Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hstat.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hstat.ru/ | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Thu, 22 Jan 2015 13:21:39 GMT Pragma: no-cache Location: http://mail.ru/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Thu, 22 Jan 2015 13:21:39 GMT | clean |
http://mail.ru/ | HTTP/1.1 302 OK Cache-Control: no-cache,no-store,must-revalidate Connection: close Date: Thu, 22 Jan 2015 13:21:32 GMT Pragma: no-cache Location: https://mail.ru Server: nginx/1.6.2 Content-Length: 37 Content-Type: text/html Expires: Wed, 22 Jan 2014 13:21:32 GMT Last-Modified: Thu, 22 Jan 2015 16:21:32 GMT Set-Cookie: mrcu=61AA54C0F95C4483ED5CE20B9E4E; expires=Sun, 19 Jan 2025 13:21:32 GMT; path=/; domain=.mail.ru X-Frame-Options: SAMEORIGIN | clean |
https://mail.ru/ | 200 OK Content-Length: 212133 Content-Type: text/html | suspicious |
Suspicious code found <style>.x-ph{position:relative;z-index:1003;margin:0;padding:0;font:12px/16px Helvetica,Arial,sans-serif;white-space:nowrap;text-align:left;background:#fff;height:28px;*zoom:1}.w-x-ph{width:100%;margin:0;padding:0;border:0;border-spacing:0;border-collapse:collapse;font:12px/16px Helve document.createElement("script"),X=document.getElementsByTagName("head")[0];v.defer="defer";v.async="async";v.type="text/javascript";v.src=c.settings.newDesign?c.settings.externalNewJS:c.settings.externalJS;!("opera"in window)||"complete"===document.readyState?X.appendChild(v):window.addEventListener("DOMContentLoaded",function(){X.appendChild(v)},!1)}u.timeEnd("headline.inline.js")}})(); </script> | ||
https://mail.ru//limg.imgsmail.ru/splash/v/j/s_n.js.3e25db63f447d7fea45b80a617099047dff0393b.js/ | HTTP/1.1 302 OK Cache-Control: no-cache,no-store,must-revalidate Connection: close Date: Thu, 22 Jan 2015 13:21:35 GMT Pragma: no-cache Location: http://mail.ru Server: nginx/1.6.2 Content-Length: 37 Content-Type: text/html Expires: Wed, 22 Jan 2014 13:21:35 GMT Last-Modified: Thu, 22 Jan 2015 16:21:35 GMT Set-Cookie: mrcu=300754C0F95F2B5EE73CE20B9E4E; expires=Sun, 19 Jan 2025 13:21:35 GMT; path=/; domain=.mail.ru Strict-Transport-Security: max-age=16070400 | clean |
http://mail.ru/test404page.js | HTTP/1.1 302 OK Cache-Control: no-cache,no-store,must-revalidate Connection: close Date: Thu, 22 Jan 2015 13:21:35 GMT Pragma: no-cache Location: http://mail.ru Server: nginx/1.6.2 Content-Length: 37 Content-Type: text/html Expires: Wed, 22 Jan 2014 13:21:35 GMT Last-Modified: Thu, 22 Jan 2015 16:21:35 GMT Set-Cookie: mrcu=1BC654C0F95F1096E94BE20B9E4E; expires=Sun, 19 Jan 2025 13:21:35 GMT; path=/; domain=.mail.ru | clean |
http://hstat.ru/cache | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Thu, 22 Jan 2015 13:21:42 GMT Pragma: no-cache Location: http://mail.ru/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Thu, 22 Jan 2015 13:21:42 GMT | clean |
http://hstat.ru//limg.imgsmail.ru/splash/v/j/a_n.js.eddd6508c67b3e0fe3130b844788a3c43734fada.js/ | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Thu, 22 Jan 2015 13:21:43 GMT Pragma: no-cache Location: http://mail.ru/ Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Thu, 22 Jan 2015 13:21:43 GMT | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hstat.ru
Result:
HTTP/1.1 302 Found
Cache-Control: max-age=0
Connection: close
Date: Thu, 22 Jan 2015 13:21:39 GMT
Pragma: no-cache
Location: http://mail.ru/
Server: nginx/1.2.1
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=utf-8
Expires: Thu, 21 Jul 1977 07:30:00 GMT
Last-Modified: Thu, 22 Jan 2015 13:21:39 GMT
...0 bytes of data.
GET / HTTP/1.1
Host: hstat.ru
Result:
HTTP/1.1 302 Found
Cache-Control: max-age=0
Connection: close
Date: Thu, 22 Jan 2015 13:21:39 GMT
Pragma: no-cache
Location: http://mail.ru/
Server: nginx/1.2.1
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=utf-8
Expires: Thu, 21 Jul 1977 07:30:00 GMT
Last-Modified: Thu, 22 Jan 2015 13:21:39 GMT
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hstat.ru
Referer: http://www.google.com/search?q=hstat.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hstat.ru
Referer: http://www.google.com/search?q=hstat.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.