Scanned pages/files
Request | Server response | Status |
http://gadanie-besplatno.ru/ | 200 OK Content-Length: 94473 Content-Type: text/html | suspicious |
Suspicious code found <div style="text-align:right;"> <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t57.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='88' height='31'><\/a>") //--></script><!--/LiveInternet--> </div> | ||
http://gadanie-besplatno.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/x-javascript | clean |
http://gadanie-besplatno.ru/modules/mod_news_show_gk3/scripts/engine_1_11_compressed.js | 200 OK Content-Length: 1559 Content-Type: application/x-javascript | clean |
http://gadanie-besplatno.ru/modules/mod_ja_contentslide/assets/js/ja_contentslide.js | 200 OK Content-Length: 6962 Content-Type: application/x-javascript | clean |
http://gadanie-besplatno.ru/templates/ja_urani/js/ja.script.js | 200 OK Content-Length: 7131 Content-Type: application/x-javascript | clean |
http://gadanie-besplatno.ru/templates/ja_urani/js/ja.ddmod.js | 200 OK Content-Length: 16202 Content-Type: application/x-javascript | clean |
http://gadanie-besplatno.ru/templates/ja_urani/js/menu/split.js | 200 OK Content-Length: 1263 Content-Type: application/x-javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21967 Content-Type: text/javascript | clean |
http://gadanie-besplatno.ru/share42/share42.js | 200 OK Content-Length: 3007 Content-Type: application/x-javascript | clean |
http://gadanie-besplatno.ru/index.php | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 18 Apr 2014 19:21:56 GMT Location: http://gadanie-besplatno.ru/ Server: Apache/2.2.3 (CentOS) Content-Length: 0 Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: ef34972f7a735bdb05f4a22e1ec3381d=o6qciqa449i1uluev7vli3gm52; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://gadanie-besplatno.ru/test404page.js | 404 Not Found Content-Length: 297 Content-Type: text/html | clean |
http://gadanie-besplatno.ru/gadaniya/gadaniya/ | 200 OK Content-Length: 118692 Content-Type: text/html | suspicious |
Suspicious code found <div style="text-align:right;"> <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t57.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='88' height='31'><\/a>") //--></script><!--/LiveInternet--> </div> | ||
http://gadanie-besplatno.ru/gadaniya/zagovory/ | 200 OK Content-Length: 135526 Content-Type: text/html | suspicious |
Suspicious code found <div style="text-align:right;"> <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t57.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='88' height='31'><\/a>") //--></script><!--/LiveInternet--> </div> | ||
http://gadanie-besplatno.ru/amulety/numerologiya/ | 200 OK Content-Length: 152381 Content-Type: text/html | suspicious |
Suspicious code found <div style="text-align:right;"> <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t57.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='88' height='31'><\/a>") //--></script><!--/LiveInternet--> </div> | ||
http://gadanie-besplatno.ru/gadaniya/tscelitel-stvo/ | 200 OK Content-Length: 147555 Content-Type: text/html | suspicious |
Suspicious code found <div style="text-align:right;"> <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t57.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='88' height='31'><\/a>") //--></script><!--/LiveInternet--> </div> | ||
http://gadanie-besplatno.ru/gadaniya/xiromantiya/ | 200 OK Content-Length: 124725 Content-Type: text/html | suspicious |
Suspicious code found <div style="text-align:right;"> <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t57.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='88' height='31'><\/a>") //--></script><!--/LiveInternet--> </div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gadanie-besplatno.ru
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 18 Apr 2014 19:21:55 GMT
Pragma: no-cache
Server: Apache/2.2.3 (CentOS)
Vary: User-Agent,Accept
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Fri, 18 Apr 2014 19:21:55 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: ef34972f7a735bdb05f4a22e1ec3381d=6ej46fgtj5jnhqv97uokuik6n1; path=/
Set-Cookie: ja_urani_tpl=ja_urani; expires=Wed, 08-Apr-2015 19:21:54 GMT; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: gadanie-besplatno.ru
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 18 Apr 2014 19:21:55 GMT
Pragma: no-cache
Server: Apache/2.2.3 (CentOS)
Vary: User-Agent,Accept
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Fri, 18 Apr 2014 19:21:55 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: ef34972f7a735bdb05f4a22e1ec3381d=6ej46fgtj5jnhqv97uokuik6n1; path=/
Set-Cookie: ja_urani_tpl=ja_urani; expires=Wed, 08-Apr-2015 19:21:54 GMT; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: gadanie-besplatno.ru
Referer: http://www.google.com/search?q=gadanie-besplatno.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gadanie-besplatno.ru
Referer: http://www.google.com/search?q=gadanie-besplatno.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gadanie-besplatno.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gadanie-besplatno.ru/
Result: gadanie-besplatno.ru is not infected or malware details are not published yet.
Result: gadanie-besplatno.ru is not infected or malware details are not published yet.