Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=posobie.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://posobie.info/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: posobie.info
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, pre-check=0, post-check=0
Connection: close
Date: Fri, 06 Mar 2015 16:03:15 GMT
Pragma: no-cache
Server: nginx/1.0.15
Content-Type: text/html; charset=windows-1251
Expires: 0
Set-Cookie: posobie_forum___lastvisit=1425657795; expires=Fri, 01-Jan-1971 00:00:00 GMT; path=/; domain=posobie.info
Set-Cookie: posobie_forum___lastvisit=1425657795; expires=Fri, 01-Jan-1971 00:00:00 GMT; path=/; domain=posobie.info
Set-Cookie: posobie_forum_notified_new=1_1425657795; expires=Sat, 05-Mar-2016 16:03:15 GMT; path=/
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: posobie.info
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, pre-check=0, post-check=0
Connection: close
Date: Fri, 06 Mar 2015 16:03:15 GMT
Pragma: no-cache
Server: nginx/1.0.15
Content-Type: text/html; charset=windows-1251
Expires: 0
Set-Cookie: posobie_forum___lastvisit=1425657795; expires=Fri, 01-Jan-1971 00:00:00 GMT; path=/; domain=posobie.info
Set-Cookie: posobie_forum___lastvisit=1425657795; expires=Fri, 01-Jan-1971 00:00:00 GMT; path=/; domain=posobie.info
Set-Cookie: posobie_forum_notified_new=1_1425657795; expires=Sat, 05-Mar-2016 16:03:15 GMT; path=/
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: posobie.info
Referer: http://www.google.com/search?q=posobie.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: posobie.info
Referer: http://www.google.com/search?q=posobie.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.posobie.info/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 06 Mar 2015 16:03:14 GMT Location: http://posobie.info/ Server: nginx/1.0.15 Content-Length: 310 Content-Type: text/html; charset=iso-8859-1 | clean |
http://posobie.info/ | 200 OK Content-Length: 235608 Content-Type: text/html | clean |
http://posobie.info/js/js.33.js | 200 OK Content-Length: 267332 Content-Type: application/x-javascript | clean |
http://posobie.info/js/mousewheel.js | 200 OK Content-Length: 810 Content-Type: application/x-javascript | clean |
http://posobie.info/forum/js/vendor/jquery.ui.widget.js | 200 OK Content-Length: 15324 Content-Type: application/x-javascript | clean |
http://posobie.info/forum/js/jquery.fileupload.js | 200 OK Content-Length: 61038 Content-Type: application/x-javascript | clean |
http://posobie.info/js/msg.5.js | 200 OK Content-Length: 87734 Content-Type: application/x-javascript | clean |
http://posobie.info/js/fix.20.js | 200 OK Content-Length: 70589 Content-Type: application/x-javascript | clean |
http://posobie.info/js/for_non_authorized_user_6.js | 200 OK Content-Length: 24710 Content-Type: application/x-javascript | clean |
http://yandex.st/share/cnt.share.js | 200 OK Content-Length: 32520 Content-Type: application/x-javascript | clean |
http://posobie.info/js/swfobject.js | 200 OK Content-Length: 8803 Content-Type: application/x-javascript | clean |
http://www.posobie.info//vk.com/js/api/openapi.js?105/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 06 Mar 2015 16:03:17 GMT Location: http://posobie.info/vk.com/js/api/openapi.js?105/ Server: nginx/1.0.15 Content-Length: 339 Content-Type: text/html; charset=iso-8859-1 | clean |
http://posobie.info/vk.com/js/api/openapi.js?105/ | 404 Not Found Content-Length: 107056 Content-Type: text/html | clean |
http://posobie.info//vk.com/js/api/openapi.js?105/ | 404 Not Found Content-Length: 107056 Content-Type: text/html | clean |
http://posobie.info//mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 107052 Content-Type: text/html | clean |
http://posobie.info/add_new_user_visit.php?k=1&l=1&m=1422283331&server_name=posobie.info&r=http%3A%2F%2Fbepanthen.ru%2Frus%2Findex_id%3D8.html | HTTP/1.1 302 Found Connection: close Date: Fri, 06 Mar 2015 16:03:19 GMT Location: http://bepanthen.ru/rus/index_id=8.html Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=windows-1251 Set-Cookie: posobie_forum___lastvisit=1425657799; expires=Fri, 01-Jan-1971 00:00:00 GMT; path=/; domain=posobie.info Set-Cookie: posobie_forum___lastvisit=1425657799; expires=Fri, 01-Jan-1971 00:00:00 GMT; path=/; domain=posobie.info X-Powered-By: PHP/5.3.3 | clean |
http://bepanthen.ru/rus/index_id=8.html | 200 OK Content-Length: 8797 Content-Type: text/html | clean |
http://bepanthen.ru/rus/index_id=6.html | 200 OK Content-Length: 8203 Content-Type: text/html | clean |