Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=deep.perm.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://deep.perm.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://deep.perm.ru/ | 200 OK Content-Length: 6279 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ipguard.deep.perm.ru ...[4126 bytes skipped]... ;/a> ÐÒÅËÒÁÝÁÅÔ Ó×ÏÀ ÒÁÂÏÔÕ ÐÏ ÏÂØÅËÔÉ×ÎÙÍ ÐÒÉÞÉÎÁÍ. ðÏÓÌÅ ÏÞÅÒÅÄÎÏÇÏ ÐÅÒÅÅÚÄÁ ÓÅÒ×ÅÒÁ ÐÒÏÓÔÏ ÎÅ ×ÉÖÕ ÓÍÙÓÌÁ ÅÅ ÚÁÐÕÓËÁÔØ ÄÁÌØÛÅ. <b>FIDO</b> est mort. Vivat le <b>FIDO</b>.</td></tr></table> <table class=ltb><tr><td width=40% class=lhd><b>2008 Oct 4 14:19:42</b></td></tr> <tr><td class=lbd>÷ÙÌÏÖÅÎÁ ÎÏ×ÁÑ ×ÅÒÓÉÑ <a href="http://ipguard.deep.perm.ru/">ipguard</a> . ëÁË ×ÏÄÉÔÓÑ ÕÌÕÞÛÅÎÁÑ É ×Ï ÍÎÏÇÏÍ ÐÅÒÅÄÅÌÁÎÁÑ Ó ÎÕÌÑ. òÁÂÏÔÁÅÔ ÜÆÆÅËÔÉ×ÎÅÅ É ÎÁÄÅÖÎÅÅ. ïÔÄÅÌØÎÏÅ ÓÐÁÓÉÂÏ ÔÅÒÐÅÌÉ×ÏÍÕ ÂÅÔÁ-ÔÅÓÔÅÒÕ <b>irix</b> ;)</td></tr></table> <table class=ltb><tr><td width=40% class=lhd><b>2007 Jan 31 19:35:30</b></td></tr> <tr><td class=lbd>ôÕÔ ÐÏÄÕÍÁÌÏÓØ, ÅÓÌÉ Ñ ÎÉÞÅÇÏ ÎÅ ÐÉÛÕ ÎÁ ÓÁÊÔÉËÅ - ÜÔÏ ÎÅ ÚÎÁÞÉÔ ÞÔÏ ÏÎ ÎÅ ÒÁÂÏÔÁÅÔ É ÎÅ ÏÂÎÏ×ÌÑÅÔÓÑ. ...[3531 bytes skipped]... | ||
http://deep.perm.ru//pagead2.googlesyndication.com/pagead/show_ads.js/ | 404 Not Found Content-Length: 2988 Content-Type: text/html | clean |
http://deep.perm.ru/about.php | 200 OK Content-Length: 7201 Content-Type: text/html | clean |
http://deep.perm.ru/misc/sead.txt | 200 OK Content-Length: 507 Content-Type: text/plain | clean |
http://deep.perm.ru/test404page.js | 404 Not Found Content-Length: 2952 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php | 200 OK Content-Length: 7702 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20060728122843 | 200 OK Content-Length: 7702 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20060618181658 | 200 OK Content-Length: 7654 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20050712162248 | 200 OK Content-Length: 7622 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20050221173306 | 200 OK Content-Length: 7528 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20050203163203 | 200 OK Content-Length: 7585 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20050203162705 | 200 OK Content-Length: 7702 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20050123020531 | 200 OK Content-Length: 7951 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20040305170819 | 200 OK Content-Length: 8278 Content-Type: text/html | clean |
http://deep.perm.ru/comments.php?date=20030815184815 | 200 OK Content-Length: 8430 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: deep.perm.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 15 Apr 2014 10:35:15 GMT
Server: nginx
Content-Type: text/html
X-Powered-By: PHP/5.3.2
GET / HTTP/1.1
Host: deep.perm.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 15 Apr 2014 10:35:15 GMT
Server: nginx
Content-Type: text/html
X-Powered-By: PHP/5.3.2
Second query (visit from search engine):
GET / HTTP/1.1
Host: deep.perm.ru
Referer: http://www.google.com/search?q=deep.perm.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: deep.perm.ru
Referer: http://www.google.com/search?q=deep.perm.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.