Scanned pages/files
Request | Server response | Status |
http://hernia.ru/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 05 Jun 2014 01:51:45 GMT Location: http://www.hernia.ru/ Server: nginx/Zenon Content-Length: 0 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.4.27 | clean |
http://www.hernia.ru/ | 200 OK Content-Length: 21718 Content-Type: text/html | suspicious |
Suspicious code found <div class="footer_in"> <div class="footer"> <a href="/site-partners/" class="redb" >СайÑÑ-паÑÑнеÑÑ</a> <div class="text"><p>© Johnson & Johnson LLC (ÐÐÐ «ÐжонÑон & ÐжонÑон») 2013<br /> ÐаннÑй ÑÐ°Ð¹Ñ Ð¾Ð¿Ñбликован компанией ÐÐÐ «ÐжонÑон & ÐжонÑон», коÑоÑÐ°Ñ Ð½ÐµÑ ÐожалÑйÑÑа, ознакомÑÑеÑÑ Ñ Ð½Ð°Ñими <a href="/additional-information/privacy/" target="_self">пÑавилами конÑиденÑиалÑноÑÑи</a> и <a href="/additional-information/legal-information/" target="_self">ÑÑловиÑми иÑполÑзованиÑ</a>.<br /> </p></div> </div> </div> | ||
http://www.hernia.ru/themes/hernia/js/jq.js | 200 OK Content-Length: 93107 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/jq-ui.js | 200 OK Content-Length: 300288 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/slides.js | 200 OK Content-Length: 32765 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/jq.placeholder.js | 200 OK Content-Length: 4218 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/jq.formalize.js | 200 OK Content-Length: 5367 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/jplayer/js/jquery.jplayer.min.js | 200 OK Content-Length: 48815 Content-Type: application/x-javascript | clean |
http://api-maps.yandex.ru/2.0-stable/?load=package.full&lang=ru-RU | 200 OK Content-Length: 69555 Content-Type: text/javascript | clean |
http://hernia.ru/themes/hernia/js/main.js | 200 OK Content-Length: 10557 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/script.js | 200 OK Content-Length: 547 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/calendar.js | 200 OK Content-Length: 6734 Content-Type: application/x-javascript | clean |
http://hernia.ru/themes/hernia/js/integration.js | 200 OK Content-Length: 7122 Content-Type: application/x-javascript | clean |
http://hernia.ru/doctors/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 05 Jun 2014 01:51:49 GMT Location: http://www.hernia.ru/doctors/ Server: nginx/Zenon Content-Length: 0 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.4.27 | clean |
http://www.hernia.ru/doctors/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 05 Jun 2014 01:51:49 GMT Pragma: no-cache Location: /netcat/modules/auth/?template=23 Server: nginx/Zenon Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: sid=0st5nv9fdtlcnpokirdojp4n06; path=/; domain=hernia.ru Set-Cookie: CookieID=2f1e7f3da572bf6f2f73ace1a9ab890f; expires=Fri, 05-Jun-2015 01:51:49 GMT; path=/ X-Powered-By: PHP/5.4.27 | clean |
http://www.hernia.ru/netcat/modules/auth/?template=23 | 200 OK Content-Length: 10183 Content-Type: text/html | suspicious |
Suspicious code found <div class="footer_in"> <div class="footer"> <a href="/site-partners/" class="redb" >СайÑÑ-паÑÑнеÑÑ</a> <div class="text"><p>© Johnson & Johnson LLC (ÐÐÐ «ÐжонÑон & ÐжонÑон») 2013<br /> ÐаннÑй ÑÐ°Ð¹Ñ Ð¾Ð¿Ñбликован компанией ÐÐÐ «ÐжонÑон & ÐжонÑон», коÑоÑÐ°Ñ Ð½ÐµÑ ÐожалÑйÑÑа, ознакомÑÑеÑÑ Ñ Ð½Ð°Ñими <a href="/additional-information/privacy/" target="_self">пÑавилами конÑиденÑиалÑноÑÑи</a> и <a href="/additional-information/legal-information/" target="_self">ÑÑловиÑми иÑполÑзованиÑ</a>.<br /> </p></div> </div> </div> | ||
http://www.hernia.ru/themes/hernia/js/jq-ui.js | 200 OK Content-Length: 300166 Content-Type: application/x-javascript | clean |
http://hernia.ru/about-hernias/what-is-hernia/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 05 Jun 2014 01:51:51 GMT Location: http://www.hernia.ru/about-hernias/what-is-hernia/ Server: nginx/Zenon Content-Length: 0 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.4.27 | clean |
http://www.hernia.ru/about-hernias/what-is-hernia/ | 200 OK Content-Length: 12255 Content-Type: text/html | suspicious |
Suspicious code found <div class="footer_in"> <div class="footer"> <a href="/site-partners/" class="redb" >СайÑÑ-паÑÑнеÑÑ</a> <div class="text"><p>© Johnson & Johnson LLC (ÐÐÐ «ÐжонÑон & ÐжонÑон») 2013<br /> ÐаннÑй ÑÐ°Ð¹Ñ Ð¾Ð¿Ñбликован компанией ÐÐÐ «ÐжонÑон & ÐжонÑон», коÑоÑÐ°Ñ Ð½ÐµÑ ÐожалÑйÑÑа, ознакомÑÑеÑÑ Ñ Ð½Ð°Ñими <a href="/additional-information/privacy/" target="_self">пÑавилами конÑиденÑиалÑноÑÑи</a> и <a href="/additional-information/legal-information/" target="_self">ÑÑловиÑми иÑполÑзованиÑ</a>.<br /> </p></div> </div> </div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hernia.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 05 Jun 2014 01:51:45 GMT
Location: http://www.hernia.ru/
Server: nginx/Zenon
Content-Length: 0
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.4.27
...0 bytes of data.
GET / HTTP/1.1
Host: hernia.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 05 Jun 2014 01:51:45 GMT
Location: http://www.hernia.ru/
Server: nginx/Zenon
Content-Length: 0
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.4.27
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hernia.ru
Referer: http://www.google.com/search?q=hernia.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hernia.ru
Referer: http://www.google.com/search?q=hernia.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hernia.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hernia.ru/
Result: hernia.ru is not infected or malware details are not published yet.
Result: hernia.ru is not infected or malware details are not published yet.