Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=buxmoney.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://buxmoney.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://buxmoney.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: buxmoney.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 17 Sep 2014 05:08:31 GMT Pragma: no-cache Location: http://loopdown.lflinkup.com/ Server: Apache/2.2.8 (CentOS) Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=h9u3g13uc2lo560foi30v1cpl7; path=/ X-Powered-By: PHP/5.2.10 | malicious |
Scanned pages/files
Request | Server response | Status |
http://buxmoney.ru/ | 200 OK Content-Length: 54677 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://mechta-74.ru/ <iframe id="wrapper" src="http://mechta-74.ru/" width="1px" frameborder="0" height="1px"> | ||
http://go1.powerred.biz/script.php?fn=1&id=90 | 500 Can't connect to go1.powerred.biz:80 (Bad hostname) Content-Length: 164 Content-Type: text/plain | clean |
http://go1.powerred.biz/test404page.js | 500 Can't connect to go1.powerred.biz:80 (Bad hostname) Content-Length: 164 Content-Type: text/plain | clean |