Scanned pages/files
Request | Server response | Status |
http://kontur-irkutsk.ru/ | 200 OK Content-Length: 164437 Content-Type: text/html | clean |
http://kontur.ru/theme/ver-530375917/combined_home_E6A3692AE1EF33CF2411D197D0C4F544.js | 404 Not Found Content-Length: 3524 Content-Type: text/html | clean |
http://kontur.ru/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:31 GMT Location: https://kontur.ru/ Server: nginx Content-Length: 0 Set-Cookie: sr=2; Path=/ X-Server: vm-www3 | clean |
https://kontur.ru/ | 200 OK Content-Length: 57301 Content-Type: text/html | suspicious |
Suspicious code found СгенеÑиÑовано 06.04.2014 9:48:14 | ||
https://kontur.ru/theme/ver-273283099/combined_CE7C1974C8BC4540BC91057BF8B4A095.js | 200 OK Content-Length: 302803 Content-Type: application/x-javascript | clean |
http://kontur.ru/theme/ver-273283099/combined_home_2998F4059D0AE6AE52BB45907171C39C.js | 200 OK Content-Length: 25753 Content-Type: application/x-javascript | clean |
http://kontur.ru//mc.yandex.ru/metrika/watch_visor.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:33 GMT Location: /mc.yandex.ru/metrika/watch_visor.js Server: nginx Content-Length: 0 Set-Cookie: sr=2; Path=/ X-Server: vm-www3 | clean |
http://kontur.ru/mc.yandex.ru/metrika/watch_visor.js | 404 Not Found Content-Length: 3524 Content-Type: text/html | clean |
http://kontur.ru/feedback | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:33 GMT Location: https://kontur.ru/feedback Server: nginx Content-Length: 0 Set-Cookie: sr=1; Path=/ X-Server: vm-www2 | clean |
https://kontur.ru/feedback | 200 OK Content-Length: 33582 Content-Type: text/html | suspicious |
Suspicious code found <div style="display: none;"> <div class="region-popup" id="LocationSelectContainerId"> <h2 class="lightbox-title"><label for="LocationSelectId">ÐÑÐ±Ð¾Ñ Ñегиона</label></h2> <form action="/ajax/location/SetRegion" method="post"><input name="returnUrl" type="hidden" value="/feedback" /> <div class="region-"><select name="LocationRegionId" id="LocationSelectId" class="LocationSelectId"></select></div> <span class="lb-button">ÐÑбÑаÑÑ<input type="submit" class="hiddenSubmit" /><span class="button_orange-right"></span></span> </form> </div> </div> | ||
https://kontur.ru/theme/ver-1253140379/combined_CE7C1974C8BC4540BC91057BF8B4A095.js | 200 OK Content-Length: 302803 Content-Type: application/x-javascript | clean |
http://kontur.ru/products | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:35 GMT Location: https://kontur.ru/products Server: nginx Content-Length: 0 Set-Cookie: sr=1; Path=/ X-Server: vm-www2 | clean |
https://kontur.ru/products | 200 OK Content-Length: 51989 Content-Type: text/html | suspicious |
Suspicious code found <div style="display: none;"> <div class="region-popup" id="LocationSelectContainerId"> <h2 class="lightbox-title"><label for="LocationSelectId">ÐÑÐ±Ð¾Ñ Ñегиона</label></h2> <form action="/ajax/location/SetRegion" method="post"><input name="returnUrl" type="hidden" value="/products" /> <div class="region-"><select name="LocationRegionId" id="LocationSelectId" class="LocationSelectId"></select></div> <span class="lb-button">ÐÑбÑаÑÑ<input type="submit" class="hiddenSubmit" /><span class="button_orange-right"></span></span> </form> </div> </div> | ||
https://kontur.ru/theme/ver-1844070526/combined_CE7C1974C8BC4540BC91057BF8B4A095.js | 200 OK Content-Length: 302803 Content-Type: application/x-javascript | clean |
http://kontur.ru/store | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:36 GMT Location: https://kontur.ru/store Server: nginx Content-Length: 0 Set-Cookie: sr=1; Path=/ X-Server: vm-www2 | clean |
https://kontur.ru/store | 200 OK Content-Length: 65976 Content-Type: text/html | suspicious |
Suspicious code found <div style="display: none;"> <div class="region-popup" id="LocationSelectContainerId"> <h2 class="lightbox-title"><label for="LocationSelectId">ÐÑÐ±Ð¾Ñ Ñегиона</label></h2> <form action="/ajax/location/SetRegion" method="post"><input name="returnUrl" type="hidden" value="/store" /> <div class="region-"><select name="LocationRegionId" id="LocationSelectId" class="LocationSelectId"></select></div> <span class="lb-button">ÐÑбÑаÑÑ<input type="submit" class="hiddenSubmit" /><span class="button_orange-right"></span></span> </form> </div> </div> | ||
https://kontur.ru/theme/ver-1844070526/combined_store_A0346CE01C5ECEF1B88F48716351F1E8.js | 200 OK Content-Length: 91690 Content-Type: application/x-javascript | clean |
http://kontur.ru/articles | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:37 GMT Location: https://kontur.ru/articles Server: nginx Content-Length: 0 Set-Cookie: sr=2; Path=/ X-Server: vm-www3 | clean |
https://kontur.ru/articles | 200 OK Content-Length: 63125 Content-Type: text/html | suspicious |
Suspicious code found <div style="display: none;"> <div class="region-popup" id="LocationSelectContainerId"> <h2 class="lightbox-title"><label for="LocationSelectId">ÐÑÐ±Ð¾Ñ Ñегиона</label></h2> <form action="/ajax/location/SetRegion" method="post"><input name="returnUrl" type="hidden" value="/articles" /> <div class="region-"><select name="LocationRegionId" id="LocationSelectId" class="LocationSelectId"></select></div> <span class="lb-button">ÐÑбÑаÑÑ<input type="submit" class="hiddenSubmit" /><span class="button_orange-right"></span></span> </form> </div> </div> | ||
https://kontur.ru/theme/ver-1253140379/combined_new-articles_BFD96059B0CD0B18D9B17B323E88B030.js | 200 OK Content-Length: 3157 Content-Type: application/x-javascript | clean |
http://kontur.ru/partnership | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 06 Apr 2014 05:53:38 GMT Location: https://kontur.ru/partnership Server: nginx Content-Length: 0 Set-Cookie: sr=0; Path=/ X-Server: vm-www1 | clean |
https://kontur.ru/partnership | 200 OK Content-Length: 40215 Content-Type: text/html | suspicious |
Suspicious code found <div style="display: none;"> <div class="region-popup" id="LocationSelectContainerId"> <h2 class="lightbox-title"><label for="LocationSelectId">ÐÑÐ±Ð¾Ñ Ñегиона</label></h2> <form action="/ajax/location/SetRegion" method="post"><input name="returnUrl" type="hidden" value="/partnership" /> <div class="region-"><select name="LocationRegionId" id="LocationSelectId" class="LocationSelectId"></select></div> <span class="lb-button">ÐÑбÑаÑÑ<input type="submit" class="hiddenSubmit" /><span class="button_orange-right"></span></span> </form> </div> </div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kontur-irkutsk.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 06 Apr 2014 05:53:28 GMT
Pragma: no-cache
Server: Apache/1.3.42 (Unix) PHP/5.3.13
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Set-Cookie: PHPSESSID=42ee81de376d02c568f8e7b337c02c34; path=/; domain=kontur-irkutsk.ru; HttpOnly
Set-Cookie: KITRAY_GUEST_ID=147428; expires=Wed, 01-Apr-2015 05:53:28 GMT; path=/; domain=kontur-irkutsk.ru
Set-Cookie: KITRAY_LAST_VISIT=06.04.2014+09%3A53%3A28; expires=Wed, 01-Apr-2015 05:53:28 GMT; path=/; domain=kontur-irkutsk.ru
X-Powered-By: PHP/5.3.13
X-Powered-CMS: Bitrix Site Manager (97f690b48e76717f09240d186bf6f474)
GET / HTTP/1.1
Host: kontur-irkutsk.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 06 Apr 2014 05:53:28 GMT
Pragma: no-cache
Server: Apache/1.3.42 (Unix) PHP/5.3.13
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Set-Cookie: PHPSESSID=42ee81de376d02c568f8e7b337c02c34; path=/; domain=kontur-irkutsk.ru; HttpOnly
Set-Cookie: KITRAY_GUEST_ID=147428; expires=Wed, 01-Apr-2015 05:53:28 GMT; path=/; domain=kontur-irkutsk.ru
Set-Cookie: KITRAY_LAST_VISIT=06.04.2014+09%3A53%3A28; expires=Wed, 01-Apr-2015 05:53:28 GMT; path=/; domain=kontur-irkutsk.ru
X-Powered-By: PHP/5.3.13
X-Powered-CMS: Bitrix Site Manager (97f690b48e76717f09240d186bf6f474)
Second query (visit from search engine):
GET / HTTP/1.1
Host: kontur-irkutsk.ru
Referer: http://www.google.com/search?q=kontur-irkutsk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kontur-irkutsk.ru
Referer: http://www.google.com/search?q=kontur-irkutsk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kontur-irkutsk.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kontur-irkutsk.ru/
Result: kontur-irkutsk.ru is not infected or malware details are not published yet.
Result: kontur-irkutsk.ru is not infected or malware details are not published yet.