Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=prokru.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://prokru.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: prokru.com
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 22 Dec 2014 11:00:31 GMT
Pragma: no-cache
Location: http://www.prokru.com/v2
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: ci_session=a%3A4%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%22ecadb38c7473a6df01ae89c7b94005aa%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bi%3A1419246031%3B%7D4d481513676818c7f270d98c6a5202d5; expires=Mon, 22-Dec-2014 13:00:31 GMT; path=/
Set-Cookie: PHPSESSID=vvqe41idnrshh9n7db59tti4k7; path=/
X-Powered-By: PHP/5.3.10-1ubuntu3.15
...0 bytes of data.
GET / HTTP/1.1
Host: prokru.com
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 22 Dec 2014 11:00:31 GMT
Pragma: no-cache
Location: http://www.prokru.com/v2
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: ci_session=a%3A4%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%22ecadb38c7473a6df01ae89c7b94005aa%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bi%3A1419246031%3B%7D4d481513676818c7f270d98c6a5202d5; expires=Mon, 22-Dec-2014 13:00:31 GMT; path=/
Set-Cookie: PHPSESSID=vvqe41idnrshh9n7db59tti4k7; path=/
X-Powered-By: PHP/5.3.10-1ubuntu3.15
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: prokru.com
Referer: http://www.google.com/search?q=prokru.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: prokru.com
Referer: http://www.google.com/search?q=prokru.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://prokru.com/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 22 Dec 2014 11:00:31 GMT Pragma: no-cache Location: http://www.prokru.com/v2 Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: ci_session=a%3A4%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%22ecadb38c7473a6df01ae89c7b94005aa%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bi%3A1419246031%3B%7D4d481513676818c7f270d98c6a5202d5; expires=Mon, 22-Dec-2014 13:00:31 GMT; path=/ Set-Cookie: PHPSESSID=vvqe41idnrshh9n7db59tti4k7; path=/ X-Powered-By: PHP/5.3.10-1ubuntu3.15 | clean |
http://www.prokru.com/v2 | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 22 Dec 2014 11:00:32 GMT Location: http://www.prokru.com/v2/ Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Length: 313 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.prokru.com/v2/ | 200 OK Content-Length: 35242 Content-Type: text/html | clean |
http://www.prokru.com/v2/assets/jquery/jquery-1.8.3.min.js | 200 OK Content-Length: 93637 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/assets/jquery-ui/jquery-ui-1.9.2.custom.min.js | 200 OK Content-Length: 237802 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/assets/jquery-ui/jquery.ui.datepicker-th.js | 200 OK Content-Length: 1297 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/assets/coin-slider/coin-slider.min.js | 200 OK Content-Length: 8474 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/assets/jquery-treeview/jquery.treeview.js | 200 OK Content-Length: 8264 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/themes/prokru_v2/js/bootstrap.min.js | 200 OK Content-Length: 29110 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/themes/prokru_v2/js/bootbox.min.js | 200 OK Content-Length: 8418 Content-Type: application/javascript | clean |
http://www.prokru.com/v2/themes/prokru_v2/js/bootstrap.extra.js | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://prokru.com/utopup/manual_topup/inform_transfer | 404 Not Found Content-Length: 539 Content-Type: text/html | clean |
http://prokru.com/test404page.js | 404 Not Found Content-Length: 539 Content-Type: text/html | clean |
http://prokru.com/page/truemoney_topup | 404 Not Found Content-Length: 539 Content-Type: text/html | clean |