Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=winner-id.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://winner-id.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://winner-id.ru/ | 200 OK Content-Length: 32511 Content-Type: text/html | clean |
http://winner-id.ru/engine/classes/min/index.php?charset=windows-1251&g=general&8 | 200 OK Content-Length: 180037 Content-Type: application/x-javascript | clean |
http://winner-id.ru/templates/Default/js/socializ_3.js | 200 OK Content-Length: 1066 Content-Type: application/javascript | clean |
http://winner-id.ru/templates/Default/js/superfish.js | 200 OK Content-Length: 3708 Content-Type: application/javascript | clean |
http://winner-id.ru/statistics.html | 200 OK Content-Length: 17510 Content-Type: text/html | clean |
http://winner-id.ru/?do=lastcomments | 200 OK Content-Length: 21715 Content-Type: text/html | clean |
http://winner-id.ru/index.php?do=register | 200 OK Content-Length: 16672 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: adsense-google.ru <!DOCTYPE html> <html dir="ltr" lang="ru-RU"> <head> <meta http-equiv="Content-Type" content="text/html; charset=windows-1251" /> <title>Ðåãèñòðàöèÿ ïîñåòèòåëÿ » Ìèðîâûå Ðåêîðäû</title> <meta name="description" content="Îáùèå ïðàâèëà" /> <meta name="keywords" content="Îáùèå ïðàâèëà" /> <meta name="generator" content="Chessman (http://soft4me.ru)" /> <link ...[4601 bytes skipped]... | ||
http://adsense-google.ru/js/c4ca4238a0b923820dcc509a6f75849b.js | 404 Not Found Content-Length: 42583 Content-Type: text/html | clean |
http://adsense-google.ru/modernizr.js | 200 OK Content-Length: 6296 Content-Type: application/javascript | clean |
http://adsense-google.ru//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 42583 Content-Type: text/html | clean |
http://adsense-google.ru/script.js | 200 OK Content-Length: 122956 Content-Type: application/javascript | clean |
http://parking.reg.ru/script/get_domain_data?domain_name=adsense-google.ru&callback=callback | 200 OK Content-Length: 91 Content-Type: application/javascript | suspicious |
Page code contains blacklisted domain: adsense-google.ru callback({"stat_id":"295792","dname":"adsense-google.ru","can_renew":"1","ref_id":"2260"}); | ||
http://adsense-google.ru/test404page.js | 404 Not Found Content-Length: 42583 Content-Type: text/html | clean |
http://google-statistics.ru/js/c4ca4238a0b923820dcc509a6f75849b.js | 500 Can't connect to google-statistics.ru:80 (Bad hostname) Content-Length: 172 Content-Type: text/plain | clean |
http://winner-id.ru/index.php?do=lostpassword | 200 OK Content-Length: 14417 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: winner-id.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 02 Oct 2014 07:10:00 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=WINDOWS-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=tmpqstmi8fdpl809ek7uahuq40; path=/; domain=.winner-id.ru; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.winner-id.ru; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.winner-id.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.winner-id.ru; httponly
GET / HTTP/1.1
Host: winner-id.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 02 Oct 2014 07:10:00 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=WINDOWS-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=tmpqstmi8fdpl809ek7uahuq40; path=/; domain=.winner-id.ru; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.winner-id.ru; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.winner-id.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.winner-id.ru; httponly
Second query (visit from search engine):
GET / HTTP/1.1
Host: winner-id.ru
Referer: http://www.google.com/search?q=winner-id.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: winner-id.ru
Referer: http://www.google.com/search?q=winner-id.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.