Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=good-wizard.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://good-wizard.ru/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: good-wizard.ru
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: max-age=86400
Cache-Control: public
Connection: close
Date: Fri, 18 Jul 2014 08:34:33 GMT
Location: /en/
Server: nginx/1.6.0
Content-Type: text/html
Expires: Sat, 19 Jul 2014 08:34:33 GMT
X-Powered-By: PHP/5.4.4-14+deb7u9
GET / HTTP/1.1
Host: good-wizard.ru
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: max-age=86400
Cache-Control: public
Connection: close
Date: Fri, 18 Jul 2014 08:34:33 GMT
Location: /en/
Server: nginx/1.6.0
Content-Type: text/html
Expires: Sat, 19 Jul 2014 08:34:33 GMT
X-Powered-By: PHP/5.4.4-14+deb7u9
Second query (visit from search engine):
GET / HTTP/1.1
Host: good-wizard.ru
Referer: http://www.google.com/search?q=good-wizard.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: good-wizard.ru
Referer: http://www.google.com/search?q=good-wizard.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://good-wizard.ru/ | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:33 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:33 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/en/ | 200 OK Content-Length: 38244 Content-Type: text/html | clean |
http://good-wizard.ru//ajax.googleapis.com/ajax/libs/jquery/1.9.1/jquery.min.js/ | 200 OK Content-Length: 143 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.10.3/jquery-ui.min.js | 200 OK Content-Length: 228077 Content-Type: text/javascript | clean |
http://cdnjs.cloudflare.com/ajax/libs/d3/2.10.0/d3.v2.min.js | 200 OK Content-Length: 115816 Content-Type: application/javascript | clean |
http://good-wizard.ru/assets/js/waypoints.min.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:35 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:35 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/test404page.js | 200 OK Content-Length: 143 Content-Type: application/javascript | clean |
http://good-wizard.ru//www.hellobar.com/hellobar.js/ | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:35 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:35 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/assets/js/da-form.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:35 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:35 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/assets/js/da_tabs.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:35 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:35 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/assets/js/fo_share.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:36 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:36 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/assets/js/effects.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:36 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:36 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/assets/js/firstInteractive.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:36 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:36 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |
http://good-wizard.ru/assets/js/secondInteractive.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=86400 Cache-Control: public Connection: close Date: Fri, 18 Jul 2014 08:34:36 GMT Location: /en/ Server: nginx/1.6.0 Content-Type: text/html Expires: Sat, 19 Jul 2014 08:34:36 GMT X-Powered-By: PHP/5.4.4-14+deb7u9 | clean |