Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://filmdrama.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: filmdrama.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Mon, 28 Apr 2014 00:17:20 GMT Location: http://goo.gl/0rXySb Server: nginx Content-Length: 282 Content-Type: text/html; charset=iso-8859-1 | malicious |
URL: http://goo.gl/0rXySb (imitation of visitor from search engine) GET /0rXySb HTTP/1.1 Host: goo.gl Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Mon, 28 Apr 2014 00:05:55 GMT Pragma: no-cache Age: 9 Location: http://sh.oowoo.ru/redsh.php Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Mon, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 80:quic X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | malicious |
URL: http://sh.oowoo.ru/redsh.php (imitation of visitor from search engine) GET /redsh.php HTTP/1.1 Host: sh.oowoo.ru Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Found Connection: close Date: Mon, 28 Apr 2014 00:01:09 GMT Location: http://targetnow.biz/?code=i8mjo7 Server: nginx/1.1.10 Content-Length: 0 Content-Type: text/html; charset=cp1251 X-Powered-By: PHP/5.2.17 | suspicious |
URL: http://targetnow.biz/?code=i8mjo7 (imitation of visitor from search engine) GET /?code=i8mjo7 HTTP/1.1 Host: targetnow.biz Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Found Connection: close Date: Mon, 28 Apr 2014 00:06:05 GMT Location: http://spinyla2.org/bux-systems_com/main.php?s=36984&c=2v&security_hash=7a6169a4726119ecdd50c603cd212d6b Server: nginx/1.4.3 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.5.1-1~dotdeb.1 X-Robots-Tag: noindex, nofollow, none, noarchive | suspicious |
Scanned pages/files
Request | Server response | Status |
http://filmdrama.ru/ | 200 OK Content-Length: 63595 Content-Type: text/html | clean |
http://filmdrama.ru/engine/classes/js/jquery.js | 200 OK Content-Length: 93637 Content-Type: application/javascript | clean |
http://filmdrama.ru/engine/classes/js/jqueryui.js | 200 OK Content-Length: 75927 Content-Type: application/javascript | clean |
http://filmdrama.ru/engine/classes/js/dle_js.js | 200 OK Content-Length: 23054 Content-Type: application/javascript | clean |
http://filmdrama.ru/engine/classes/highslide/highslide.js | 200 OK Content-Length: 47121 Content-Type: application/javascript | clean |
http://filmdrama.ru/templates/media/js/jquery.cookie.js | 200 OK Content-Length: 4341 Content-Type: application/javascript | clean |
http://filmdrama.ru/templates/media/js/jquery.ttabs.js | 200 OK Content-Length: 1044 Content-Type: application/javascript | clean |
http://filmdrama.ru/templates/media/js/jquery.tooltip.min.js | 200 OK Content-Length: 5301 Content-Type: application/javascript | clean |
http://filmdrama.ru/templates/media/js/active.js | 200 OK Content-Length: 4059 Content-Type: application/javascript | clean |
http://filmdrama.ru/main/ | 200 OK Content-Length: 27229 Content-Type: text/html | clean |
http://filmdrama.ru/templates/media/js/active-full-news.js | 200 OK Content-Length: 6237 Content-Type: application/javascript | clean |
http://filmdrama.ru/filmdrama/ | 200 OK Content-Length: 28129 Content-Type: text/html | clean |
http://filmdrama.ru/main/5-pobeg-iz-shoushenka-the-shawshank-redemption-1994.html | 200 OK Content-Length: 28142 Content-Type: text/html | clean |
http://filmdrama.ru/engine/classes/js/bbcodes.js | 200 OK Content-Length: 9658 Content-Type: application/javascript | clean |
http://filmdrama.ru/engine/classes/masha/ierange.js | 200 OK Content-Length: 16681 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=filmdrama.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://filmdrama.ru/
Result: filmdrama.ru is not infected or malware details are not published yet.
Result: filmdrama.ru is not infected or malware details are not published yet.