Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hopmalady.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hopmalady.ru/ | 200 OK Content-Length: 49867 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: xaxa.in <script language='javascript' charset='UTF-8' type='text/javascript' src='http://ddlloads.com/analytics.js'></script><script language='javascript' charset='UTF-8' type='text/javascript' src='http://ddlloads.com/analytics.js'></script><script language='javascript' charset='UTF-8' type='text/javascript' src='http://ddlloads.com/analytics.js'></script><script language='javascript' charset='UTF-8' type='text/javas ...[4014 bytes skipped]... | ||
http://ddlloads.com/analytics.js | 200 OK Content-Length: 7932 Content-Type: text/javascript | clean |
http://hopmalady.ru/engine/classes/js/jquery.js | 200 OK Content-Length: 77745 Content-Type: application/javascript | clean |
http://hopmalady.ru/engine/classes/js/jqueryui.js | 200 OK Content-Length: 65477 Content-Type: application/javascript | clean |
http://hopmalady.ru/engine/classes/js/dle_js.js | 200 OK Content-Length: 20786 Content-Type: application/javascript | clean |
http://hopmalady.ru/engine/classes/js/jquery-sander.js | 200 OK Content-Length: 1901 Content-Type: application/javascript | clean |
http://hopmalady.ru/templates/Vrator/js/libs.js | 200 OK Content-Length: 2495 Content-Type: application/javascript | clean |
http://hopmalady.ru/templates/Vrator/js/scrollTo.js | 200 OK Content-Length: 4773 Content-Type: application/javascript | clean |
http://xaxa.in/analytics.js | 200 OK Content-Length: 7932 Content-Type: text/javascript | clean |
http://hopmalady.ru/templates/Vrator/js/jquery.js | 200 OK Content-Length: 49868 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: xaxa.in <script language='javascript' charset='UTF-8' type='text/javascript' src='http://ddlloads.com/analytics.js'></script><script language='javascript' charset='UTF-8' type='text/javascript' src='http://ddlloads.com/analytics.js'></script><script language='javascript' charset='UTF-8' type='text/javascript' src='http://ddlloads.com/analytics.js'></script><script language='javascript' charset='UTF-8' type='text/javas ...[4014 bytes skipped]... | ||
http://code.directadvert.ru/show.cgi?adp=129066&div=DIV_DA_129066 | 200 OK Content-Length: 0 | clean |
http://code.directadvert.ru/test404page.js | 403 Forbidden Content-Length: 570 Content-Type: text/html | clean |
http://code.directadvert.ru/show.cgi?adp=129071&div=DIV_DA_129071 | 200 OK Content-Length: 0 | clean |
http://code.directadvert.ru/show.cgi?adp=129072&div=DIV_DA_129072 | 200 OK Content-Length: 0 | clean |
http://code.directadvert.ru/show.cgi?adp=129070&div=DIV_DA_129070 | 200 OK Content-Length: 0 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hopmalady.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 05 Sep 2014 11:56:20 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=cp1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=c8023b2dedf4d9eb3569b014764ec8be; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 05-Sep-2013 11:56:19 GMT; path=/; domain=.hopmalady.ru; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 05-Sep-2013 11:56:19 GMT; path=/; domain=.hopmalady.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 05-Sep-2013 11:56:19 GMT; path=/; domain=.hopmalady.ru; httponly
GET / HTTP/1.1
Host: hopmalady.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 05 Sep 2014 11:56:20 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=cp1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=c8023b2dedf4d9eb3569b014764ec8be; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 05-Sep-2013 11:56:19 GMT; path=/; domain=.hopmalady.ru; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 05-Sep-2013 11:56:19 GMT; path=/; domain=.hopmalady.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 05-Sep-2013 11:56:19 GMT; path=/; domain=.hopmalady.ru; httponly
Second query (visit from search engine):
GET / HTTP/1.1
Host: hopmalady.ru
Referer: http://www.google.com/search?q=hopmalady.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hopmalady.ru
Referer: http://www.google.com/search?q=hopmalady.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.