Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yourloader.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yourloader.com/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yourloader.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 15 Dec 2014 01:05:18 GMT
Pragma: no-cache
Server: nginx/1.2.3
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=jI2XhXDj4ju0dcW3dX%2C6O1; expires=Mon, 15-Dec-2014 07:05:18 GMT; path=/
Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:18 GMT; path=/
Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:18 GMT; path=/
Set-Cookie: _uniq=1418605518; expires=Mon, 15-Dec-2014 11:05:18 GMT; path=/
Set-Cookie: _ft=1418616318; expires=Wed, 14-Jan-2015 01:05:18 GMT; path=/
X-Powered-By: PHP/5.4.6
GET / HTTP/1.1
Host: yourloader.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 15 Dec 2014 01:05:18 GMT
Pragma: no-cache
Server: nginx/1.2.3
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=jI2XhXDj4ju0dcW3dX%2C6O1; expires=Mon, 15-Dec-2014 07:05:18 GMT; path=/
Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:18 GMT; path=/
Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:18 GMT; path=/
Set-Cookie: _uniq=1418605518; expires=Mon, 15-Dec-2014 11:05:18 GMT; path=/
Set-Cookie: _ft=1418616318; expires=Wed, 14-Jan-2015 01:05:18 GMT; path=/
X-Powered-By: PHP/5.4.6
Second query (visit from search engine):
GET / HTTP/1.1
Host: yourloader.com
Referer: http://www.google.com/search?q=yourloader.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yourloader.com
Referer: http://www.google.com/search?q=yourloader.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://yourloader.com/ | 200 OK Content-Length: 14945 Content-Type: text/html | clean |
http://yourloader.com/js/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: application/x-javascript | clean |
http://yourloader.com/js/default.js | 200 OK Content-Length: 1282 Content-Type: application/x-javascript | clean |
http://yourloader.com/?action=join&page=login | 200 OK Content-Length: 37751 Content-Type: text/html | clean |
http://yourloader.com/?action=file&id=84910 | 200 OK Content-Length: 15335 Content-Type: text/html | clean |
http://yourloader.com/?action=download&id=84910 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Dec 2014 01:05:19 GMT Pragma: no-cache Location: /?action=join Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=dEjhZkNnyXuqP5v36Jx362; expires=Mon, 15-Dec-2014 07:05:19 GMT; path=/ Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:19 GMT; path=/ Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:19 GMT; path=/ Set-Cookie: _uniq=1418605519; expires=Mon, 15-Dec-2014 11:05:19 GMT; path=/ Set-Cookie: _ft=1418616319; expires=Wed, 14-Jan-2015 01:05:19 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://yourloader.com/?action=join | 200 OK Content-Length: 115282 Content-Type: text/html | clean |
http://yourloader.com/?action=join&page=rules | 200 OK Content-Length: 89517 Content-Type: text/html | clean |
http://yourloader.com/?action=file&id=85000 | 200 OK Content-Length: 15982 Content-Type: text/html | clean |
http://yourloader.com/?action=download&id=85000 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Dec 2014 01:05:21 GMT Pragma: no-cache Location: /?action=join Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=3d87IKFwl4QDBe%2CuniLJN3; expires=Mon, 15-Dec-2014 07:05:21 GMT; path=/ Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:21 GMT; path=/ Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:21 GMT; path=/ Set-Cookie: _uniq=1418605521; expires=Mon, 15-Dec-2014 11:05:21 GMT; path=/ Set-Cookie: _ft=1418616321; expires=Wed, 14-Jan-2015 01:05:21 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://yourloader.com/test404page.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://yourloader.com/?action=file&id=84898 | 200 OK Content-Length: 16203 Content-Type: text/html | clean |
http://yourloader.com/?action=download&id=84898 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Dec 2014 01:05:21 GMT Pragma: no-cache Location: /?action=join Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=k525nqRZiUVxZFiEYQmBd1; expires=Mon, 15-Dec-2014 07:05:21 GMT; path=/ Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:21 GMT; path=/ Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:21 GMT; path=/ Set-Cookie: _uniq=1418605521; expires=Mon, 15-Dec-2014 11:05:21 GMT; path=/ Set-Cookie: _ft=1418616321; expires=Wed, 14-Jan-2015 01:05:21 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://yourloader.com/?action=file&id=84986 | 404 Not Found Content-Length: 126 Content-Type: text/html | clean |
http://yourloader.com/?action=file&id=84885 | 200 OK Content-Length: 16043 Content-Type: text/html | clean |
http://yourloader.com/?action=download&id=84885 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Dec 2014 01:05:22 GMT Pragma: no-cache Location: /?action=join Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=9HvyBpk64LKJWrTbCHv652; expires=Mon, 15-Dec-2014 07:05:22 GMT; path=/ Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:22 GMT; path=/ Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:22 GMT; path=/ Set-Cookie: _uniq=1418605522; expires=Mon, 15-Dec-2014 11:05:22 GMT; path=/ Set-Cookie: _ft=1418616322; expires=Wed, 14-Jan-2015 01:05:22 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://yourloader.com/?action=file&id=84936 | 200 OK Content-Length: 15985 Content-Type: text/html | clean |
http://yourloader.com/?action=download&id=84936 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Dec 2014 01:05:22 GMT Pragma: no-cache Location: /?action=join Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=Da2SUeh7-Z7zxRZaMFDwy0; expires=Mon, 15-Dec-2014 07:05:22 GMT; path=/ Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:22 GMT; path=/ Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:22 GMT; path=/ Set-Cookie: _uniq=1418605522; expires=Mon, 15-Dec-2014 11:05:22 GMT; path=/ Set-Cookie: _ft=1418616322; expires=Wed, 14-Jan-2015 01:05:22 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://yourloader.com/?action=file&id=85001 | 200 OK Content-Length: 16278 Content-Type: text/html | clean |
http://yourloader.com/?action=download&id=85001 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Dec 2014 01:05:23 GMT Pragma: no-cache Location: /?action=join Server: nginx/1.2.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=wi4KrOqRH2iuXH8xt7Edj0; expires=Mon, 15-Dec-2014 07:05:23 GMT; path=/ Set-Cookie: cook=ok; expires=Wed, 14-Jan-2015 01:05:23 GMT; path=/ Set-Cookie: country=LT; expires=Wed, 14-Jan-2015 01:05:23 GMT; path=/ Set-Cookie: _uniq=1418605523; expires=Mon, 15-Dec-2014 11:05:23 GMT; path=/ Set-Cookie: _ft=1418616323; expires=Wed, 14-Jan-2015 01:05:23 GMT; path=/ X-Powered-By: PHP/5.4.6 | clean |
http://yourloader.com/?action=file&id=84905 | 200 OK Content-Length: 15955 Content-Type: text/html | clean |