Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hraniteli-rock.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hraniteli-rock.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 20:43:10 GMT
Server: nginx/0.7.65
Content-Type: text/html; charset=UTF-8
Set-Cookie: wordpress_3f48aedfc9020ee53a6359823ea9bf7d=%7C1426020189%7C897981bb063d6c822053ec0bd4c4e4d3; expires=Tue, 10-Mar-2015 20:43:09 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_3f48aedfc9020ee53a6359823ea9bf7d=%7C1426020189%7C897981bb063d6c822053ec0bd4c4e4d3; expires=Tue, 10-Mar-2015 20:43:09 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_3f48aedfc9020ee53a6359823ea9bf7d=%7C1426020189%7C5dd80ae6dc4dc39bd959f90525fc57a9; expires=Tue, 10-Mar-2015 20:43:09 GMT; path=/; httponly
X-Pingback: http://hraniteli-rock.ru/xmlrpc.php
X-Powered-By: PHP/5.2.12
GET / HTTP/1.1
Host: hraniteli-rock.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 20:43:10 GMT
Server: nginx/0.7.65
Content-Type: text/html; charset=UTF-8
Set-Cookie: wordpress_3f48aedfc9020ee53a6359823ea9bf7d=%7C1426020189%7C897981bb063d6c822053ec0bd4c4e4d3; expires=Tue, 10-Mar-2015 20:43:09 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_3f48aedfc9020ee53a6359823ea9bf7d=%7C1426020189%7C897981bb063d6c822053ec0bd4c4e4d3; expires=Tue, 10-Mar-2015 20:43:09 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_3f48aedfc9020ee53a6359823ea9bf7d=%7C1426020189%7C5dd80ae6dc4dc39bd959f90525fc57a9; expires=Tue, 10-Mar-2015 20:43:09 GMT; path=/; httponly
X-Pingback: http://hraniteli-rock.ru/xmlrpc.php
X-Powered-By: PHP/5.2.12
Second query (visit from search engine):
GET / HTTP/1.1
Host: hraniteli-rock.ru
Referer: http://www.google.com/search?q=hraniteli-rock.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hraniteli-rock.ru
Referer: http://www.google.com/search?q=hraniteli-rock.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://hraniteli-rock.ru/ | 200 OK Content-Length: 53630 Content-Type: text/html | clean |
http://hraniteli-rock.ru/wp-includes/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 93889 Content-Type: application/x-javascript | clean |
http://hraniteli-rock.ru/wp-content/plugins/wp-facebox-gallery/facebox2.js?ver=2.0 | 404 Not Found Content-Length: 7515 Content-Type: text/html | clean |
http://hraniteli-rock.ru/wp-content/plugins/sexybookmarks/js/sexy-bookmarks-public.js?ver=3.3.6 | 404 Not Found Content-Length: 7528 Content-Type: text/html | clean |
http://hraniteli-rock.ru/wp-content/plugins/sexybookmarks/js/shareaholic-perf.js?ver=3.3.6 | 404 Not Found Content-Length: 7523 Content-Type: text/html | clean |
http://sovetoff.freeiz.com/wp-content/themes/Libera/kqjbrdnv.php?id=3188134 | HTTP/1.1 302 Found Connection: close Date: Tue, 24 Feb 2015 20:43:14 GMT Location: http://error404.000webhost.com/cpu-limit-reached.html Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 | clean |
http://error404.000webhost.com/cpu-limit-reached.html | 200 OK Content-Length: 15644 Content-Type: text/html | clean |
http://error404.000webhost.com//ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js/ | HTTP/1.1 302 Found Connection: close Date: Tue, 24 Feb 2015 20:43:09 GMT Location: http://error404.000webhost.com/? Server: Apache Content-Length: 216 Content-Type: text/html; charset=iso-8859-1 | clean |
http://error404.000webhost.com/? | 200 OK Content-Length: 17711 Content-Type: text/html | clean |
http://creative.xtendmedia.com/matomy/cf/ply/ply.js?pubid=50792397&mid=c51681034&wid=c51531274&popup=1&popunder=1&size=320x480&pop_times=2&pop_frequency=3600&mm_delay=0&mm_back_delay=300&numOfTimes=3&duration=1&period=24hour&close=1&openNewTab=true | 200 OK Content-Length: 2880 Content-Type: text/javascript | clean |
http://ctpsrv.com/mredir?s=154926&u=[referer_url]&cb=[cache_buster] | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, must-revalidate, private, max-age=0 Connection: close Date: Tue, 24 Feb 2015 20:43:16 GMT Pragma: no-cache Location: http://rd.ctpsrv.com/mnpl?rd=1&s=280000366&u=[referer_url]&cb=1424810596.195 Server: nginx Vary: * Content-Length: 154 Content-Type: text/html Expires: 0 | clean |
http://rd.ctpsrv.com/mnpl?rd=1&s=280000366&u=[referer_url]&cb=1424810596.195 | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, must-revalidate, private, max-age=0 Connection: close Date: Tue, 24 Feb 2015 20:43:16 GMT Pragma: no-cache Location: http://rdsrv.com/newbidder/click.php?subid=23549czvLXF6b18Ahud7AQrgAzMjUwMzg1ODA4ICAgICAgICAgICAgICAgICAgICDTTUI%5F9ovbAAEAAAAAAHzInX8AIwABAAAAAAABAAAACQABAAAAAAAAAAAAAAAAAGTi7FQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAADZwM%5FiZW42NQEA&redir=aHR0cDovL3d3dy5hZGNhc2guY29tL2FkL2Rpc3BsYXkucGhwP3I9MzUwMzQ4JnN1YjE9MTQzODgyMTQmbm9jb29raWU9MQ~~&subid2=bf90W3JlZmVyZXJfdXJsXQ%7E%7E&cost=0 Server: nginx Vary: * Content-Length: 154 Content-Type: text/html Expires: 0 | clean |
http://rdsrv.com/newbidder/click.php?subid=23549czvlxf6b18ahud7aqrgazmjuwmzg1oda4icagicagicagicagicagicagicdttui%5f9ovbaaeaaaaaahzinx8aiwabaaaaaaabaaaacqabaaaaaaaaaaaaaaaaagti7fqaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaadzwm%5fizw42nqea&redir=ahr0cdovl3d3dy5hzgnhc2guy29tl2fkl2rpc3bsyxkucghwp3i9mzuwmzq4jnn1yje9mtqzodgymtqmbm9jb29rawu9mq~~&subid2=bf90w3jlzmvyzxjfdxjsxq%7e%7e&cost=0 | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, must-revalidate, private, max-age=0 Connection: close Date: Tue, 24 Feb 2015 20:43:16 GMT Pragma: no-cache Location: http://jôqÚ/www.aÎ ásh.ËomgäjésvìË.rp§x½;°:¸yõÊ7½Ú³¡Ø2Ú¦nocookk½ Server: nginx Content-Length: 307 Content-Type: text/html; charset=UTF-8 Expires: 0 | clean |
http://jôqÚ/www.aÎ ásh.ËomgäjésvìË.rp§x½;°:¸yõÊ7½Ú³¡Ø2Ú¦nocookk½ | 500 Can't connect to xn--jq-nka2k:80 Content-Length: 188 Content-Type: text/plain | clean |
http://jôqÚ/test404page.js | 500 Can't connect to xn--jq-nka2k:80 Content-Length: 188 Content-Type: text/plain | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19846 Content-Type: text/javascript | clean |
http://sovetoff.freeiz.com//ajax.googleapis.com/ajax/libs/jqueryui/1.8.21/jquery-ui.min.js/ | HTTP/1.1 302 Found Connection: close Date: Tue, 24 Feb 2015 20:43:17 GMT Location: http://error404.000webhost.com/cpu-limit-reached.html Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.17 | clean |
http://accountus.gets-it.net/googlestat.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |