Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://ionwine.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: ionwine.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Thu, 26 Jun 2014 22:19:13 GMT Location: http://alfsystem.com.my/includes/domit/1.php Server: nginx/1.4.1 Content-Length: 0 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.2.17 | malicious |
URL: http://alfsystem.com.my/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: alfsystem.com.my Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Jun 2014 22:19:12 GMT Location: http://www.csra.de/includes/domit/1.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.23 | malicious |
URL: http://www.csra.de/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: www.csra.de Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Jun 2014 22:19:13 GMT Location: http://jbtconsultinggroup.com/components/com_user/views/login/tmpl/1/all3.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.29 | malicious |
URL: http://jbtconsultinggroup.com/components/com_user/views/login/tmpl/1/all3.php (imitation of visitor from search engine) GET /components/com_user/views/login/tmpl/1/all3.php HTTP/1.1 Host: jbtconsultinggroup.com Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Jun 2014 22:19:14 GMT Location: http://google.ru Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html | malicious |
Scanned pages/files
Request | Server response | Status |
http://ionwine.ru/ | 200 OK Content-Length: 222125 Content-Type: text/html | clean |
http://ionwine.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/x-javascript | clean |
http://ionwine.ru/plugins/content/phocagalleryslideshow.js | 200 OK Content-Length: 6735 Content-Type: application/x-javascript | clean |
http://ionwine.ru/plugins/system/jcemediabox/js/jcemediabox.js?version=114 | 200 OK Content-Length: 54889 Content-Type: application/x-javascript | clean |
http://ionwine.ru/media/system/js/modal.js | 200 OK Content-Length: 10588 Content-Type: application/x-javascript | clean |
http://ionwine.ru/modules/mod_lofarticlesscroller/assets/mod_lofarticlesscroller_jl15x.js | 200 OK Content-Length: 11178 Content-Type: application/x-javascript | clean |
http://ionwine.ru/modules/mod_jxtc_newspro/js/showcaseFX.js | 200 OK Content-Length: 16969 Content-Type: application/x-javascript | clean |
http://ionwine.ru/media/com_acymailing/js/acymailing_module.js?v=441 | 200 OK Content-Length: 10426 Content-Type: application/x-javascript | clean |
http://ionwine.ru/plugins/system/pc_includes/ajax_1.3.js | 200 OK Content-Length: 9039 Content-Type: application/x-javascript | clean |
http://ionwine.ru/modules/mod_vm_ajax_search/js/vmajaxsearch.js | 200 OK Content-Length: 3560 Content-Type: application/x-javascript | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.4.3/jquery.min.js | 200 OK Content-Length: 77746 Content-Type: text/javascript | clean |
http://ionwine.ru/templates/jxtc_espresso/js/jquery.scrollTo-min.js | 200 OK Content-Length: 2252 Content-Type: application/x-javascript | clean |
http://ionwine.ru/templates/jxtc_espresso/js/jquery.arcticmodal-0.3.min.js | 200 OK Content-Length: 6097 Content-Type: application/x-javascript | clean |
http://yandex.st/jquery/cookie/1.0/jquery.cookie.min.js | 200 OK Content-Length: 732 Content-Type: application/x-javascript | clean |
http://ionwine.ru/templates/jxtc_espresso/js/hoverIntent.js | 200 OK Content-Length: 1606 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ionwine.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ionwine.ru/
Result: ionwine.ru is not infected or malware details are not published yet.
Result: ionwine.ru is not infected or malware details are not published yet.