Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tlt-nesvetay.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tlt-nesvetay.ru/ | 200 OK Content-Length: 34189 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4270 bytes skipped]... | ||
http://tlt-nesvetay.ru/engine/classes/js/jquery.js | 200 OK Content-Length: 93636 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/engine/classes/js/jqueryui.js | 200 OK Content-Length: 64860 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/engine/classes/js/dle_js.js | 200 OK Content-Length: 25071 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/engine/classes/highslide/highslide.js | 200 OK Content-Length: 46702 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/templates/futurico/js/libs/SCF.ui.js | 200 OK Content-Length: 1036 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/templates/futurico/js/libs/placeholder.js | 200 OK Content-Length: 4218 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/templates/futurico/js/libs/slideshow.js | 200 OK Content-Length: 1802 Content-Type: application/x-javascript | clean |
http://tlt-nesvetay.ru/film/ | 200 OK Content-Length: 36062 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4278 bytes skipped]... | ||
http://tlt-nesvetay.ru/anime/ | 200 OK Content-Length: 27248 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4282 bytes skipped]... | ||
http://tlt-nesvetay.ru/interesnoe/ | 404 Not Found Content-Length: 14437 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4272 bytes skipped]... | ||
http://tlt-nesvetay.ru/serials/ | 200 OK Content-Length: 27115 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4270 bytes skipped]... | ||
http://tlt-nesvetay.ru/mult/ | 200 OK Content-Length: 33090 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4278 bytes skipped]... | ||
http://tlt-nesvetay.ru/help/ | 200 OK Content-Length: 17072 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4274 bytes skipped]... | ||
http://tlt-nesvetay.ru/index.php?do=lostpassword | 200 OK Content-Length: 15621 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: googlanalytics.ws <!DOCTYPE html> <!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="ru"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="ru"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="ru"> <![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="ru"> <!--<![endif]--><head> <meta name='yandex-verificati ...[4297 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tlt-nesvetay.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 07 Jan 2015 12:04:06 GMT
Pragma: no-cache
Server: nginx/1.4.2
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=kq7erafhm9r3b4psffgovphur4; path=/; domain=.tlt-nesvetay.ru; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.tlt-nesvetay.ru; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.tlt-nesvetay.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.tlt-nesvetay.ru; httponly
X-Powered-By: PHP/5.4.19
GET / HTTP/1.1
Host: tlt-nesvetay.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 07 Jan 2015 12:04:06 GMT
Pragma: no-cache
Server: nginx/1.4.2
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=kq7erafhm9r3b4psffgovphur4; path=/; domain=.tlt-nesvetay.ru; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.tlt-nesvetay.ru; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.tlt-nesvetay.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.tlt-nesvetay.ru; httponly
X-Powered-By: PHP/5.4.19
Second query (visit from search engine):
GET / HTTP/1.1
Host: tlt-nesvetay.ru
Referer: http://www.google.com/search?q=tlt-nesvetay.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tlt-nesvetay.ru
Referer: http://www.google.com/search?q=tlt-nesvetay.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.