Scanned pages/files
Request | Server response | Status |
http://allsro.com/ | 200 OK Content-Length: 60928 Content-Type: text/html | suspicious |
Suspicious code found <div style='clear:both;'><ul class='nostyle' style='float:left'><li><div id='vkapi_like_2268_822495256'></div></li>
<script type="text/javascript"> <!-- jQuery('body').on('vkapi_vk', function(){ var temp = Math.random()%1; jQuery('#vkapi_like_2268_822495256').attr('id',temp); VK.Widgets.Like(temp, { width: 1, height: 20, pageImage: '', text: 'Ðа ÑовÑеменном ÑÑапе деÑÑелÑноÑÑÑ ÑÑбÑекÑов Ñкономики в наÑей ÑÑÑане возможна ÑолÑко пÑи налиÑии Ð½ÐµÐ¾Ð±Ñ Ð¾Ð´Ð¸Ð¼ÑÑ ÑазÑеÑиÑелÑнÑÑ Ð´Ð¾ÐºÑменÑов: доп' }, 2268); }); --> </script></ul></div><br style="clear:both;"> | ||
http://allsro.com/wp-includes/js/jquery/jquery.js | 200 OK Content-Length: 93661 Content-Type: application/javascript | clean |
http://allsro.com/wp-includes/js/jquery/spoiler.js | 200 OK Content-Length: 223 Content-Type: application/javascript | clean |
http://allsro.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93661 Content-Type: application/javascript | clean |
http://allsro.com/wp-content/plugins/q2w3-fixed-widget/js/q2w3-fixed-widget.min.js?ver=4.0.6 | 200 OK Content-Length: 2455 Content-Type: application/javascript | clean |
http://allsro.com/wp-content/plugins/vkontakte-api/js/callback.js?ver=3.5.1 | 200 OK Content-Length: 5371 Content-Type: application/javascript | clean |
http://allsro.com/wp-content/plugins/share-buttons/js/share-buttons.js?ver=3.5.1 | 200 OK Content-Length: 1758 Content-Type: application/javascript | clean |
https://apis.google.com/js/plusone.js?ver=3.5.1 | 200 OK Content-Length: 12784 Content-Type: application/javascript | clean |
http://vkontakte.ru/js/api/share.js?11&ver=3.5.1 | 200 OK Content-Length: 10156 Content-Type: application/x-javascript | clean |
http://userapi.com/js/api/openapi.js?34&ver=3.5.1 | 200 OK Content-Length: 64063 Content-Type: application/x-javascript | clean |
http://stg.odnoklassniki.ru/share/odkl_share.js?ver=3.5.1 | 200 OK Content-Length: 12312 Content-Type: application/x-javascript | clean |
http://allsro.com/wp-content/plugins/share-buttons/js/odkl_init.js?ver=3.5.1 | 200 OK Content-Length: 28 Content-Type: application/javascript | clean |
http://cdn.connect.mail.ru/js/share/2/share.js?ver=3.5.1 | 200 OK Content-Length: 11486 Content-Type: application/x-javascript | clean |
http://platform.twitter.com/widgets.js?ver=3.5.1 | 200 OK Content-Length: 115360 Content-Type: application/javascript | clean |
http://www.google.com/buzz/api/button.js?ver=3.5.1 | 404 Not Found Content-Length: 1453 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: allsro.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 25 Feb 2015 17:05:22 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
X-Pingback: http://allsro.com/xmlrpc.php
GET / HTTP/1.1
Host: allsro.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 25 Feb 2015 17:05:22 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
X-Pingback: http://allsro.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: allsro.com
Referer: http://www.google.com/search?q=allsro.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: allsro.com
Referer: http://www.google.com/search?q=allsro.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=allsro.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://allsro.com/
Result: allsro.com is not infected or malware details are not published yet.
Result: allsro.com is not infected or malware details are not published yet.