Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.iatnlp.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.iatnlp.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Thu, 26 Jun 2014 01:32:07 GMT Location: http://goo.gl/gpWMY Server: Apache Content-Length: 203 Content-Type: text/html; charset=iso-8859-1 | malicious |
URL: http://goo.gl/gpWMY (imitation of visitor from search engine) GET /gpWMY HTTP/1.1 Host: goo.gl Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Thu, 26 Jun 2014 01:32:07 GMT Pragma: no-cache Location: http://mytds.s33.webhost1.ru/go.php?sid=1 Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 80:quic X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | malicious |
Scanned pages/files
Request | Server response | Status |
http://www.iatnlp.ru/ | 200 OK Content-Length: 31333 Content-Type: text/html | clean |
http://u.begun.ru/begun.js | 200 OK Content-Length: 3793 Content-Type: application/x-javascript | clean |
http://iatnlp.ru/templates/xplike.plesk.blue.2/javascript/leftframe.js | 200 OK Content-Length: 912 Content-Type: application/x-javascript | clean |
http://iatnlp.ru/templates/xplike.plesk.blue.2/javascript/stylechanger.js | 200 OK Content-Length: 1717 Content-Type: application/x-javascript | clean |
http://iatnlp.ru/templates/xplike.plesk.blue.2/javascript/jquery.validationEngine.js | 200 OK Content-Length: 8606 Content-Type: application/x-javascript | clean |
http://www.iatnlp.ru//mc.yandex.ru/resource/watch.js/ | 404 Not Found Content-Length: 1392 Content-Type: text/html | clean |
http://www.iatnlp.ru/test404page.js | 404 Not Found Content-Length: 1392 Content-Type: text/html | clean |
http://www.googleadservices.com/pagead/conversion.js | 200 OK Content-Length: 9216 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=iatnlp.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://iatnlp.ru/
Result: iatnlp.ru is not infected or malware details are not published yet.
Result: iatnlp.ru is not infected or malware details are not published yet.