Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xxx-zone.tk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xxx-zone.tk/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://xxx-zone.tk/ | 200 OK Content-Length: 6771 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: adultvideoxx.org ...[6272 bytes skipped]... и подпиÑки абоненÑам Ðилайн Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом STOP на Ð½Ð¾Ð¼ÐµÑ 2838 (беÑплаÑно). ÐÐ»Ñ Ð¾ÑÑановки подпиÑки абоненÑам ÐегаÑон Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом СТÐÐ 4781 на Ð½Ð¾Ð¼ÐµÑ 5051 (беÑплаÑно). Ð¡Ð°Ð¹Ñ ÑвлÑеÑÑÑ ÐºÐ»Ð¾Ð½Ð¾Ð¼ adultvideoxx.org. ÐодпиÑка и пÑобнÑй пеÑиод не пÑедоÑÑавлÑеÑÑÑ Ð°Ð±Ð¾Ð½ÐµÐ½Ñам Tele2 и дÑÑÐ³Ð¸Ñ Ð¾Ð¿ÐµÑаÑоÑов, еÑли не Ñказано иное. ÐÐ»Ñ Ð°Ð±Ð¾Ð½ÐµÐ½Ñов оÑÑалÑнÑÑ Ð¾Ð¿ÐµÑаÑоÑов: ÑÑÐ¾Ð±Ñ Ð¿Ð¾Ð»ÑÑиÑÑ Ð´Ð¾ÑÑÑп к ÑайÑÑ, Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ Ð¾ÑвеÑное СÐС ÑообÑение на один из номеÑов: 9395, 8404, 8385, 6666, 8926, 9999, 6365, 7375.. ÐÐ»Ñ Ð ...[555 bytes skipped]... | ||
http://xxx-zone.tk/?page=control | 200 OK Content-Length: 8341 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: adultvideoxx.org ...[7843 bytes skipped]... и подпиÑки абоненÑам Ðилайн Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом STOP на Ð½Ð¾Ð¼ÐµÑ 2838 (беÑплаÑно). ÐÐ»Ñ Ð¾ÑÑановки подпиÑки абоненÑам ÐегаÑон Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом СТÐÐ 4781 на Ð½Ð¾Ð¼ÐµÑ 5051 (беÑплаÑно). Ð¡Ð°Ð¹Ñ ÑвлÑеÑÑÑ ÐºÐ»Ð¾Ð½Ð¾Ð¼ adultvideoxx.org. ÐодпиÑка и пÑобнÑй пеÑиод не пÑедоÑÑавлÑеÑÑÑ Ð°Ð±Ð¾Ð½ÐµÐ½Ñам Tele2 и дÑÑÐ³Ð¸Ñ Ð¾Ð¿ÐµÑаÑоÑов, еÑли не Ñказано иное. ÐÐ»Ñ Ð°Ð±Ð¾Ð½ÐµÐ½Ñов оÑÑалÑнÑÑ Ð¾Ð¿ÐµÑаÑоÑов: ÑÑÐ¾Ð±Ñ Ð¿Ð¾Ð»ÑÑиÑÑ Ð´Ð¾ÑÑÑп к ÑайÑÑ, Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ Ð¾ÑвеÑное СÐС ÑообÑение на один из номеÑов: 9395, 8404, 8385, 6666, 8926, 9999, 6365, 7375.. ÐÐ»Ñ Ð ...[817 bytes skipped]... | ||
http://xxx-zone.tk/portal/skins/js/jquery.min.js | 200 OK Content-Length: 94839 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/portal/skins/js/jquery-ui-1.8.23.custom.min.js | 200 OK Content-Length: 61960 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/content/js/format_number.js | 200 OK Content-Length: 5947 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/portal/rules.php | 200 OK Content-Length: 31261 Content-Type: text/html | clean |
http://xxx-zone.tk/test404page.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://xxx-zone.tk/?page=activate | 200 OK Content-Length: 7238 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: adultvideoxx.org ...[6812 bytes skipped]... и подпиÑки абоненÑам Ðилайн Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом STOP на Ð½Ð¾Ð¼ÐµÑ 2838 (беÑплаÑно). ÐÐ»Ñ Ð¾ÑÑановки подпиÑки абоненÑам ÐегаÑон Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом СТÐÐ 4781 на Ð½Ð¾Ð¼ÐµÑ 5051 (беÑплаÑно). Ð¡Ð°Ð¹Ñ ÑвлÑеÑÑÑ ÐºÐ»Ð¾Ð½Ð¾Ð¼ adultvideoxx.org. ÐодпиÑка и пÑобнÑй пеÑиод не пÑедоÑÑавлÑеÑÑÑ Ð°Ð±Ð¾Ð½ÐµÐ½Ñам Tele2 и дÑÑÐ³Ð¸Ñ Ð¾Ð¿ÐµÑаÑоÑов, еÑли не Ñказано иное. ÐÐ»Ñ Ð°Ð±Ð¾Ð½ÐµÐ½Ñов оÑÑалÑнÑÑ Ð¾Ð¿ÐµÑаÑоÑов: ÑÑÐ¾Ð±Ñ Ð¿Ð¾Ð»ÑÑиÑÑ Ð´Ð¾ÑÑÑп к ÑайÑÑ, Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ Ð¾ÑвеÑное СÐС ÑообÑение на один из номеÑов: 9395, 8404, 8385, 6666, 8926, 9999, 6365, 7375.. ÐÐ»Ñ Ð ...[555 bytes skipped]... | ||
http://xxx-zone.tk/?page=mail | 200 OK Content-Length: 2121 Content-Type: text/html | clean |
http://xxx-zone.tk/bestruvids/ | 200 OK Content-Length: 11688 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: adultvideoxx.org ...[11126 bytes skipped]... и подпиÑки абоненÑам Ðилайн Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом STOP на Ð½Ð¾Ð¼ÐµÑ 2838 (беÑплаÑно). ÐÐ»Ñ Ð¾ÑÑановки подпиÑки абоненÑам ÐегаÑон Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом СТÐÐ 4781 на Ð½Ð¾Ð¼ÐµÑ 5051 (беÑплаÑно). Ð¡Ð°Ð¹Ñ ÑвлÑеÑÑÑ ÐºÐ»Ð¾Ð½Ð¾Ð¼ adultvideoxx.org. ÐодпиÑка и пÑобнÑй пеÑиод не пÑедоÑÑавлÑеÑÑÑ Ð°Ð±Ð¾Ð½ÐµÐ½Ñам Tele2 и дÑÑÐ³Ð¸Ñ Ð¾Ð¿ÐµÑаÑоÑов, еÑли не Ñказано иное. ÐÐ»Ñ Ð°Ð±Ð¾Ð½ÐµÐ½Ñов оÑÑалÑнÑÑ Ð¾Ð¿ÐµÑаÑоÑов: ÑÑÐ¾Ð±Ñ Ð¿Ð¾Ð»ÑÑиÑÑ Ð´Ð¾ÑÑÑп к ÑайÑÑ, Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ Ð¾ÑвеÑное СÐС ÑообÑение на один из номеÑов: 9395, 8404, 8385, 6666, 8926, 9999, 6365, 7375.. ÐÐ»Ñ Ð¿ ...[1405 bytes skipped]... | ||
http://xxx-zone.tk/bestruvids//skins/default/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72173 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/bestruvids//skins/default/js/jquery.cookie.js | 200 OK Content-Length: 1782 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/bestruvids//skins/default/js/main.js | 200 OK Content-Length: 2544 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/bestruvids//skins/default/js/swfobject.js | 200 OK Content-Length: 10220 Content-Type: application/x-javascript | clean |
http://xxx-zone.tk/bestruvids/?page=join&action=activate&join=1 | 200 OK Content-Length: 7024 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: adultvideoxx.org ...[6458 bytes skipped]... и подпиÑки абоненÑам Ðилайн Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом STOP на Ð½Ð¾Ð¼ÐµÑ 2838 (беÑплаÑно). ÐÐ»Ñ Ð¾ÑÑановки подпиÑки абоненÑам ÐегаÑон Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ ÑмÑ-ÑообÑение Ñ ÑекÑÑом СТÐÐ 4781 на Ð½Ð¾Ð¼ÐµÑ 5051 (беÑплаÑно). Ð¡Ð°Ð¹Ñ ÑвлÑеÑÑÑ ÐºÐ»Ð¾Ð½Ð¾Ð¼ adultvideoxx.org. ÐодпиÑка и пÑобнÑй пеÑиод не пÑедоÑÑавлÑеÑÑÑ Ð°Ð±Ð¾Ð½ÐµÐ½Ñам Tele2 и дÑÑÐ³Ð¸Ñ Ð¾Ð¿ÐµÑаÑоÑов, еÑли не Ñказано иное. ÐÐ»Ñ Ð°Ð±Ð¾Ð½ÐµÐ½Ñов оÑÑалÑнÑÑ Ð¾Ð¿ÐµÑаÑоÑов: ÑÑÐ¾Ð±Ñ Ð¿Ð¾Ð»ÑÑиÑÑ Ð´Ð¾ÑÑÑп к ÑайÑÑ, Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼Ð¾ оÑпÑавиÑÑ Ð¾ÑвеÑное СÐС ÑообÑение на один из номеÑов: 9395, 8404, 8385, 6666, 8926, 9999, 6365, 7375.. ÐÐ»Ñ Ð ...[542 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xxx-zone.tk
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=259200
Connection: close
Date: Tue, 01 Apr 2014 10:43:15 GMT
Pragma: no-cache
Server: nginx/1.0.14
Content-Length: 6771
Content-Type: text/html; charset=utf-8
Expires: Fri, 04 Apr 2014 10:43:15 GMT
Set-Cookie: PHPSESSID=rnubknht88ock7frdrf5g1m506; path=/
Set-Cookie: s267=1%3A1%3A%3A%3A; expires=Wed, 02-Apr-2014 10:43:15 GMT; path=/
Set-Cookie: ip=78.158.11.226; expires=Wed, 02-Apr-2014 10:43:15 GMT; path=/
X-Powered-By: PHP/5.3.10
...6771 bytes of data.
GET / HTTP/1.1
Host: xxx-zone.tk
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=259200
Connection: close
Date: Tue, 01 Apr 2014 10:43:15 GMT
Pragma: no-cache
Server: nginx/1.0.14
Content-Length: 6771
Content-Type: text/html; charset=utf-8
Expires: Fri, 04 Apr 2014 10:43:15 GMT
Set-Cookie: PHPSESSID=rnubknht88ock7frdrf5g1m506; path=/
Set-Cookie: s267=1%3A1%3A%3A%3A; expires=Wed, 02-Apr-2014 10:43:15 GMT; path=/
Set-Cookie: ip=78.158.11.226; expires=Wed, 02-Apr-2014 10:43:15 GMT; path=/
X-Powered-By: PHP/5.3.10
...6771 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xxx-zone.tk
Referer: http://www.google.com/search?q=xxx-zone.tk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xxx-zone.tk
Referer: http://www.google.com/search?q=xxx-zone.tk
Result:
The result is similar to the first query. There are no suspicious redirects found.