Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dreamphones.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dreamphones.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://dreamphones.ru/ | 200 OK Content-Length: 40406 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<td style="padding:0px;width:50px;height:21px;"><img border="0" width="50" height="21" src="http://counter.24log.ru/counter?id=153693&t=24&st=4&r='+escape(document.referrer)+'&u='+escape(document.URL)+'&s='+((typeof(screen)=='undefined')?'':screen.width+'x'+screen.height+'x'+(screen.colorDepth?screen.colorDepth:screen.pixelDepth))+'&rnd='+Math.random()+'" alt="РейÑинг: ТоваÑÑ, ÑÑлÑги" title="Ðоказано ÑиÑло пÑоÑмоÑÑов вÑего и за ÑегоднÑ" style="margin:0;padding:0;" /></td>'); Antivirus reports:
| ||
http://dreamphones.ru/bitrix/js/main/core/core.js?1377520678 | 200 OK Content-Length: 51322 Content-Type: text/html | clean |
http://dreamphones.ru/test404page.js | 404 Not Found Content-Length: 591 Content-Type: text/html | clean |
http://dreamphones.ru/bitrix/js/main/core/core_ajax.js?1377520678 | 200 OK Content-Length: 21623 Content-Type: text/plain | clean |
http://dreamphones.ru/bitrix/js/main/session.js?1377520678 | 200 OK Content-Length: 3157 Content-Type: text/plain | clean |
http://dreamphones.ru/bitrix/templates/furniture_blue/js/highslide-full.js | 200 OK Content-Length: 102758 Content-Type: text/javascript | clean |
http://stummann.net/steffen/google-analytics/jquery-1.6.5.min.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dreamphones.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 15 Jun 2014 17:20:09 GMT
Server: nginx
Content-Type: text/html; charset=UTF-8
X-Powered-By: PleskLin
GET / HTTP/1.1
Host: dreamphones.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 15 Jun 2014 17:20:09 GMT
Server: nginx
Content-Type: text/html; charset=UTF-8
X-Powered-By: PleskLin
Second query (visit from search engine):
GET / HTTP/1.1
Host: dreamphones.ru
Referer: http://www.google.com/search?q=dreamphones.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dreamphones.ru
Referer: http://www.google.com/search?q=dreamphones.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.