Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://grand-r.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: grand-r.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 18 May 2015 10:04:42 GMT Location: http://web-redirect.ru/?web Server: nginx Content-Length: 0 Content-Type: text/html Set-Cookie: _cutt_caches_images=1431943482; expires=Tue, 19-May-2015 10:04:42 GMT; path=/ X-Powered-By: PHP/5.3.28 | malicious |
URL: http://web-redirect.ru/?web (imitation of visitor from search engine) GET /?web HTTP/1.1 Host: web-redirect.ru Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Mon, 18 May 2015 10:04:43 GMT Pragma: no-cache Location: http://cmsjoom.ru/components/com_weblinks/2/separator.php Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Mon, 18 May 2015 10:04:43 GMT X-Powered-By: PHP/5.3.3 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://grand-r.ru/ | 200 OK Content-Length: 30078 Content-Type: text/html | suspicious |
Suspicious code found <!-- Yandex.Metrika counter --><script type="text/javascript">(function (d, w, c) { (w[c] = w[c] || []).push(function() { try { w.yaCounter18304903 = new Ya.Metrika({id:18304903, clickmap:true, trackLinks:true, accurateTrackBounce:true, webvisor:true}); } catch(e) {} }); var n = d.getElementsByTagName("script")[0], s = d.createElement("script"), f = function () { n.parentNode.insertBefore(s, n); }; s.type = "text/javascript"; s.async = true; s.src = (d.location.protocol == "https:" ? "https:" : "http:") + "//mc.yandex.ru/metrika/watch.js"; if (w.opera == "[object Opera]") { d.addEventListener("DOMContentLoaded", f); } else { f(); } })(document, window, "yandex_metrika_callbacks");</script><noscript><div><img src="//mc.yandex.ru/watch/18304903" style="position:absolute; left:-9999px;" alt="" /></div></noscript><!-- /Yandex.Metrika counter --> | ||
http://grand-r.ru/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://grand-r.ru/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://grand-r.ru/media/system/js/caption.js | 200 OK Content-Length: 733 Content-Type: application/javascript | clean |
http://grand-r.ru/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://grand-r.ru/media/system/js/modal.js | 200 OK Content-Length: 9756 Content-Type: application/javascript | clean |
http://grand-r.ru/components/com_djmediatools/assets/js/powertools-1.2.0.js | 200 OK Content-Length: 4842 Content-Type: application/javascript | clean |
http://grand-r.ru/components/com_djmediatools/layouts/slideshow/js/slideshow.js | 200 OK Content-Length: 6779 Content-Type: application/javascript | clean |
http://grand-r.ru//ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js/ | 404 Not Found Content-Length: 3766 Content-Type: text/html | clean |
http://grand-r.ru/hosting_static_404/modernizr.js | 200 OK Content-Length: 6296 Content-Type: text/javascript | clean |
http://grand-r.ru/hosting_static_404/script.js | 200 OK Content-Length: 96238 Content-Type: text/javascript | clean |
http://grand-r.ru/test404page.js | 404 Not Found Content-Length: 3766 Content-Type: text/html | clean |
http://grand-r.ru/modules/mod_marqueeaholic/js/jquery-noconflict.js | 200 OK Content-Length: 21 Content-Type: application/javascript | clean |
http://grand-r.ru/modules/mod_marqueeaholic/js/jquery.marquee.min.js | 200 OK Content-Length: 2495 Content-Type: application/javascript | clean |
http://grand-r.ru/modules/mod_marqueeaholic/js/jquery.pause.js | 200 OK Content-Length: 2504 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=grand-r.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://grand-r.ru/
Result: grand-r.ru is not infected or malware details are not published yet.
Result: grand-r.ru is not infected or malware details are not published yet.