Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=blog.ridecam.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: blog.ridecam.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 06 Oct 2014 01:33:36 GMT
Server: Jino.ru/mod_pizza
Content-Type: text/html; charset=UTF-8
X-Pingback: http://blog.ridecam.ru/xmlrpc.php
GET / HTTP/1.1
Host: blog.ridecam.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 06 Oct 2014 01:33:36 GMT
Server: Jino.ru/mod_pizza
Content-Type: text/html; charset=UTF-8
X-Pingback: http://blog.ridecam.ru/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: blog.ridecam.ru
Referer: http://www.google.com/search?q=blog.ridecam.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: blog.ridecam.ru
Referer: http://www.google.com/search?q=blog.ridecam.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://blog.ridecam.ru/ | 200 OK Content-Length: 54078 Content-Type: text/html | clean |
http://vkontakte.ru/js/api/share.js?5 | 200 OK Content-Length: 10156 Content-Type: application/x-javascript | clean |
http://ukrhost.su/ch78WvBH.php?id=359991 | HTTP/1.1 302 Found Connection: close Date: Mon, 06 Oct 2014 01:23:44 GMT Location: http://bing.com/ Server: nginx/1.2.7 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.21 | clean |
http://bing.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache Date: Mon, 06 Oct 2014 01:33:38 GMT Location: http://www.bing.com/ Server: Microsoft-IIS/8.5 Content-Length: 0 Edge-Control: no-store P3P: CP="NON UNI COM NAV STA LOC CURa DEVa PSAa PSDa OUR IND" Set-Cookie: _HOP=I=1&TS=1412559218; domain=bing.com; path=/ Set-Cookie: _EDGE_S=F=1; path=/; httponly; domain=bing.com Set-Cookie: _EDGE_V=1; path=/; httponly; expires=Wed, 05-Oct-2016 01:33:38 GMT; domain=bing.com Set-Cookie: MUID=2D70433E15AE677E3A5345F5144A66C9; path=/; expires=Wed, 05-Oct-2016 01:33:38 GMT; domain=bing.com Set-Cookie: MUIDB=2D70433E15AE677E3A5345F5144A66C9; path=/; httponly; expires=Wed, 05-Oct-2016 01:33:38 GMT X-MSEdge-Ref: Ref A: 14F6F40128194954A6ECC22CB0750591 Ref B: FBB8FAA09B87843F7330A939797668AD Ref C: Sun Oct 05 18:33:38 2014 PST | clean |
http://www.bing.com/ | 200 OK Content-Length: 37167 Content-Type: text/html | clean |
http://www.bing.com/?scope=web&FORM=Z9LH | 200 OK Content-Length: 37283 Content-Type: text/html | clean |
http://www.bing.com/?scope=images&FORM=Z9LH1 | 200 OK Content-Length: 37300 Content-Type: text/html | clean |
http://www.bing.com/?scope=video&FORM=Z9LH2 | 200 OK Content-Length: 37295 Content-Type: text/html | clean |
http://www.bing.com/news?FORM=Z9LH3 | 200 OK Content-Length: 93193 Content-Type: text/html | clean |
http://www.bing.com/rms/rms%20answers%20News%20Vertical$newsSmartRefresh.source/jc/1abcd440/092426a2.js | 200 OK Content-Length: 674 Content-Type: application/x-javascript | clean |
http://www.bing.com/rms/news4B/jc/c92ba22d/0e31551f.js?bu=rms+answers+News+Vertical%24domready.source%2cVertical%24newsBrowseCommonV6.source%2cVertical%24scroller.source%2cVertical%24baseInst.source%2cVertical%24makehomepage.source | 200 OK Content-Length: 11956 Content-Type: application/x-javascript | clean |
http://www.bing.com/search?q=&FORM=HDRSC1 | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 06 Oct 2014 01:33:44 GMT Location: /?scope=web&mkt=en-ww&FORM=HDRSC1 Server: Microsoft-IIS/8.5 Vary: Accept-Encoding Content-Length: 158 Content-Type: text/html; charset=utf-8 Edge-Control: no-store P3P: CP="NON UNI COM NAV STA LOC CURa DEVa PSAa PSDa OUR IND" Set-Cookie: _FS=NU=1; domain=.bing.com; path=/ Set-Cookie: _HOP=I=1&TS=1412559224; domain=.bing.com; path=/ Set-Cookie: _SS=SID=EA2E069DE9854EBA8225380F63450D18; domain=.bing.com; path=/ Set-Cookie: SRCHD=AF=HDRSC1; expires=Wed, 05-Oct-2016 01:33:44 GMT; domain=.bing.com; path=/ Set-Cookie: SRCHUID=V=2&GUID=74F11C1C66464F86BA9CEAD1BC7CC71D; expires=Wed, 05-Oct-2016 01:33:44 GMT; path=/ Set-Cookie: SRCHUSR=AUTOREDIR=0&GEOVAR=&DOB=20141006; expires=Wed, 05-Oct-2016 01:33:44 GMT; domain=.bing.com; path=/ Set-Cookie: _EDGE_S=F=1; path=/; httponly; domain=bing.com Set-Cookie: _EDGE_V=1; path=/; httponly; expires=Wed, 05-Oct-2016 01:33:44 GMT; domain=bing.com Set-Cookie: MUID=0A40E68790E86A613C0BE04C910C6B53; path=/; expires=Wed, 05-Oct-2016 01:33:44 GMT; domain=bing.com Set-Cookie: MUIDB=0A40E68790E86A613C0BE04C910C6B53; path=/; httponly; expires=Wed, 05-Oct-2016 01:33:44 GMT X-MSEdge-Ref: Ref A: E35951E8427B43F1822FD03679D23B13 Ref B: 6E635CFE20D0C4DFD1A3FC30156A4496 Ref C: Sun Oct 05 18:33:44 2014 PST | clean |
http://www.bing.com/?scope=web&mkt=en-ww&form=hdrsc1 | 200 OK Content-Length: 37329 Content-Type: text/html | clean |
http://www.bing.com/explore?FORM=Z9LH4 | 200 OK Content-Length: 24793 Content-Type: text/html | clean |
http://www.bing.com/?FORM=HDRHME&pq= | 200 OK Content-Length: 37215 Content-Type: text/html | clean |
http://www.bing.com/account/general?ru=http%3a%2f%2fwww.bing.com%3a80%2f%3fFORM%3dHDRHME%26pq%3d&FORM=SEFD | 200 OK Content-Length: 46014 Content-Type: text/html | clean |
http://www.bing.com/?FORM=Z9FD1 | 200 OK Content-Length: 37193 Content-Type: text/html | clean |
http://www.bing.com/account/general?ru=http%3a%2f%2fwww.bing.com%3a80%2f%3fFORM%3dZ9FD1&FORM=SEFD | 200 OK Content-Length: 45938 Content-Type: text/html | clean |