Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=38popugaev.com.ua
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://38popugaev.com.ua/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 38popugaev.com.ua
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 01 Apr 2014 00:25:29 GMT
Location: http://www.38popugaev.com.ua/
Server: nginx/1.2.6
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.38popugaev.com.ua/xmlrpc.php
X-Powered-By: PHP/5.2.17
...0 bytes of data.
GET / HTTP/1.1
Host: 38popugaev.com.ua
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 01 Apr 2014 00:25:29 GMT
Location: http://www.38popugaev.com.ua/
Server: nginx/1.2.6
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.38popugaev.com.ua/xmlrpc.php
X-Powered-By: PHP/5.2.17
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 38popugaev.com.ua
Referer: http://www.google.com/search?q=38popugaev.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 38popugaev.com.ua
Referer: http://www.google.com/search?q=38popugaev.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://38popugaev.com.ua/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 01 Apr 2014 00:25:29 GMT Location: http://www.38popugaev.com.ua/ Server: nginx/1.2.6 Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.38popugaev.com.ua/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.38popugaev.com.ua/ | 200 OK Content-Length: 46159 Content-Type: text/html | clean |
http://www.38popugaev.com.ua/wp-content/themes/EspaniaTours/menu/mootools-1.2.5-core-yc.js | 200 OK Content-Length: 66798 Content-Type: application/x-javascript | clean |
http://www.38popugaev.com.ua/wp-content/themes/EspaniaTours/menu/MenuMatic_0.68.3.js | 200 OK Content-Length: 25860 Content-Type: application/x-javascript | clean |
http://www.38popugaev.com.ua/wp-includes/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 93889 Content-Type: application/x-javascript | clean |
http://module.ittour.com.ua/showcase_search.jsx?id=23671D4222G054084676N8&type=42&kind=50&width_class=54 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Tue, 01 Apr 2014 00:25:32 GMT Location: http://www.ittour.com.ua/showcase_search.jsx?id=23671D4222G054084676N8&type=42&kind=50&width_class=54 Server: nginx/1.0.15 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Tue, 01 Apr 2014 00:25:32 GMT Set-Cookie: PHPSESSID=2bv69ua0mgiiu6bo8brs98c4e3; path=/ X-Powered-By: PHP/5.3.25 | clean |
http://www.ittour.com.ua/showcase_search.jsx?id=23671d4222g054084676n8&type=42&kind=50&width_class=54 | 200 OK Content-Length: 28 Content-Type: text/html | clean |
http://www.ittour.com.ua/test404page.js | 404 Not Found Content-Length: 295 Content-Type: text/html | clean |
http://www.meteoprog.ua/informers/?id=1333503365 | 200 OK Content-Length: 3184 Content-Type: text/html | clean |
http://38popugaev.com.ua//s7.addthis.com/js/250/addthis_widget.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 01 Apr 2014 00:25:34 GMT Pragma: no-cache Location: http://www.38popugaev.com.ua/s7.addthis.com/js/250/addthis_widget.js/ Server: nginx/1.2.6 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Tue, 01 Apr 2014 00:25:34 GMT X-Pingback: http://www.38popugaev.com.ua/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.38popugaev.com.ua/s7.addthis.com/js/250/addthis_widget.js/ | 404 Not Found Content-Length: 27088 Content-Type: text/html | clean |
http://www.38popugaev.com.ua//s7.addthis.com/js/250/addthis_widget.js/ | 404 Not Found Content-Length: 27088 Content-Type: text/html | clean |
http://www.38popugaev.com.ua/wp-content/plugins/contact-form-7/jquery.form.js?ver=2.96 | 200 OK Content-Length: 29139 Content-Type: application/x-javascript | clean |
http://www.38popugaev.com.ua/wp-content/plugins/contact-form-7/scripts.js?ver=3.1.1 | 200 OK Content-Length: 6208 Content-Type: application/x-javascript | clean |
http://www.38popugaev.com.ua/turyi-v-rassrochku | 200 OK Content-Length: 40477 Content-Type: text/html | clean |
http://www.38popugaev.com.ua/poisk-tura-on-line | 200 OK Content-Length: 29135 Content-Type: text/html | clean |
http://module.ittour.com.ua/tour_search.jsx?id=3D3G5265850385105M1565&ver=1&type=2970 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Tue, 01 Apr 2014 00:25:38 GMT Location: http://www.ittour.com.ua/tour_search.jsx?id=3D3G5265850385105M1565&ver=1&type=2970 Server: nginx/1.0.15 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Tue, 01 Apr 2014 00:25:38 GMT Set-Cookie: PHPSESSID=18pmeu286pcagctaq2isjj89s1; path=/ X-Powered-By: PHP/5.3.25 | clean |
http://www.ittour.com.ua/tour_search.jsx?id=3d3g5265850385105m1565&ver=1&type=2970 | 200 OK Content-Length: 28 Content-Type: text/html | clean |
http://www.38popugaev.com.ua/ekskursii | 200 OK Content-Length: 31545 Content-Type: text/html | clean |