Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=burdastyle.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://burdastyle.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: burdastyle.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, public
Connection: close
Date: Thu, 25 Sep 2014 20:52:25 GMT
Pragma: no-cache
Server: nginx/1.4.2
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Fri, 26 Sep 2014 00:44:31 GMT
Set-Cookie: PHPSESSID=01s63m195v761t2ad17pkqvn92; path=/; HttpOnly
Set-Cookie: loggedin=Guest; path=/
X-Powered-By: PHP/5.5.11
X-UA-Compatible: IE=Edge,chrome=1
GET / HTTP/1.1
Host: burdastyle.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, public
Connection: close
Date: Thu, 25 Sep 2014 20:52:25 GMT
Pragma: no-cache
Server: nginx/1.4.2
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Fri, 26 Sep 2014 00:44:31 GMT
Set-Cookie: PHPSESSID=01s63m195v761t2ad17pkqvn92; path=/; HttpOnly
Set-Cookie: loggedin=Guest; path=/
X-Powered-By: PHP/5.5.11
X-UA-Compatible: IE=Edge,chrome=1
Second query (visit from search engine):
GET / HTTP/1.1
Host: burdastyle.ru
Referer: http://www.google.com/search?q=burdastyle.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: burdastyle.ru
Referer: http://www.google.com/search?q=burdastyle.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://burdastyle.ru/ | 200 OK Content-Length: 42985 Content-Type: text/html | clean |
http://burdastyle.ru/assets/f3932159/jquery.min.js | 200 OK Content-Length: 93636 Content-Type: application/javascript | clean |
http://burdastyle.ru/assets/f3932159/jui/js/jquery-ui.min.js | 200 OK Content-Length: 237802 Content-Type: application/javascript | clean |
http://burdastyle.ru/static/js/glue.js | 200 OK Content-Length: 145156 Content-Type: text/javascript | clean |
http://burdastyle.ru/assets/1128d48a/jquery.bxslider.min.js | 200 OK Content-Length: 19359 Content-Type: application/javascript | clean |
http://burdastyle.ru/assets/a7320adc/jquery.autoheightimage.js | 200 OK Content-Length: 603 Content-Type: application/javascript | clean |
http://userapi.vk.com/js/api/openapi.js?47 | 200 OK Content-Length: 64013 Content-Type: application/x-javascript | clean |
https://www.surveymonkey.com/jsPop.aspx?sm=H62yhVtFr0T_2f0AQsxjNHWA_3d_3d | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 25 Sep 2014 20:52:30 GMT Location: /pop.aspx?sm=7boTSz6oaWI0xQZDhxtluCQ%2b3eyYwDqkRdSqCJST3EA%3d Content-Length: 188 Content-Type: text/html; charset=utf-8 P3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: P_56896761=1; path=/ Set-Cookie: ep201=CWBoEqEUYHbxLrmjQe6RGPNSaaY=;expires=Thu, 25-Sep-2014 21:22:31 GMT;path=/;domain=.surveymonkey.com; Set-Cookie: ep202=tNYmfaPsqkCgHcK3exRkPTS/K6o=;expires=Sat, 26-Sep-2015 02:41:17 GMT;path=/;domain=.surveymonkey.com; Set-Cookie: TSd23572=44c606e2abce60699ae6dbbfdc0b69e3e9f7025a56ae7ee65424808f0c65e4dca28dfd26; Path=/ Set-Cookie: TS53dc91=adff6fd28a04694bf9605b00226e3993e9f7025a56ae7ee65424808f6f76d1d8832546795b91794154c144ab; path=/; domain=.surveymonkey.com X-Powered-By: Zathras | clean |
https://www.surveymonkey.com/pop.aspx?sm=7botsz6oawi0xqzdhxtlucq%2b3eyywdqkrdsqcjst3ea%3d | 404 Not Found Content-Length: 2674 Content-Type: text/html | clean |
https://www.surveymonkey.com/ | 200 OK Content-Length: 25144 Content-Type: text/html | clean |
https://secure.surveymonkey.com/smassets/anonweb/12.5.12-anonweb-0125/cjs/mobile-first-bundle-min.js | 200 OK Content-Length: 99777 Content-Type: application/x-javascript | clean |
https://s.btstatic.com/tag.js | 200 OK Content-Length: 33242 Content-Type: application/javascript | clean |
https://www.surveymonkey.com/user/sign-in/ | 200 OK Content-Length: 13712 Content-Type: text/html | clean |
https://secure.surveymonkey.com/smassets/smlib.ui/1.0.7/cjs/global-bundle-min.js | 200 OK Content-Length: 155474 Content-Type: application/x-javascript | clean |
https://secure.surveymonkey.com/smassets/smlib.globaltemplates/1.1.19/cjs/base-bundle-min.js | 200 OK Content-Length: 4229 Content-Type: application/x-javascript | clean |
https://secure.surveymonkey.com/smassets/userweb/79.0.5-0079/cjs/signin-bundle-min.js | 200 OK Content-Length: 4359 Content-Type: application/x-javascript | clean |