Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: anzhi.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 22 Aug 2014 03:13:33 GMT
Location: http://www.anzhi.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
GET / HTTP/1.1
Host: anzhi.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 22 Aug 2014 03:13:33 GMT
Location: http://www.anzhi.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: anzhi.com
Referer: http://www.google.com/search?q=anzhi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: anzhi.com
Referer: http://www.google.com/search?q=anzhi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://anzhi.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:33 GMT Location: http://www.anzhi.com/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/ | 200 OK Content-Length: 39587 Content-Type: text/html | clean |
http://www.anzhi.com/js/checkua.js?Xre499s | 200 OK Content-Length: 907 Content-Type: application/javascript | clean |
http://anzhi.com/js/jquery-1.4.2.min.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:36 GMT Location: http://www.anzhi.com/js/jquery-1.4.2.min.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72328 Content-Type: application/javascript | clean |
http://anzhi.com/js/chartjs/highcharts.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:38 GMT Location: http://www.anzhi.com/js/chartjs/highcharts.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/chartjs/highcharts.js | 200 OK Content-Length: 82324 Content-Type: application/javascript | clean |
http://anzhi.com/js/anzhi.js?Xre43125 | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:39 GMT Location: http://www.anzhi.com/js/anzhi.js?Xre43125 Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/anzhi.js?xre43125 | 200 OK Content-Length: 31954 Content-Type: application/javascript | clean |
http://anzhi.com/js/move.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:41 GMT Location: http://www.anzhi.com/js/move.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/move.js | 200 OK Content-Length: 1084 Content-Type: application/javascript | clean |
http://anzhi.com/js/jquery.zxxbox.3.0.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:42 GMT Location: http://www.anzhi.com/js/jquery.zxxbox.3.0.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/jquery.zxxbox.3.0.js | 200 OK Content-Length: 12576 Content-Type: application/javascript | clean |
http://anzhi.com/js/slidelf.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:43 GMT Location: http://www.anzhi.com/js/slidelf.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/slidelf.js | 200 OK Content-Length: 1322 Content-Type: application/javascript | clean |
http://anzhi.com/js/jquery.cookie.min.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:44 GMT Location: http://www.anzhi.com/js/jquery.cookie.min.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/js/jquery.cookie.min.js | 200 OK Content-Length: 995 Content-Type: application/javascript | clean |
http://s19.cnzz.com/stat.php?id=3216547&web_id=3216547&show=pic1 | 200 OK Content-Length: 9326 Content-Type: application/javascript | clean |
http://anzhi.com/index.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:45 GMT Location: http://www.anzhi.com/index.html Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/index.html | 200 OK Content-Length: 39587 Content-Type: text/html | clean |
http://www.anzhi.com/js/anzhi.js?Xre43125 | 200 OK Content-Length: 31954 Content-Type: application/javascript | clean |
http://anzhi.com/applist.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 22 Aug 2014 03:13:47 GMT Location: http://www.anzhi.com/applist.html Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.anzhi.com/applist.html | 200 OK Content-Length: 15459 Content-Type: text/html | clean |
http://www.anzhi.com/gamelist.html | 200 OK Content-Length: 13692 Content-Type: text/html | clean |
http://www.anzhi.com/subject.html | 200 OK Content-Length: 34133 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=anzhi.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://anzhi.com/
Result: anzhi.com is not infected or malware details are not published yet.
Result: anzhi.com is not infected or malware details are not published yet.