Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=discountur.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://discountur.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://discountur.ru/ | 200 OK Content-Length: 174972 Content-Type: text/html | suspicious |
Suspicious code found <p><div class="widget-textfooter"> <div class="textwidget"><span class="up-letter">СпеÑиÑе</span>, ÑÐµÐ½Ñ Ð°ÐºÑÑалÑÐ½Ñ Ð½Ð° Ð¼Ð¾Ð¼ÐµÐ½Ñ Ð¿ÑбликаÑии. ÐолÑÑой вÑÐ±Ð¾Ñ Ð¾Ñелей. </p>
<p>СÑоимоÑÑÑ Ñказана за Ñеловека пÑи двÑÑ Ð¼ÐµÑÑном ÑазмеÑении. ÐÑе подÑобноÑÑи по ÑÑÑам ÑÑоÑнÑйÑе Ñ Ð½Ð°ÑÐ¸Ñ Ð¼ÐµÐ½ÐµÐ´Ð¶ÐµÑов по Ñел: <span class="bold-letter">(812) 602-17-12</span></div> </div></p> | ||
http://discountur.ru/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93128 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/themes/yoko/js/smoothscroll.js?ver=1.0 | 200 OK Content-Length: 2665 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/jquery-vertical-accordion-menu/js/jquery.hoverIntent.minified.js?ver=3.6 | 200 OK Content-Length: 1614 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/jquery-vertical-accordion-menu/js/jquery.cookie.js?ver=3.6 | 200 OK Content-Length: 4341 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/jquery-vertical-accordion-menu/js/jquery.dcjqaccordion.2.9.js?ver=3.6 | 200 OK Content-Length: 6982 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/totop-link/totop-link.js.php?speed&ver=3.6 | 200 OK Content-Length: 378 Content-Type: text/javascript | clean |
http://discountur.ru/wp-content/plugins/vkontakte-api/js/callback.js?ver=3.6 | 200 OK Content-Length: 4977 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15622 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/gb_countdown/jquery.countdown.js?ver=1.3.5 | 200 OK Content-Length: 1771 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/gb_order_form/gborderbox/gb_order_script.js?ver=1.5.4 | 200 OK Content-Length: 21833 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/gb_order_form/gborderbox/gb_order_ajax.js?ver=1.5.4 | 200 OK Content-Length: 2498 Content-Type: application/x-javascript | clean |
http://discountur.ru/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 3598 Content-Type: application/x-javascript | clean |
http://yandex.st/jquery-ui/1.8.16/jquery-ui.min.js?ver=3.6 | 200 OK Content-Length: 201875 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: discountur.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Mar 2015 15:57:12 GMT
Server: nginx/1.6.2
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: gb_ctdn=1425311832; expires=Tue, 03-Mar-2015 15:57:12 GMT; path=/
X-Pingback: http://discountur.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: discountur.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Mar 2015 15:57:12 GMT
Server: nginx/1.6.2
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: gb_ctdn=1425311832; expires=Tue, 03-Mar-2015 15:57:12 GMT; path=/
X-Pingback: http://discountur.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: discountur.ru
Referer: http://www.google.com/search?q=discountur.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: discountur.ru
Referer: http://www.google.com/search?q=discountur.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.