Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ukrcrewing.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ukrcrewing.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ukrcrewing.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 07 Oct 2014 02:45:34 GMT
Pragma: no-cache
Server: nginx/1.4.1
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=56d88cace2d3bab8fd1b6e90865f25c0; path=/
Set-Cookie: dle_user_id=deleted; expires=Mon, 07-Oct-2013 02:45:33 GMT; path=/; domain=.ukrcrewing.net; httponly
Set-Cookie: dle_password=deleted; expires=Mon, 07-Oct-2013 02:45:33 GMT; path=/; domain=.ukrcrewing.net; httponly
Set-Cookie: dle_hash=deleted; expires=Mon, 07-Oct-2013 02:45:33 GMT; path=/; domain=.ukrcrewing.net; httponly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: ukrcrewing.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 07 Oct 2014 02:45:34 GMT
Pragma: no-cache
Server: nginx/1.4.1
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=56d88cace2d3bab8fd1b6e90865f25c0; path=/
Set-Cookie: dle_user_id=deleted; expires=Mon, 07-Oct-2013 02:45:33 GMT; path=/; domain=.ukrcrewing.net; httponly
Set-Cookie: dle_password=deleted; expires=Mon, 07-Oct-2013 02:45:33 GMT; path=/; domain=.ukrcrewing.net; httponly
Set-Cookie: dle_hash=deleted; expires=Mon, 07-Oct-2013 02:45:33 GMT; path=/; domain=.ukrcrewing.net; httponly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: ukrcrewing.net
Referer: http://www.google.com/search?q=ukrcrewing.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ukrcrewing.net
Referer: http://www.google.com/search?q=ukrcrewing.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ukrcrewing.net/ | 200 OK Content-Length: 62664 Content-Type: text/html | clean |
http://ukrcrewing.net/engine/classes/min/index.php?charset=windows-1251&g=general&4 | 200 OK Content-Length: 171838 Content-Type: application/x-javascript | clean |
http://ukrcrewing.net/templates/Default/js/libs.js | 200 OK Content-Length: 1432 Content-Type: application/x-javascript | clean |
http://ukrcrewing.net/engine/classes/tagcloud/swfobject.js | 200 OK Content-Length: 6883 Content-Type: application/x-javascript | clean |
http://api-maps.yandex.ru/1.1/index.xml?key=
AKp_NFABAAAAwH5QGgIANjVxHO-CZClzMtpAgt-MeoNHgF8AAAAAAAAAAADe7_wntpbO87A0klJBmPrbE4YFlQ==~
AKOhNFABAAAA97TdAwIAVzpcaRhn0sc4sOXHd9iLRcTRRbQAAAAAAAAAAACLJvIGid82n7ChtPTlqWVPdyASkQ==~
ADd4NFABAAAAr1aCYgQAYQx1ZkCkNK3fLMZNIrF_CVbslLUAAAAAAAAAAAAYF0xs7JXh6DzJWJ2Hi6pDivCe7A==~
AM8HhlEBAAAAVxSGXgMAN0vOobWUur9urd4_KC6FuoInXrUAAAAAAAAAAAA3556xW5MSXwXHNhhEzTvGyepV4Q==
| 200 OK Content-Length: 112 Content-Type: text/javascript | clean |
http://b1sux6.yellow-code.mrbasic.com/in.php?i=21896 | 200 OK Content-Length: 155 Content-Type: text/html | clean |
http://b1sux6.yellow-code.mrbasic.com/test404page.js | 404 Not Found Content-Length: 308 Content-Type: text/html | clean |
http://zu3h31.green-code.mrbasic.com/in.php?i=21896 | 200 OK Content-Length: 155 Content-Type: text/html | clean |
http://z890.takru.com/in.php?id=893195 | 200 OK Content-Length: 2878 Content-Type: text/html | clean |
http://z890.takru.com/cl.php?key=2457202190016411751932928949618371256821958426590 | HTTP/1.1 200 OK Connection: close Date: Tue, 07 Oct 2014 02:43:01 GMT Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 198 Content-Type: text/html X-Powered-By: PHP/5.4.4-14+deb7u7 | clean |
http://tak.ru/ref.html | 200 OK Content-Length: 7330 Content-Type: text/html | clean |
http://tak.ru/rules.html | 200 OK Content-Length: 6094 Content-Type: text/html | clean |
http://tak.ru/ | 200 OK Content-Length: 7639 Content-Type: text/html | clean |
http://tak.ru/docs/faqseller.shtml | 200 OK Content-Length: 12850 Content-Type: text/html | clean |
http://tak.ru/docs/ | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://tak.ru/docs/faqbuyer.shtml | 200 OK Content-Length: 19524 Content-Type: text/html | clean |