Scanned pages/files
Request | Server response | Status |
http://finegardentools.livejournal.com/ | 200 OK Content-Length: 53124 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=00010000042240d0&vid=898149853&r=919080158&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=00010000042240d0&vid=898149853&r=919080158&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> Hidden iFrame found. size: 1x1 src: http://ads.adfox.ru/202433/getcode?p1=biozy&p2=v&p3=a&p4=a&pct=a&plp=a&pli=a&pop=a&pfc=a&pfb=a&pr= <iframe src="http://ads.adfox.ru/202433/getcode?p1=biozy&p2=v&p3=a&p4=a&pct=a&plp=a&pli=a&pop=a&pfc=a&pfb=a&pr=' + pr + '&pt=b&pd=' + addate.getdate() + '&pw=' + addate.getday() + '&pv=' + addate.gethours() + '" frameborder="0" width="1" height="1" marginwidth="0" marginheight="0" scrolling="no" style="border: 0px; margin: 0px; padding: 0px;"> Hidden iFrame found. size: 1x1 src: http://ads.adfox.ru/202433/getcode?p1=biozy&p2=v&p3=a&p4=a&pct=a&plp=a&pli=a&pop=a&pfc=a&pfb=a <iframe src="http://ads.adfox.ru/202433/getcode?p1=biozy&p2=v&p3=a&p4=a&pct=a&plp=a&pli=a&pop=a&pfc=a&pfb=a" frameborder="0" width="1" height="1" marginwidth="0" marginheight="0" scrolling="no" style="border: 0px; margin: 0px; padding: 0px;"> | ||
http://l-stat.livejournal.net/js/ads/montblanc.js | 200 OK Content-Length: 3507 Content-Type: application/x-javascript | clean |
http://l-stat.livejournal.net/js/ads/sol_ru_rta_livejournal.js | 200 OK Content-Length: 1427 Content-Type: application/x-javascript | clean |
http://l-stat.livejournal.net/js/??.ljlib.js?v=1401365646 | 200 OK Content-Length: 271307 Content-Type: application/x-javascript | clean |
http://l-stat.livejournal.net/js/??jquery/jquery.lj.calendar.js,jquery/jquery.mask.js,controlstrip.js,jquery/jquery.lj.repostbutton.js,s2.js,esn.js,jquery/jquery.lj.confirmbubble.js,jquery/jquery.lj.ljcut.js,fb-select-image.js,jquery/jquery.lj.inlineCalendar.js,jquery/jquery.calendarEvents.js,apps.js,apps/appcontainer.js,jquery/jquery.lj.journalPromoStrip.js,ljlive/main.js?v=1401365646 | 200 OK Content-Length: 302632 Content-Type: application/x-javascript | clean |
http://l-stat.livejournal.net/js/??ads/adfox.reload_code.embeds.js,ads/adfox.asyn.code.ver3.js,ads/adfox.asyn.code.scroll.js?v=1401365646 | 200 OK Content-Length: 11792 Content-Type: application/x-javascript | clean |
http://counter.rambler.ru/top100.jcn?1111412 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://finegardentools.livejournal.com/profile | 200 OK Content-Length: 63558 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=00010000042240d0&vid=275636871&r=561275938&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=00010000042240d0&vid=275636871&r=561275938&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://l-stat.livejournal.net/js/??scheme/schemius.js,cda/aacv3.js,profile/main.js,profile_new.js,ljlive/main.js?v=1401365646 | 200 OK Content-Length: 260384 Content-Type: application/x-javascript | clean |
http://www.google.com/recaptcha/api/challenge?k=6LegWAEAAAAAANJcmtbLTuHlG7AbDzLPxvimCw_Z | 200 OK Content-Length: 9419 Content-Type: text/javascript | clean |
http://finegardentools.livejournal.com/friends | 200 OK Content-Length: 57518 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=00010000042240d0&vid=5089336&r=848008418&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=00010000042240d0&vid=5089336&r=848008418&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://l-stat.livejournal.net/js/??cda/aacv3.js,jquery/jquery.lj.calendar.js,jquery/jquery.mask.js,controlstrip.js,jquery/jquery.lj.repostbutton.js,s2.js,esn.js,jquery/jquery.lj.confirmbubble.js,jquery/jquery.lj.ljcut.js,fb-select-image.js,jquery/jquery.lj.inlineCalendar.js,jquery/jquery.calendarEvents.js,apps.js,apps/appcontainer.js,ljlive/main.js?v=1401365646 | 200 OK Content-Length: 300070 Content-Type: application/x-javascript | clean |
http://finegardentools.livejournal.com/calendar | 200 OK Content-Length: 39793 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=00010000042240d0&vid=15982522&r=83770570&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=00010000042240d0&vid=15982522&r=83770570&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://finegardentools.livejournal.com/data/rss | 200 OK Content-Length: 4917 Content-Type: text/xml | clean |
http://finegardentools.livejournal.com/test404page.js | 404 Not Found Content-Length: 6759 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=00010000042240d0&vid=957559881&r=151662485&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=00010000042240d0&vid=957559881&r=151662485&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: finegardentools.livejournal.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, proxy-revalidate
Connection: close
Date: Sat, 31 May 2014 04:38:28 GMT
Age: 2825
ETag: GgZzEMRz83EAy3NDTeT3jOSwOA
Server: nginx
Vary: Accept-Encoding,ETag
Content-MD5: EMRz83EAy3NDTeT3jOSwOA
Content-Type: text/html; charset=utf-8
Set-Cookie: ljident=2902726060.20480.0000;domain=.livejournal.com; path=/
X-AWS-Id: ws32
X-Beta: http://varnish
X-Gateway: bil1-swlb05.prod.livejournal.org
X-Varnish: 1623942377 1623473727
X-VWS-Id: bil1-varn21
GET / HTTP/1.1
Host: finegardentools.livejournal.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, proxy-revalidate
Connection: close
Date: Sat, 31 May 2014 04:38:28 GMT
Age: 2825
ETag: GgZzEMRz83EAy3NDTeT3jOSwOA
Server: nginx
Vary: Accept-Encoding,ETag
Content-MD5: EMRz83EAy3NDTeT3jOSwOA
Content-Type: text/html; charset=utf-8
Set-Cookie: ljident=2902726060.20480.0000;domain=.livejournal.com; path=/
X-AWS-Id: ws32
X-Beta: http://varnish
X-Gateway: bil1-swlb05.prod.livejournal.org
X-Varnish: 1623942377 1623473727
X-VWS-Id: bil1-varn21
Second query (visit from search engine):
GET / HTTP/1.1
Host: finegardentools.livejournal.com
Referer: http://www.google.com/search?q=finegardentools.livejournal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: finegardentools.livejournal.com
Referer: http://www.google.com/search?q=finegardentools.livejournal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=finegardentools.livejournal.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://finegardentools.livejournal.com/
Result: finegardentools.livejournal.com is not infected or malware details are not published yet.
Result: finegardentools.livejournal.com is not infected or malware details are not published yet.