Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=clubcitadel.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: clubcitadel.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 17:08:25 GMT
Server: nginx/1.2.1
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://clubcitadel.ru/xmlrpc.php
X-Powered-By: PHP/5.4.34-0+deb7u1
GET / HTTP/1.1
Host: clubcitadel.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 17:08:25 GMT
Server: nginx/1.2.1
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://clubcitadel.ru/xmlrpc.php
X-Powered-By: PHP/5.4.34-0+deb7u1
Second query (visit from search engine):
GET / HTTP/1.1
Host: clubcitadel.ru
Referer: http://www.google.com/search?q=clubcitadel.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: clubcitadel.ru
Referer: http://www.google.com/search?q=clubcitadel.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://clubcitadel.ru/ | 200 OK Content-Length: 222873 Content-Type: text/html | clean |
http://clubcitadel.ru//ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 10 Jan 2015 17:08:26 GMT Pragma: no-cache Location: http://clubcitadel.ru/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://clubcitadel.ru/xmlrpc.php X-Powered-By: PHP/5.4.34-0+deb7u1 | clean |
http://clubcitadel.ru/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | 404 Not Found Content-Length: 109685 Content-Type: text/html | clean |
http://clubcitadel.ru/wp-content/plugins/quoter/quoter.php?js=1 | 200 OK Content-Length: 2014 Content-Type: text/javascript | clean |
http://clubcitadel.ru/index.php?ak_action=wp_grins_js | 200 OK Content-Length: 4538 Content-Type: text/javascript | clean |
http://clubcitadel.ru/avtory-bloga/ | 200 OK Content-Length: 116349 Content-Type: text/html | clean |
http://clubcitadel.ru/izgotovlenie-istorichnyx-kostyumov-evropa-vysokoe-srednevekove/ | 200 OK Content-Length: 111973 Content-Type: text/html | clean |
http://clubcitadel.ru/about/ | 200 OK Content-Length: 112915 Content-Type: text/html | clean |
http://clubcitadel.ru/oglavlenie/ | 200 OK Content-Length: 124590 Content-Type: text/html | clean |
http://clubcitadel.ru/ustav-kluba/ | 200 OK Content-Length: 131189 Content-Type: text/html | clean |
http://clubcitadel.ru/feed/rss/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 17:08:34 GMT ETag: "59fbb4210f1eb2529cf80f659c54c77d" Location: http://clubcitadel.ru/feed/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Last-Modified: Fri, 08 Mar 2013 08:17:00 GMT X-Pingback: http://clubcitadel.ru/xmlrpc.php X-Powered-By: PHP/5.4.34-0+deb7u1 | clean |
http://clubcitadel.ru/feed/ | 200 OK Content-Length: 281567 Content-Type: text/xml | clean |
http://clubcitadel.ru/wp-content/uploads/2013/03/622856_cr.png | 200 OK Content-Length: 300576 Content-Type: image/png | clean |
http://clubcitadel.ru/test404page.js | 404 Not Found Content-Length: 109685 Content-Type: text/html | clean |
http://clubcitadel.ru//dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=Accounting%20Gross%20Profit&afdt=CtgBChMIiaqQl_WJwwIVZpPCCh3KDQDgGAEgAFDdkH1QooT5AVCen_oBULOMuQVQlubkClCpiu0MUP-InhBQ6pXgFlDAzeIeULHNgR9Qi4WcH1C-tPYkUPagrSlQrNraLFCHsP9DUN7b2V9Qvoj5ZlDgp5OPAVDbgJ-PAVCdhu6XAV <span>...155 symbols skipped</span> | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 10 Jan 2015 17:08:36 GMT Pragma: no-cache Location: http://clubcitadel.ru/dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=Accounting%20Gross%20Profit&afdt=CtgBChMIiaqQl_WJwwIVZpPCCh3KDQDgGAEgAFDdkH1QooT5AVCen_oBULOMuQVQlubkClCpiu0MUP-InhBQ6pXgFlDAzeIeULHNgR9Qi4WcH1C-tPYkUPagrSlQrNraLFCHsP9DUN7b2V9Qvoj5ZlDgp5OPAVDbgJ-PAVCdhu6XAVDfiO6XAVDgiO6XAVCAie6XAVCxveDCAVCovprGAlD6g9idA1CH_f3BBHHUnrZB_S0jlYIBEwjQ4JGX9YnDAhWvHnIKHX4dACWNAWzLDjuRAexulZ7jRZgPEhkAbTqKkCBAX6dela25lHY0qAVOExEDy-nh/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://clubcitadel.ru/xmlrpc.php X-Powered-By: PHP/5.4.34-0+deb7u1 | clean |
http://clubcitadel.ru/dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=accounting%20gross%20profit&afdt=ctgbchmiiaqql_wjwwivzppcch3kdqdggaegafddkh1qoot5avcen_obulomuqvqlubkclcpiu0mup-inhbq6pxgfldazeieulhngr9qi4wch1c-tpykupagrslqrnralfchsp9dun7b2v9qvoj5zldgp5opavdbgj-pavcdhu6xavd <span>...154 symbols skipped</span> | 404 Not Found Content-Length: 116075 Content-Type: text/html | clean |
http://clubcitadel.ru//dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=Accounting%20Gross%20Profit&afdt=CtgBChMIs7vcl_WJwwIVZo3CCh3jAQCIGAEgAFDdkH1QooT5AVCen_oBULOMuQVQlubkClCpiu0MUP-InhBQ6pXgFlDAzeIeULHNgR9Qi4WcH1C-tPYkUPagrSlQrNraLFCHsP9DUN7b2V9Qvoj5ZlDgp5OPAVDbgJ-PAVCdhu6XAV <span>...155 symbols skipped</span> | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 10 Jan 2015 17:08:38 GMT Pragma: no-cache Location: http://clubcitadel.ru/dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=Accounting%20Gross%20Profit&afdt=CtgBChMIs7vcl_WJwwIVZo3CCh3jAQCIGAEgAFDdkH1QooT5AVCen_oBULOMuQVQlubkClCpiu0MUP-InhBQ6pXgFlDAzeIeULHNgR9Qi4WcH1C-tPYkUPagrSlQrNraLFCHsP9DUN7b2V9Qvoj5ZlDgp5OPAVDbgJ-PAVCdhu6XAVDfiO6XAVDgiO6XAVCAie6XAVCxveDCAVCovprGAlD6g9idA1CH_f3BBHH41GKZIGbtgoIBEwjz99yX9YnDAhUFjcIKHQweADiNAWzLDjuRAexulZ7jRZgPEhkAbTqKkF44F9tjfVrv3r2vOLYEtsExrQhL/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://clubcitadel.ru/xmlrpc.php X-Powered-By: PHP/5.4.34-0+deb7u1 | clean |
http://clubcitadel.ru/dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=accounting%20gross%20profit&afdt=ctgbchmis7vcl_wjwwivzo3cch3jaqcigaegafddkh1qoot5avcen_obulomuqvqlubkclcpiu0mup-inhbq6pxgfldazeieulhngr9qi4wch1c-tpykupagrslqrnralfchsp9dun7b2v9qvoj5zldgp5opavdbgj-pavcdhu6xavd <span>...154 symbols skipped</span> | 404 Not Found Content-Length: 109685 Content-Type: text/html | clean |
http://clubcitadel.ru//dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=Accounting%20Gross%20Profit&afdt=CtgBChMI24OpmPWJwwIVggrDCh0xIACqGAEgAFDdkH1QooT5AVCen_oBULOMuQVQlubkClCpiu0MUP-InhBQ6pXgFlDAzeIeULHNgR9Qi4WcH1C-tPYkUPagrSlQrNraLFCHsP9DUN7b2V9Qvoj5ZlDgp5OPAVDbgJ-PAVCdhu6XAV <span>...155 symbols skipped</span> | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 10 Jan 2015 17:08:39 GMT Pragma: no-cache Location: http://clubcitadel.ru/dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=Accounting%20Gross%20Profit&afdt=CtgBChMI24OpmPWJwwIVggrDCh0xIACqGAEgAFDdkH1QooT5AVCen_oBULOMuQVQlubkClCpiu0MUP-InhBQ6pXgFlDAzeIeULHNgR9Qi4WcH1C-tPYkUPagrSlQrNraLFCHsP9DUN7b2V9Qvoj5ZlDgp5OPAVDbgJ-PAVCdhu6XAVDfiO6XAVDgiO6XAVCAie6XAVCxveDCAVCovprGAlD6g9idA1CH_f3BBHGaHHqIWK7TdoIBEwiUsamY9YnDAhVhkcIKHTwCAPKNAWzLDjuRAexulZ7jRZgPEhkAbTqKkHIs6IcR7aoXpGGR5MP58BlctbSh/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://clubcitadel.ru/xmlrpc.php X-Powered-By: PHP/5.4.34-0+deb7u1 | clean |
http://clubcitadel.ru/dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-rookmedia32_3ph_js&url=downprofit.com&output=html&hl=en&drid=as-drid-2240504810383542&channel=033001&ac=r&q=accounting%20gross%20profit&afdt=ctgbchmi24opmpwjwwivggrdch0xiacqgaegafddkh1qoot5avcen_obulomuqvqlubkclcpiu0mup-inhbq6pxgfldazeieulhngr9qi4wch1c-tpykupagrslqrnralfchsp9dun7b2v9qvoj5zldgp5opavdbgj-pavcdhu6xavd <span>...154 symbols skipped</span> | 404 Not Found Content-Length: 109685 Content-Type: text/html | clean |