Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=jenskisait.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://jenskisait.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://jenskisait.ru/ | 200 OK Content-Length: 89143 Content-Type: text/html | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=a2700584210a968cf4e4c7d9ccc8073a.js | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=72420d0b145f48b874be5fd560743536.js | 200 OK Content-Length: 74276 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var MooTools={version:'1.11'};function $defined(obj){return(obj!=undefined);};function $type(obj){if(!$defined(obj))return false;if(obj.htmlElement)return'element';var type=typeof obj;if(type=='object'&&obj.nodeName){switch(obj.nodeType){case 1:return'element';case 3:return(/\S/).test(obj.nodeValue)?'textnode':'whitespace';}} if(type=='object'||type=='function'){switch(obj.constructor){case Array:return'array';case RegExp:return'regexp';case Class:return'class';} if(typeof obj.le Antivirus reports:
| ||
http://jenskisait.ru/plugins/system/ice_speed/?f=4e86fd24c78595bcfe88b63dc6f83c89.js | 200 OK Content-Length: 913 Content-Type: text/javascript | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=c9db9b742dd1312c6535974da889339d.js | 200 OK Content-Length: 516 Content-Type: text/javascript | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=bd0e480e51dd0b3dfeb07ecc8f2d4e56.js | 200 OK Content-Length: 24575 Content-Type: text/javascript | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=bae434f4b6654bead0732a1d28cb5145.js | 200 OK Content-Length: 3229 Content-Type: text/javascript | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=f65f354ae95ff86b13ec38bbe5759b9c.js | 200 OK Content-Length: 11867 Content-Type: text/javascript | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=eea8952da8cdde59fee1ac62a85aee87.js | 200 OK Content-Length: 10079 Content-Type: text/javascript | clean |
http://vk.com/js/api/share.js?11 | 200 OK Content-Length: 10156 Content-Type: application/x-javascript | clean |
https://w.uptolike.com/widgets/v1/zp.js?pid=tla7235cf651848c0a5e8aa1083528197665b7821e | 200 OK Content-Length: 21542 Content-Type: text/javascript | clean |
http://jenskisait.ru/index.php/glavnaya-verhnee.html | 200 OK Content-Length: 80666 Content-Type: text/html | clean |
http://jenskisait.ru/index.php/contacti.html | 200 OK Content-Length: 31337 Content-Type: text/html | clean |
http://jenskisait.ru/plugins/system/ice_speed/?f=ea096000dcf6f8f4fdbf0fc6b473ac3f.js | 200 OK Content-Length: 2341 Content-Type: text/javascript | clean |
http://jenskisait.ru/index.php/zdorove.html | 200 OK Content-Length: 75670 Content-Type: text/html | clean |
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://jenskisait.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: jenskisait.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Sun, 22 Jun 2014 22:47:22 GMT Location: http://tuttomariorestaurant.com/cache/mod_login/tutto/a.php Server: nginx/1.4.3 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
URL: http://tuttomariorestaurant.com/cache/mod_login/tutto/all.php (imitation of visitor from search engine) GET /cache/mod_login/tutto/all.php HTTP/1.1 Host: tuttomariorestaurant.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 22 Jun 2014 22:47:23 GMT Location: http://google.com Server: Apache Content-Length: 0 Content-Type: text/html | suspicious |