Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: eletix.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Fri, 11 Apr 2014 12:27:03 GMT
Pragma: no-cache
Server: Apache/2.2.15 (Unix) PHP/5.2.17
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Wed, 12 Mar 2014 12:22:35 GMT
Set-Cookie: PHPSESSID=1cda777381984d0f8ddabb4b7aa65faf; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: eletix.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Fri, 11 Apr 2014 12:27:03 GMT
Pragma: no-cache
Server: Apache/2.2.15 (Unix) PHP/5.2.17
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Wed, 12 Mar 2014 12:22:35 GMT
Set-Cookie: PHPSESSID=1cda777381984d0f8ddabb4b7aa65faf; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: eletix.ru
Referer: http://www.google.com/search?q=eletix.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: eletix.ru
Referer: http://www.google.com/search?q=eletix.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
| Request | Server response | Status |
http://eletix.ru/ | 200 OK Content-Length: 39412 Content-Type: text/html | clean |
http://eletix.ru/java/java2.js | 200 OK Content-Length: 23350 Content-Type: application/javascript | clean |
http://eletix.ru/java/cartwindow.js | 200 OK Content-Length: 2760 Content-Type: application/javascript | clean |
http://eletix.ru/phpshop/lib/Subsys/JsHttpRequest/Js.js | 200 OK Content-Length: 12191 Content-Type: application/javascript | clean |
http://eletix.ru/order/ | 200 OK Content-Length: 18356 Content-Type: text/html | clean |
http://eletix.ru/java/tabpane.js | 200 OK Content-Length: 8185 Content-Type: application/javascript | clean |
http://eletix.ru/compare/ | 200 OK Content-Length: 18495 Content-Type: text/html | clean |
http://eletix.ru/page/page3.html | 200 OK Content-Length: 26120 Content-Type: text/html | clean |
http://eletix.ru/page/page2.html | 200 OK Content-Length: 20420 Content-Type: text/html | clean |
http://eletix.ru/page/page4.html | 200 OK Content-Length: 18397 Content-Type: text/html | clean |
http://eletix.ru/page/page13.html | 200 OK Content-Length: 26531 Content-Type: text/html | clean |
http://eletix.ru/page/page14.html | 200 OK Content-Length: 40285 Content-Type: text/html | clean |
http://eletix.ru/shop/CID_6.html | 200 OK Content-Length: 43317 Content-Type: text/html | clean |
http://eletix.ru/shop/CID_136.html | 200 OK Content-Length: 35592 Content-Type: text/html | clean |
http://eletix.ru/shop/CID_134.html | 200 OK Content-Length: 27634 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=eletix.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://eletix.ru/
Result: eletix.ru is not infected or malware details are not published yet.
Result: eletix.ru is not infected or malware details are not published yet.
