Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: animanga.ru
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 11 Sep 2014 05:05:32 GMT
Server: Microsoft-IIS/7.5
Content-Length: 37562
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=1iekere3ilfab245o3hzxoeq; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: UrlRewriter.NET 2.0.0
X-Powered-By: ASP.NET
...37562 bytes of data.
GET / HTTP/1.1
Host: animanga.ru
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 11 Sep 2014 05:05:32 GMT
Server: Microsoft-IIS/7.5
Content-Length: 37562
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=1iekere3ilfab245o3hzxoeq; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: UrlRewriter.NET 2.0.0
X-Powered-By: ASP.NET
...37562 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: animanga.ru
Referer: http://www.google.com/search?q=animanga.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: animanga.ru
Referer: http://www.google.com/search?q=animanga.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://animanga.ru/ | 200 OK Content-Length: 37562 Content-Type: text/html | clean |
http://animanga.ru/Templates/default/scripts/jquery-1.8.2.min.js | 200 OK Content-Length: 93436 Content-Type: application/x-javascript | clean |
http://animanga.ru/Templates/default/scripts/jquery-ui-1.9.0.custom.min.js | 200 OK Content-Length: 235845 Content-Type: application/x-javascript | clean |
http://animanga.ru/Templates/default/scripts/default.js | 200 OK Content-Length: 6111 Content-Type: application/x-javascript | clean |
http://animanga.ru/Templates/default/scripts/boxover.js | 200 OK Content-Length: 11419 Content-Type: application/x-javascript | clean |
http://animanga.ru/Templates/default/scripts/releases.js | 200 OK Content-Length: 1346 Content-Type: application/x-javascript | clean |
http://animanga.ru/default.aspx | 200 OK Content-Length: 37562 Content-Type: text/html | clean |
http://animanga.ru/mangaonline.aspx | 200 OK Content-Length: 34364 Content-Type: text/html | clean |
http://animanga.ru/article/list.aspx | 200 OK Content-Length: 11964 Content-Type: text/html | clean |
http://animanga.ru/Templates/default/scripts/jquery.autocomplete.js | 200 OK Content-Length: 21271 Content-Type: application/x-javascript | clean |
http://animanga.ru/Templates/default/scripts/edititems.js | 200 OK Content-Length: 3745 Content-Type: application/x-javascript | clean |
http://animanga.ru/forum/default.asp | 200 OK Content-Length: 89244 Content-Type: text/html | clean |
http://animanga.ru/forum/pop_win.js | 200 OK Content-Length: 1152 Content-Type: application/x-javascript | clean |
http://animanga.ru/forum/../templates/default/scripts/jquery-1.8.2.min.js | 200 OK Content-Length: 93436 Content-Type: application/x-javascript | clean |
http://animanga.ru/forum/../templates/default/scripts/default.js | 200 OK Content-Length: 6111 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=animanga.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://animanga.ru/
Result: animanga.ru is not infected or malware details are not published yet.
Result: animanga.ru is not infected or malware details are not published yet.