Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yasni.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yasni.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://yasni.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:32 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/ Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1432574727 | clean |
http://www.yasni.com/ | 200 OK Content-Length: 27243 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: person.yasni.com <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd"> <html lang="de"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8"> <meta http-equiv="expires" content="604800"> <meta name="robots" content="all, index, follow"> <meta name="googlebot" content="noarchive"> <meta na ...[4496 bytes skipped]... | ||
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/yasni_fp.js | 200 OK Content-Length: 204004 Content-Type: application/javascript | clean |
http://yasni.com/index.php?action=login_confirm&update=1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:35 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/index.php?action=login_confirm&update=1 Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1432574879 | clean |
http://www.yasni.com/index.php?action=login_confirm&update=1 | 200 OK Content-Length: 3798 Content-Type: text/html | clean |
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/main.js | 200 OK Content-Length: 150425 Content-Type: application/javascript | clean |
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/bc.js | 200 OK Content-Length: 23185 Content-Type: application/javascript | clean |
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/page_async.js | 200 OK Content-Length: 5874 Content-Type: application/javascript | clean |
http://yasni.com/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Sun, 12 Oct 2014 15:48:39 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Server: Apache/2.2.22 (Ubuntu) Vary: negotiate,accept-language,Accept-Encoding Content-Location: error404_en.html Content-Type: text/html; charset=UTF-8 Last-Modified: Wed, 08 Aug 2012 11:12:42 GMT TCN: choice X-Hostname: bl27.yasni.de X-Varnish: 949990194 | clean |
http://yasni.com/error404_en.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:39 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/error404_en.html Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1200966177 | clean |
http://www.yasni.com/error404_en.html | HTTP/1.1 404 Not Found Connection: close Date: Sun, 12 Oct 2014 15:48:39 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Server: Apache/2.2.22 (Ubuntu) Vary: negotiate,accept-language,Accept-Encoding Content-Location: error404_en.html Content-Type: text/html; charset=UTF-8 Last-Modified: Wed, 08 Aug 2012 11:12:42 GMT TCN: choice X-Hostname: bl28.yasni.de X-Varnish: 1200966181 | clean |
http://www.yasni.com/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Sun, 12 Oct 2014 15:48:39 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Server: Apache/2.2.22 (Ubuntu) Vary: negotiate,accept-language,Accept-Encoding Content-Location: error404_en.html Content-Type: text/html; charset=UTF-8 Last-Modified: Wed, 08 Aug 2012 11:12:42 GMT TCN: choice X-Hostname: bl28.yasni.de X-Varnish: 1200966183 | clean |
http://yasni.com/index.php?action=login_resetpassword&update=1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:40 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/index.php?action=login_resetpassword&update=1 Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1827108591 | clean |
http://www.yasni.com/index.php?action=login_resetpassword&update=1 | 200 OK Content-Length: 3703 Content-Type: text/html | clean |
http://yasni.com/bank+of+america/free+people+search | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:40 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/bank+of+america/free+people+search Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1078940722 | clean |
http://www.yasni.com/bank+of+america/free+people+search | 200 OK Content-Length: 65407 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: person.yasni.com <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd"> <html lang="de"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8"> <meta http-equiv="expires" content="0"> <meta name="robots" content="all, index, follow"> <meta name="googlebot" content="noarchive"> <meta name="a ...[4304 bytes skipped]... | ||
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/yasni_ps.js | 200 OK Content-Length: 190185 Content-Type: application/javascript | clean |
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/ads.js | 200 OK Content-Length: 15037 Content-Type: application/javascript | clean |
https://script.ioam.de/iam.js | 200 OK Content-Length: 14390 Content-Type: application/x-javascript | clean |
http://yasni.com/bank+of+america/check+people | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:45 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/bank+of+america/check+people Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1432575679 | clean |
http://www.yasni.com/bank+of+america/check+people | 200 OK Content-Length: 131352 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: person.yasni.com <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd"> <html lang="de"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8"> <meta http-equiv="expires" content="604800"> <meta name="robots" content="all, index, follow"> <meta name="googlebot" content="noarchive"> <meta name="google ...[4255 bytes skipped]... | ||
http://d2skqnrxz11esv.cloudfront.net/version/11.26/js/min/yasni_bc.js | 200 OK Content-Length: 207269 Content-Type: application/javascript | clean |
http://yasni.com/index.php?action=dialog&content=search_findall_premiumteaser&name=Bank+Of+America | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:50 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/index.php?action=dialog&content=search_findall_premiumteaser&name=Bank+Of+America Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1153568842 | clean |
http://www.yasni.com/index.php?action=dialog&content=search_findall_premiumteaser&name=bank+of+america | 200 OK Content-Length: 3710 Content-Type: text/html | clean |
http://yasni.com/bank+of+america/phone+address | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 15:48:50 GMT Via: 1.1 varnish Age: 0 Location: http://www.yasni.com/bank+of+america/phone+address Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 X-Varnish: 1432576014 | clean |
http://www.yasni.com/bank+of+america/phone+address | 200 OK Content-Length: 91238 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: person.yasni.com <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd"> <html lang="de"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8"> <meta http-equiv="expires" content="604800"> <meta name="robots" content="all, index, follow"> <meta name="googlebot" content="noarchive"> <meta name="google ...[4251 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yasni.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 12 Oct 2014 15:48:32 GMT
Via: 1.1 varnish
Age: 0
Location: http://www.yasni.com/
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html; charset=iso-8859-1
X-Varnish: 1432574727
GET / HTTP/1.1
Host: yasni.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 12 Oct 2014 15:48:32 GMT
Via: 1.1 varnish
Age: 0
Location: http://www.yasni.com/
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html; charset=iso-8859-1
X-Varnish: 1432574727
Second query (visit from search engine):
GET / HTTP/1.1
Host: yasni.com
Referer: http://www.google.com/search?q=yasni.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yasni.com
Referer: http://www.google.com/search?q=yasni.com
Result:
The result is similar to the first query. There are no suspicious redirects found.