Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vanillakiev.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vanillakiev.com
Result:
HTTP/1.1 303 See other
Connection: close
Date: Thu, 26 Feb 2015 12:45:09 GMT
Location: http://vanillakiev.com/index.php?option=com_virtuemart&Itemid=1&vmcchk=1&Itemid=1
Server: nginx/1.6.0
Content-Length: 0
Content-Type: text/html
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 8a7de0e5f9df9ead8cdc9ac8931a26c2=ofovv1mm2dfmpgv79fm8m1e515; path=/
Set-Cookie: virtuemart=ofovv1mm2dfmpgv79fm8m1e515
X-Powered-By: PHP/5.3.28
...0 bytes of data.
GET / HTTP/1.1
Host: vanillakiev.com
Result:
HTTP/1.1 303 See other
Connection: close
Date: Thu, 26 Feb 2015 12:45:09 GMT
Location: http://vanillakiev.com/index.php?option=com_virtuemart&Itemid=1&vmcchk=1&Itemid=1
Server: nginx/1.6.0
Content-Length: 0
Content-Type: text/html
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 8a7de0e5f9df9ead8cdc9ac8931a26c2=ofovv1mm2dfmpgv79fm8m1e515; path=/
Set-Cookie: virtuemart=ofovv1mm2dfmpgv79fm8m1e515
X-Powered-By: PHP/5.3.28
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: vanillakiev.com
Referer: http://www.google.com/search?q=vanillakiev.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vanillakiev.com
Referer: http://www.google.com/search?q=vanillakiev.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://vanillakiev.com/ | HTTP/1.1 303 See other Connection: close Date: Thu, 26 Feb 2015 12:45:09 GMT Location: http://vanillakiev.com/index.php?option=com_virtuemart&Itemid=1&vmcchk=1&Itemid=1 Server: nginx/1.6.0 Content-Length: 0 Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 8a7de0e5f9df9ead8cdc9ac8931a26c2=ofovv1mm2dfmpgv79fm8m1e515; path=/ Set-Cookie: virtuemart=ofovv1mm2dfmpgv79fm8m1e515 X-Powered-By: PHP/5.3.28 | clean |
http://vanillakiev.com/index.php?option=com_virtuemart&itemid=1&vmcchk=1&itemid=1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 26 Feb 2015 12:45:09 GMT Location: http://vanillakiev.com/vmchk?itemid=1 Server: nginx/1.6.0 Content-Length: 0 Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 8a7de0e5f9df9ead8cdc9ac8931a26c2=7g86e7j9ofkdqovsq6b8pfr247; path=/ Set-Cookie: VMCHECK=OK; expires=Thu, 26-Feb-2015 13:45:09 GMT; path=/ X-Powered-By: PHP/5.3.28 | clean |
http://vanillakiev.com/vmchk?itemid=1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 26 Feb 2015 12:45:09 GMT Location: http://vanillakiev.com?itemid=1 Server: nginx/1.6.0 Content-Length: 320 Content-Type: text/html; charset=iso-8859-1 | clean |
http://vanillakiev.com?itemid=1/ | 403 FORBIDDEN Content-Length: 99 Content-Type: text/html | clean |
http://vanillakiev.com?itemid=1/test404page.js | 403 FORBIDDEN Content-Length: 99 Content-Type: text/html | clean |