Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dromad.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tevicos.com
Result:
GET / HTTP/1.1
Host: tevicos.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: tevicos.com
Referer: http://www.google.com/search?q=tevicos.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tevicos.com
Referer: http://www.google.com/search?q=tevicos.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://dromad.ru/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 09 Sep 2014 20:54:25 GMT Location: http://compton-rp.ru/neww_clo/tds/master.php?i=1&q=%D1%81%D0%BE%D0%BE%D0%B1%D1%89%D0%B5%D0%BD%D0%B8%D0%B5+%D0%BD%D0%B0+%D1%82%D0%B5%D0%BC%D1%83+%D0%BF%D0%B5%D1%80%D0%B5%D0%BC%D0%B5%D1%89%D0%B5%D0%BD%D0%B8%D0%B5+%D0%B2%D0%B8%D0%BA%D0%B8%D0%BF%D0%B5%D0%B4%D0%B8%D1%8F+%D0%BF%D0%BE+%D1%84%D0%B8%D0%B7%D0%B8%D0%BA%D0%B5&v=3&host=dromad.ru Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | malicious |
http://compton-rp.ru/neww_clo/tds/master.php?i=1&q=%d1%81%d0%be%d0%be%d0%b1%d1%89%d0%b5%d0%bd%d0%b8%d0%b5+%d0%bd%d0%b0+%d1%82%d0%b5%d0%bc%d1%83+%d0%bf%d0%b5%d1%80%d0%b5%d0%bc%d0%b5%d1%89%d0%b5%d0%bd%d0%b8%d0%b5+%d0%b2%d0%b8%d0%ba%d0%b8%d0%bf%d0%b5%d0%b4%d0%b8%d1%8f+%d0%bf%d0%be+%d1%84%d0%b8%d0%b7%d0%b8%d0%ba%d0%b5&v=3&host=dromad.ru | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 09 Sep 2014 20:54:27 GMT Location: http://poisk-gdz.ru/?q=ÑообÑение на ÑÐµÐ¼Ñ Ð¿ÐµÑемеÑение Ð²Ð¸ÐºÐ¸Ð¿ÐµÐ´Ð¸Ñ Ð¿Ð¾ Ñизике&i=1 Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.4.25-1~dotdeb.1 | clean |
http://poisk-gdz.ru/?q=ÑообÑение на ÑÐµÐ¼Ñ Ð¿ÐµÑемеÑение Ð²Ð¸ÐºÐ¸Ð¿ÐµÐ´Ð¸Ñ Ð¿Ð¾ Ñизике&i=1 | HTTP/1.1 200 OK Connection: close Date: Tue, 09 Sep 2014 20:54:27 GMT Server: nginx/1.0.15 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.4.29 | clean |
http://poisk-gdz.ru/url.php?url=СообÑение | HTTP/1.1 200 OK Connection: close Date: Tue, 09 Sep 2014 20:54:27 GMT Server: nginx/1.0.15 Content-Length: 1118 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.4.29 | clean |
http://poisk-gdz.ru/
notice: | 404 Not Found Content-Length: 284 Content-Type: text/html | clean |
http://poisk-gdz.ru/test404page.js | 404 Not Found Content-Length: 290 Content-Type: text/html | clean |