5.3.25
GET / HTTP/1.1
Host: planalt.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 17 Jul 2014 08:05:11 GMT
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html
X-Powered-By: PHP/5.3.25
Second query (visit from search engine):
GET / HTTP/1.1
Host: planalt.ru
Referer: http://www.google.com/search?q=planalt.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: planalt.ru
Referer: http://www.google.com/search?q=planalt.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.