Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=grzveri.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://grzveri.ru/ | 200 OK Content-Length: 30806 Content-Type: text/html | clean |
http://grzveri.ru/themes/family_winter_vacation/family_winter_vacation/script.js | 200 OK Content-Length: 9115 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var artEventHelper = { 'bind': function(obj, evt, fn) { if (obj.addEventListener) obj.addEventListener(evt, fn, false); else if (obj.attachEvent) obj.attachEvent('on' + evt, fn); else obj['on' + evt] = fn; } }; var userAgent = navigator.userAgent.toLowerCase(); var browser = { version: (userAgent.match(/.+(?:rv|it|ra|ie)[\/: ]([\d.]+)/) || [])[1], safari: /webkit/.test(userAgent) && !/chrome/.test(userAgent), chr Antivirus reports:
| ||
http://ucharm.ru/wp-includes/js/admin-bar.js?ver=3.4.1 | 200 OK Content-Length: 4626 Content-Type: application/javascript | clean |
http://grzveri.ru/sitemap_0.html | 200 OK Content-Length: 52774 Content-Type: text/html | clean |
http://grzveri.ru/104.html | 200 OK Content-Length: 19627 Content-Type: text/html | clean |
http://grzveri.ru/86.html | 200 OK Content-Length: 21816 Content-Type: text/html | clean |
http://grzveri.ru/69.html | 200 OK Content-Length: 20539 Content-Type: text/html | clean |
http://grzveri.ru/84.html | 200 OK Content-Length: 19452 Content-Type: text/html | clean |
http://grzveri.ru/17.html | 200 OK Content-Length: 21574 Content-Type: text/html | clean |
http://grzveri.ru/78.html | 200 OK Content-Length: 21118 Content-Type: text/html | clean |
http://grzveri.ru/32.html | 200 OK Content-Length: 21441 Content-Type: text/html | clean |
http://grzveri.ru/28.html | 200 OK Content-Length: 21548 Content-Type: text/html | clean |
http://grzveri.ru/61.html | 200 OK Content-Length: 19573 Content-Type: text/html | clean |
http://grzveri.ru/18.html | 200 OK Content-Length: 21097 Content-Type: text/html | clean |
http://grzveri.ru/100.html | 200 OK Content-Length: 19158 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: grzveri.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 04 Oct 2014 11:42:06 GMT
Pragma: no-cache
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d62c793fc6aedf7137189908245c3ae4; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: grzveri.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 04 Oct 2014 11:42:06 GMT
Pragma: no-cache
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d62c793fc6aedf7137189908245c3ae4; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: grzveri.ru
Referer: http://www.google.com/search?q=grzveri.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: grzveri.ru
Referer: http://www.google.com/search?q=grzveri.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.