Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=arkadapro.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://arkadapro.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: arkadapro.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Tue, 16 Sep 2014 07:48:32 GMT Location: http://alfsystem.com.my/includes/domit/1.php Server: nginx Content-Length: 0 Content-Type: text/html; charset=UTF-8 | malicious |
URL: http://alfsystem.com.my/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: alfsystem.com.my Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 16 Sep 2014 07:48:34 GMT Location: http://www.csra.de/includes/domit/1.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.23 | malicious |
Scanned pages/files
Request | Server response | Status |
http://arkadapro.ru/ | 200 OK Content-Length: 59819 Content-Type: text/html | clean |
http://arkadapro.ru/media/system/js/mootools-uncompressed.js | 200 OK Content-Length: 183623 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var MooTools = { version: '1.12' }; function $defined(obj){ return (obj != undefined); }; function $type(obj){ if (!$defined(obj)) return false; if (obj.htmlElement) return 'element'; var type = typeof obj; if (type == 'object' && obj.nodeName){ switch(obj.nodeType){ case 1: return 'element'; case 3: return (/\S/).test(obj.nodeValue) ? 'textnode' : 'whitespace'; } } if (type == 'object' || type == 'function this.elements.each(function(el, i){ obj[i] = {}; var hide = (i != index) || (this.options.alwaysHide && (el.offsetHeight > 0)); this.fireEvent(hide ? 'onBackground' : 'onActive', [this.togglers[i], el]); for (var fx in this.effects) obj[i][fx] = hide ? 0 : el[this.effects[fx]]; }, this); return this.start(obj); }, showThisHideOpen: function(index){return this.display(index);} }); Fx.Accordion = Accordion; Antivirus reports:
| ||
http://arkadapro.ru/media/system/js/modal.js | 200 OK Content-Length: 10552 Content-Type: text/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.5/jquery.min.js | 200 OK Content-Length: 85925 Content-Type: text/javascript | clean |
http://arkadapro.ru/components/com_k2/js/k2.js | 200 OK Content-Length: 6367 Content-Type: text/javascript | clean |
http://arkadapro.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: text/javascript | clean |
http://arkadapro.ru/plugins/system/jcemediabox/js/jcemediabox.js?v=1018 | 200 OK Content-Length: 43380 Content-Type: text/javascript | clean |
http://arkadapro.ru/plugins/system/jcemediabox/js/mediaobject.js?v=1018 | 200 OK Content-Length: 3119 Content-Type: text/javascript | clean |
http://arkadapro.ru/plugins/system/jcemediabox/addons/default.js?v=1018 | 200 OK Content-Length: 1814 Content-Type: text/javascript | clean |
http://arkadapro.ru/templates/yoo_phoenix/lib/js/addons/base.js | 200 OK Content-Length: 1771 Content-Type: text/javascript | clean |
http://arkadapro.ru/templates/yoo_phoenix/lib/js/addons/accordionmenu.js | 200 OK Content-Length: 1351 Content-Type: text/javascript | clean |
http://arkadapro.ru/templates/yoo_phoenix/lib/js/addons/fancymenu.js | 200 OK Content-Length: 2667 Content-Type: text/javascript | clean |
http://arkadapro.ru/templates/yoo_phoenix/lib/js/addons/dropdownmenu.js | 200 OK Content-Length: 2824 Content-Type: text/javascript | clean |
http://arkadapro.ru/templates/yoo_phoenix/lib/js/template.js | 200 OK Content-Length: 3172 Content-Type: text/javascript | clean |
http://arkadapro.ru/modules/mod_yoo_carousel/mod_yoo_carousel.js | 200 OK Content-Length: 2742 Content-Type: text/javascript | clean |