Scanned pages/files
Request | Server response | Status |
http://trahtah.ru/ | 200 OK Content-Length: 32904 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: advertom.com ...[8386 bytes skipped]... lt;li class="lbtn"><input title="Íàéòè" alt="Íàéòè" type="image" src="/templates/trah/images/spacer.gif" /></li> </ul> </form> </div></div> <div class="body"> <noindex> <script type="text/javascript"> teasernet_blockid = 446033; teasernet_padid = 146341; </script> <script type="text/javascript" src="http://advertom.com/63f90de2e7277f/cf3e8.js"></script> </noindex> <div class="vsep"> <div id="midside" class="lcol"> <div align="center" class="hbanner"> </div> <noindex><script type="text/javascript">var TC_FeedURL = "http://feeds.tubecontext.com/?x=323038337c32323630397c33333433";</script><script type="text/javas ...[32428 bytes skipped]... | ||
http://trahtah.ru/engine/classes/js/jquery.js | 200 OK Content-Length: 93637 Content-Type: application/javascript | clean |
http://trahtah.ru/engine/classes/js/jqueryui.js | 200 OK Content-Length: 64860 Content-Type: application/javascript | clean |
http://trahtah.ru/engine/classes/js/dle_js.js | 200 OK Content-Length: 24985 Content-Type: application/javascript | clean |
http://trahtah.ru/templates/trah/js/libs.js | 200 OK Content-Length: 1533 Content-Type: application/javascript | clean |
http://advertom.com/63f90de2e7277f/cf3e8.js | 200 OK Content-Length: 15415 Content-Type: application/x-javascript | clean |
http://feeds.tubecontext.com/OverlayForEmbed.js | 200 OK Content-Length: 8950 Content-Type: application/x-javascript | clean |
http://modelatos.com/static/tds.js | 200 OK Content-Length: 18750 Content-Type: application/x-javascript | clean |
http://trahtah.ru/engine/modules/online/hint.js | 200 OK Content-Length: 1725 Content-Type: application/javascript | clean |
http://trahtah.ru//mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 22854 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: advertom.com ...[8386 bytes skipped]... lt;li class="lbtn"><input title="Íàéòè" alt="Íàéòè" type="image" src="/templates/trah/images/spacer.gif" /></li> </ul> </form> </div></div> <div class="body"> <noindex> <script type="text/javascript"> teasernet_blockid = 446033; teasernet_padid = 146341; </script> <script type="text/javascript" src="http://advertom.com/63f90de2e7277f/cf3e8.js"></script> </noindex> <div class="vsep"> <div id="midside" class="lcol"> <div align="center" class="hbanner"> </div> <div class="berrors"><div class="berrors"> <b>Âíèìàíèå, îáíàðóæåíà îøèáêà</b><br /> Ê ñîæàëåíèþ, ñòðàíèöà 404.html äëÿ Âàñ íå äîñòóïíà: âîçìîæíî, áûë èçìåíåí åå àäðåñ èëè îíà ...[19404 bytes skipped]... | ||
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 11630 Content-Type: application/javascript | clean |
http://v.limon.biz/v/122521 | 200 OK Content-Length: 141 Content-Type: text/html | clean |
http://v.limon.biz/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: trahtah.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 31 Mar 2014 13:10:24 GMT
Pragma: no-cache
Server: nginx/1.5.0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=cc52af473b0f13a21ba57a134a5fcedb; path=/; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Sun, 31-Mar-2013 13:10:23 GMT; path=/; httponly
Set-Cookie: dle_password=deleted; expires=Sun, 31-Mar-2013 13:10:23 GMT; path=/; httponly
Set-Cookie: dle_hash=deleted; expires=Sun, 31-Mar-2013 13:10:23 GMT; path=/; httponly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: trahtah.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 31 Mar 2014 13:10:24 GMT
Pragma: no-cache
Server: nginx/1.5.0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=cc52af473b0f13a21ba57a134a5fcedb; path=/; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Sun, 31-Mar-2013 13:10:23 GMT; path=/; httponly
Set-Cookie: dle_password=deleted; expires=Sun, 31-Mar-2013 13:10:23 GMT; path=/; httponly
Set-Cookie: dle_hash=deleted; expires=Sun, 31-Mar-2013 13:10:23 GMT; path=/; httponly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: trahtah.ru
Referer: http://www.google.com/search?q=trahtah.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: trahtah.ru
Referer: http://www.google.com/search?q=trahtah.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=trahtah.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://trahtah.ru/
Result: trahtah.ru is not infected or malware details are not published yet.
Result: trahtah.ru is not infected or malware details are not published yet.