Scanned pages/files
Request | Server response | Status |
http://robotreference.com/ | 200 OK Content-Length: 181850 Content-Type: text/html | clean |
http://robotreference.com/engine/classes/min/index.php?charset=windows-1251&g=general&5 | 200 OK Content-Length: 176245 Content-Type: application/x-javascript | clean |
http://robotreference.com/templates/robot/js/libs.js | 200 OK Content-Length: 1533 Content-Type: application/x-javascript | clean |
http://robotreference.com/templates/robot/js/slides.js | 200 OK Content-Length: 7193 Content-Type: application/x-javascript | clean |
http://tizerfly.net/viewt.js | 200 OK Content-Length: 20208 Content-Type: application/x-javascript | clean |
http://klonedaset.org/viewt.js | 200 OK Content-Length: 20208 Content-Type: application/x-javascript | clean |
http://robotreference.com/index.php?do=register | 200 OK Content-Length: 126056 Content-Type: text/html | clean |
http://robotreference.com/index.php?do=lostpassword | 200 OK Content-Length: 125374 Content-Type: text/html | clean |
http://robotreference.com/index.php?do=search&mode=advanced | 200 OK Content-Length: 133203 Content-Type: text/html | clean |
http://robotreference.com/porno/117882-taksist-podvez-simpatichnuyu-blondinochku.html | 200 OK Content-Length: 144959 Content-Type: text/html | suspicious |
Suspicious code found <div id="softer"><a href="http://hq1f-filues.en3r8.net.ua/?q=%D2%E0%EA%F1%E8%F1%F2+%EF%EE%E4%E2%E5%E7+%F1%E8%EC%EF%E0%F2%E8%F7%ED%F3%FE+%E1%EB%EE%ED%E4%E8%ED%EE%F7%EA%F3.torrent&r=14307&l=http%3A%2F%2Fletitbit.net%2Fdownload%2F04267.0e9c9fe9817dd9fe1ec07244dbf3%2Flexi_5.mp4.html%7Chttp%3A%2F%2Fvip-file.com%2Fdownloadlib%2F4010420527507359861-04267.0e9c9fe9817dd9fe1ec07244dbf3%2Flexi_5.mp4.html" target="_blank"></a></div> | ||
http://robotreference.com/porno/ | 200 OK Content-Length: 185107 Content-Type: text/html | clean |
http://robotreference.com/porno/117869-grudastoy-blondinochke-dostavil-maksimum-udovolstviya.html | 200 OK Content-Length: 145022 Content-Type: text/html | suspicious |
Suspicious code found <div id="softer"><a href="http://hq1f-filues.en3r8.net.ua/?q=%C3%F0%F3%E4%E0%F1%F2%EE%E9+%E1%EB%EE%ED%E4%E8%ED%EE%F7%EA%E5+%E4%EE%F1%F2%E0%E2%E8%EB+%EC%E0%EA%F1%E8%EC%F3%EC+%F3%E4%EE%E2%EE%EB%FC%F1%F2%E2%E8%FF.torrent&r=14307&l=http%3A%2F%2Fletitbit.net%2Fdownload%2F96092.929c913e88a94221e5826a5f7fef%2Fsaw_1.mp4.html%7Chttp%3A%2F%2Fvip-file.com%2Fdownloadlib%2F615587695514945180894-96092.929c913e88a94221e5826a5f7fef%2Fsaw_1.mp4.html" target="_blank"></a></div> | ||
http://robotreference.com/user/stasikm/ | 200 OK Content-Length: 125228 Content-Type: text/html | clean |
http://robotreference.com/index.php?do=feedback&user=361 | 200 OK Content-Length: 127005 Content-Type: text/html | clean |
http://robotreference.com/engine/dude/index/leech_out.php?a%3AaHR0cDovL25ldGtvbmNhLnJ1L2dhZGFuaXlhLzQ4MjQtZ2FkYW5pZS1uYS1rYXJ0YWguaHRtbA%3D%3D | 200 OK Content-Length: 1241 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: robotreference.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 25 Apr 2014 15:54:11 GMT
Pragma: no-cache
Server: nginx/0.6.32
Vary: Accept-Encoding
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=3b6a9748e1ee3531245b9ecee37ba085; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 25-Apr-2013 15:54:10 GMT; path=/; domain=.robotreference.com; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 25-Apr-2013 15:54:10 GMT; path=/; domain=.robotreference.com; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 25-Apr-2013 15:54:10 GMT; path=/; domain=.robotreference.com; httponly
X-Powered-By: PHP/5.2.6-1+lenny16
GET / HTTP/1.1
Host: robotreference.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 25 Apr 2014 15:54:11 GMT
Pragma: no-cache
Server: nginx/0.6.32
Vary: Accept-Encoding
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=3b6a9748e1ee3531245b9ecee37ba085; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 25-Apr-2013 15:54:10 GMT; path=/; domain=.robotreference.com; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 25-Apr-2013 15:54:10 GMT; path=/; domain=.robotreference.com; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 25-Apr-2013 15:54:10 GMT; path=/; domain=.robotreference.com; httponly
X-Powered-By: PHP/5.2.6-1+lenny16
Second query (visit from search engine):
GET / HTTP/1.1
Host: robotreference.com
Referer: http://www.google.com/search?q=robotreference.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: robotreference.com
Referer: http://www.google.com/search?q=robotreference.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=robotreference.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://robotreference.com/
Result: robotreference.com is not infected or malware details are not published yet.
Result: robotreference.com is not infected or malware details are not published yet.