Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://center-met.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: center-met.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Cache-Control: post-check=0, pre-check=0 Connection: close Date: Fri, 12 Sep 2014 06:11:26 GMT Pragma: no-cache Location: http://web-redirect.ru/?web Server: nginx/0.7.67 Vary: Accept-Encoding Content-Type: text/html; charset=utf-8 Expires: Mon, 1 Jan 2001 00:00:00 GMT Last-Modified: Fri, 12 Sep 2014 06:11:26 GMT P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: _cutt_caches_images=1410502286; expires=Sat, 13-Sep-2014 06:11:26 GMT; path=/ Set-Cookie: a9c1337c58940cf5c10feaaccbab8edb=e5cudhchr67mrbvmd3ud8tmfo5; path=/ X-Powered-By: PHP/5.2.17 | malicious |
URL: http://web-redirect.ru/?web (imitation of visitor from search engine) GET /?web HTTP/1.1 Host: web-redirect.ru Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Fri, 12 Sep 2014 06:11:26 GMT Pragma: no-cache Location: http://chulaplus.com/components/com_weblinks/2/separator.php Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Fri, 12 Sep 2014 06:11:26 GMT X-Powered-By: PHP/5.3.3 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://center-met.ru/ | 200 OK Content-Length: 38268 Content-Type: text/html | clean |
http://center-met.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://center-met.ru/1_files/wp_cirrus_gwt.js | 200 OK Content-Length: 5693 Content-Type: application/javascript | clean |
http://center-met.ru/1_files/shutter-reloaded.js | 200 OK Content-Length: 9540 Content-Type: application/javascript | clean |
http://metal4u.ru/lme_utf8.js | 200 OK Content-Length: 4002 Content-Type: application/x-javascript | clean |
http://api-maps.yandex.ru/2.0/?coordorder=longlat&load=package.full&wizard=constructor&lang=ru-RU&onload=fid_133695757177920965549 | 200 OK Content-Length: 70808 Content-Type: text/javascript | clean |
http://www.forexpf.ru/_informer_/eurusd_.php | 200 OK Content-Length: 2529 Content-Type: text/html | clean |
http://www.forexpf.ru/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 12 Sep 2014 06:11:28 GMT Location: / Server: nginx Content-Type: text/html; charset=utf-8 X-Conf: news1-www X-Conf: www-to2-news1-nginx X-Powered-By: PHP/5.4.28 | clean |
http://www.forexpf.ru/ | 200 OK Content-Length: 62230 Content-Type: text/html | clean |
http://www.forexpf.ru/forex.js | 200 OK Content-Length: 361 Content-Type: application/x-javascript | clean |
http://yandex.st/share/share.js | 200 OK Content-Length: 54941 Content-Type: application/x-javascript | clean |
http://mc.yandex.ru/metrika/watch.js | 200 OK Content-Length: 59146 Content-Type: application/x-javascript | clean |
http://counter.rambler.ru/top100.jcn?360665 | 200 OK Content-Length: 6852 Content-Type: application/x-javascript | clean |
http://www.forexpf.ru/js/profinance.js | 200 OK Content-Length: 1226 Content-Type: application/x-javascript | clean |
http://www.forexpf.ru/_about_/ | 200 OK Content-Length: 24899 Content-Type: text/html | clean |
http://bs.yandex.ru/resource/watch.js | 200 OK Content-Length: 59146 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=center-met.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://center-met.ru/
Result: center-met.ru is not infected or malware details are not published yet.
Result: center-met.ru is not infected or malware details are not published yet.