Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=girl911.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://girl911.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: girl911.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 11 Sep 2014 13:11:20 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=fd30eac10aa1a461b09de0f94db62001; expires=Fri, 12-Sep-2014 22:47:20 GMT; path=/
X-Cache: HIT from Backend
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: girl911.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 11 Sep 2014 13:11:20 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=fd30eac10aa1a461b09de0f94db62001; expires=Fri, 12-Sep-2014 22:47:20 GMT; path=/
X-Cache: HIT from Backend
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: girl911.ru
Referer: http://www.google.com/search?q=girl911.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: girl911.ru
Referer: http://www.google.com/search?q=girl911.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://girl911.ru/ | 200 OK Content-Length: 67836 Content-Type: text/html | clean |
http://girl911.ru/js/jquery/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: application/x-javascript | clean |
http://girl911.ru/js/fancy/jquery.fancybox-1.3.1.pack.js | 200 OK Content-Length: 14731 Content-Type: application/x-javascript | clean |
http://girl911.ru/js/fplayer/p.js | 200 OK Content-Length: 15729 Content-Type: application/x-javascript | clean |
http://partner.googleadservices.com/gampad/google_service.js | 200 OK Content-Length: 3868 Content-Type: text/javascript | clean |
http://stg.odnoklassniki.ru/share/odkl_share.js | 200 OK Content-Length: 12312 Content-Type: application/x-javascript | clean |
http://clicks.runews.radeant.com/informer/java_inf.php?inf=5565 | 200 OK Content-Length: 5598 Content-Type: text/html | clean |
http://clicks.runews.radeant.com/informer/loadData.php?id=5565&iid=5565&ref="+escape(document.referrer)+"&cat=34&num=5&sid=6968&eid=radeant5565&dom="+document.domain+" | 200 OK Content-Length: 1189 Content-Type: text/html | clean |
http://clicks.runews.radeant.com/test404page.js | 404 Not Found Content-Length: 302 Content-Type: text/html | clean |
http://clicks.runews.radeant.com/informer/java_inf.php?inf=1117 | 200 OK Content-Length: 5497 Content-Type: text/html | clean |
http://clicks.runews.radeant.com/informer/loadData.php?id=1117&iid=1117&ref="+escape(document.referrer)+"&cat=34%2C83&num=5&sid=6968&eid=radeant1117&dom="+document.domain+" | 200 OK Content-Length: 1189 Content-Type: text/html | clean |
http://girl911.ru/t/10c39d.js | 200 OK Content-Length: 261 Content-Type: application/x-javascript | clean |
http://www.google-analytics.com/ga.js | 200 OK Content-Length: 40827 Content-Type: text/javascript | clean |
http://www.znews.su/user/1284/girl911.ru_inf_2.php | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://www.znews.su/user/1284/girl911.ru_inf_1.php | 200 OK Content-Length: 0 Content-Type: text/html | clean |