Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: zipmonster.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 01 Apr 2014 20:21:17 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=windows-1251
X-Powered-By: PHP/5.4.17
GET / HTTP/1.1
Host: zipmonster.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 01 Apr 2014 20:21:17 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=windows-1251
X-Powered-By: PHP/5.4.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: zipmonster.biz
Referer: http://www.google.com/search?q=zipmonster.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: zipmonster.biz
Referer: http://www.google.com/search?q=zipmonster.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://zipmonster.biz/ | 200 OK Content-Length: 16511 Content-Type: text/html | clean |
http://zipmonster.biz/script/jquery-1.8.3.min.js | 200 OK Content-Length: 93637 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/jquery.flash.js | 200 OK Content-Length: 8473 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/jquery.tablesorter.min.js | 200 OK Content-Length: 16520 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/jquery.tooltip.min.js | 200 OK Content-Length: 5301 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/functions.js | 200 OK Content-Length: 1054 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/calendar.js | 200 OK Content-Length: 49304 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/calendar-ru_win_.js | 200 OK Content-Length: 3643 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/script/calendar-setup.js | 200 OK Content-Length: 9029 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/monster_toolbar/jquery.qtip.min.js | 200 OK Content-Length: 44291 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/monster_toolbar/jquery.cookie.js | 200 OK Content-Length: 2142 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/monster_toolbar/script.js?5 | 200 OK Content-Length: 1109 Content-Type: application/x-javascript | clean |
http://zipmonster.biz/main/about/ | 200 OK Content-Length: 13098 Content-Type: text/html | clean |
http://zipmonster.biz/main/rules/ | 200 OK Content-Length: 23753 Content-Type: text/html | clean |
http://zipmonster.biz/main/faq/ | 200 OK Content-Length: 23266 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=zipmonster.biz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://zipmonster.biz/
Result: zipmonster.biz is not infected or malware details are not published yet.
Result: zipmonster.biz is not infected or malware details are not published yet.