Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: divatrans.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 30 Jun 2014 20:41:07 GMT
Server: Apache/2.2.26 (CentOS)
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: divatrans.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 30 Jun 2014 20:41:07 GMT
Server: Apache/2.2.26 (CentOS)
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: divatrans.ru
Referer: http://www.google.com/search?q=divatrans.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: divatrans.ru
Referer: http://www.google.com/search?q=divatrans.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://divatrans.ru/ | 200 OK Content-Length: 44513 Content-Type: text/html | clean |
http://divatrans.ru/leftmenu.js | 200 OK Content-Length: 4976 Content-Type: text/javascript | clean |
http://ru3.hit.stat24.com/xy.js?id=AqWQzeONG2USvPgfD4jk7.VnfSWpoyLuA_To__Wlxab.e7/align=center/type=absolute | 200 OK Content-Length: 420 Content-Type: application/x-javascript | clean |
http://divatrans.ru/index.php | 200 OK Content-Length: 41960 Content-Type: text/html | clean |
http://divatrans.ru/company.php | 200 OK Content-Length: 32989 Content-Type: text/html | clean |
http://ru3.hit.stat24.com/xy.js?id=AqWQzeONG2USvPgfD4jk7.VnfSWpoyLuA_To__Wlxab.e7/align=center/type=percent | 200 OK Content-Length: 419 Content-Type: application/x-javascript | clean |
http://divatrans.ru/service.php | 200 OK Content-Length: 23514 Content-Type: text/html | clean |
http://divatrans.ru/price.php | 200 OK Content-Length: 82338 Content-Type: text/html | clean |
http://divatrans.ru/contact.php | 200 OK Content-Length: 23363 Content-Type: text/html | clean |
http://divatrans.ru/zakaz.php | 200 OK Content-Length: 26742 Content-Type: text/html | clean |
http://divatrans.ru/vac.php | 200 OK Content-Length: 31200 Content-Type: text/html | clean |
http://divatrans.ru/gazel.php | 200 OK Content-Length: 51993 Content-Type: text/html | clean |
http://divatrans.ru/book.php | 404 Not Found Content-Length: 41960 Content-Type: text/html | clean |
http://divatrans.ru/gazel_bort.php | 200 OK Content-Length: 52755 Content-Type: text/html | clean |
http://divatrans.ru/zul.php | 200 OK Content-Length: 52937 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=divatrans.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://divatrans.ru/
Result: divatrans.ru is not infected or malware details are not published yet.
Result: divatrans.ru is not infected or malware details are not published yet.