Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=allturtravell.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://allturtravell.ru/ | 200 OK Content-Length: 65112 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html>
<html lang="ru-RU"> <head> <meta charset="UTF-8" /> <title>TRAVEL - инÑоÑмаÑионнÑй ÑÑÑиÑÑиÑеÑкий поÑÑал</title> <!--[if lt IE 9]><script src="http://html5shiv.googlecode.com/svn/trunk/html5.js"></script><![endif]--> <link rel="stylesheet" href="http://allturtravell.ru/wp-content/themes/tour1/style.css" media="screen ...[3988 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://allturtravell.ru/wp-content/themes/tour1/jquery.js?ver=3.7.1 | 200 OK Content-Length: 93868 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=3.7.1 | 200 OK Content-Length: 33 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-includes/js/comment-reply.min.js?ver=3.7.1 | 200 OK Content-Length: 753 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/themes/tour1/script.js?ver=3.7.1 | 200 OK Content-Length: 40829 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 3598 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/libs/cycle2/jquery.cycle2.min.js?ver=2.7.6 | 200 OK Content-Length: 21665 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/libs/cycle2/jquery.cycle2.carousel.min.js?ver=2.7.6 | 200 OK Content-Length: 4254 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/libs/cycle2/jquery.cycle2.swipe.min.js?ver=2.7.6 | 200 OK Content-Length: 1323 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/libs/cycle2/jquery.cycle2.tile.min.js?ver=2.7.6 | 200 OK Content-Length: 1957 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/libs/cycle2/jquery.cycle2.video.min.js?ver=2.7.6 | 200 OK Content-Length: 1408 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/templates/dark/script.js?ver=2.7.6 | 200 OK Content-Length: 1480 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/templates/default/script.js?ver=2.7.6 | 200 OK Content-Length: 1718 Content-Type: application/x-javascript | clean |
http://allturtravell.ru/wp-content/plugins/cyclone-slider-2/templates/standard/script.js?ver=2.7.6 | 200 OK Content-Length: 1721 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: allturtravell.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 22:36:09 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=UTF-8
Link: <http://allturtravell.ru/?p=2>; rel=shortlink
X-Pingback: http://allturtravell.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: allturtravell.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 22:36:09 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=UTF-8
Link: <http://allturtravell.ru/?p=2>; rel=shortlink
X-Pingback: http://allturtravell.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: allturtravell.ru
Referer: http://www.google.com/search?q=allturtravell.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: allturtravell.ru
Referer: http://www.google.com/search?q=allturtravell.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.