Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=laed.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: laed.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 19 Dec 2014 00:04:27 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Fri, 19 Dec 2014 00:04:26 GMT
Set-Cookie: tu=0ef8f3996c2317508884ed708a1bff36; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=laed.ru; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_EL78/hVvavYZGOgskAssYEhZYB61iAUlg8bDw4U03EuitfNemvXWQx92MS1Ss5i352AGPMx5mNeGchX1sWls9w==
X-Cache: MISS from 931531
X-Powered-By: PHP/5.3.3-7+squeeze19
GET / HTTP/1.1
Host: laed.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 19 Dec 2014 00:04:27 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Fri, 19 Dec 2014 00:04:26 GMT
Set-Cookie: tu=0ef8f3996c2317508884ed708a1bff36; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=laed.ru; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_EL78/hVvavYZGOgskAssYEhZYB61iAUlg8bDw4U03EuitfNemvXWQx92MS1Ss5i352AGPMx5mNeGchX1sWls9w==
X-Cache: MISS from 931531
X-Powered-By: PHP/5.3.3-7+squeeze19
Second query (visit from search engine):
GET / HTTP/1.1
Host: laed.ru
Referer: http://www.google.com/search?q=laed.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: laed.ru
Referer: http://www.google.com/search?q=laed.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://laed.ru/ | 200 OK Content-Length: 22842 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://laed.ru/test404page.js | 200 OK Content-Length: 29754 Content-Type: text/html | clean |
http://laed.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dla%2520ed%26ai%3DGnMOWIlSKTDb9KhBYyd1YndSAZzz42w7ALvJrqfdfMRHZ0oSKN7XlJUVvb4DIbvsrWvRKdL_35CBdCV7aWqMwICJPUsvath_AfA95bOPUTn_KjHWIhzk5AcvHXxpL4x3w18NnZPWD40aqOVe-52rp0FGQTcSyrq3D_CeyuBwnu5gi89TJS8hKznHakwCDk8VaTUdKoeO1rM54aGwsk1I2JCRLFlDTsAbBoRHuMWwKS6FAJ5UEs <span>...748 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Fri, 19 Dec 2014 00:04:28 GMT Pragma: no-cache Location: http://laed.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dla%2520ed%26ai%3DGnMOWIlSKTDb9KhBYyd1YndSAZzz42w7ALvJrqfdfMRHZ0oSKN7XlJUVvb4DIbvsrWvRKdL_35CBdCV7aWqMwICJPUsvath_AfA95bOPUTn_KjHWIhzk5AcvHXxpL4x3w18NnZPWD40aqOVe-52rp0FGQTcSyrq3D_CeyuBwnu5gi89TJS8hKznHakwCDk8VaTUdKoeO1rM54aGwsk1I2JCRLFlDTsAbBoRHuMWwKS6FAJ5UEsyB48THSqoK_mME_0OAjRn4EVinnewbmjJLN0JM8AaiKVr8_OmWO_gmMnR4MEfeWA0PBf1KfLUoIUbaysNwxCmFBrSiWx6BaIZnNNC58TNasU_858Dn31zFuBOvGpOyIkcgTt2Uk1r5SsS4NEuL7PG6SZeLU0hvMgkwia46LQzrJCdxvYXrok6Na41b8MIZEJU25wgxSbdZKq7z%26version%3D1.2&v=NTU2OTUzMDdmOWYxNzIyOTE4OWE0YTZmZGRlYjhjNDQJMQlsYWVkLnJ1NTQ5MzZiOGMzNThlYzcuOTk4MjgzODIJbGFlZC5ydTU0OTM2YjhjMzU5ZWIzLjExNTIyMzY5CTE0MTg5NDc0NjgJYWRfN18w&l=NAlBRFMJZjEwYWM2YmIwMWYyZDYyNzk1ZThhMDA2MmYzMWM2NzQJMC4wMDAzCTAJMTMJCTMxCTIJMQkwCWYzMzJiZjAwMDQ1OGQ4M2RlZTNkYmE0ODdhMmM3OTRhCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkxMTIwODk2NzEJYwkxMDQ0MzU0MTEJCWxhIGVkCTEwMDYJNwkyMAkyNQkxNDE4OTQ3NDY4CTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQlsYWVkLnJ1NTQ5MzZiOGMzNThlYzcuOTk4MjgzODIJMC4wMDA2CTAJCTEJMTUwOAkxMDQ5CTgyNTUyMDMyCQ%3D%3D Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Fri, 19 Dec 2014 00:04:28 GMT X-Cache: MISS from 051375 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://laed.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3dla%2520ed%26ai%3dgnmowilsktdb9khbyyd1yndsazzz42w7alvjrqfdfmrhz0oskn7xljuvvb4dibvsrwvrkdl_35cbdcv7awqmwicjpusvath_afa95boputn_kjhwihzk5acvhxxpl4x3w18nnzpwd40aqove-52rp0fgqtcsyrq3d_ceyubwnu5gi89tjs8hkznhakwcdk8vatudkoeo1rm54agwsk1i2jcrlfldtsabborhumwwks6faj5ues <span>...748 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://laed.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dla%2520ed%26ai%3DifVxDC5KGca6BGEKdBb_WfyHMhwELROhkypRtbc31uDWZSNl1xOYUCIILHdYqWdGxwotg79L3hZ6JIyV3Jy3IckY6VqmXsxcdtWKgWIBO592_qDKpAnqdA94vpmFWKjAc5qmgnG6qUEWF3N8pXPesGKeseZxi-boQITMx_OK5suBOvD81wsfXNANScCRNPCAfXyxOGwy1p8XaxTfXjZqA0RQTy7KSvyRRC5aIlU5XyihskdLXF <span>...748 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Fri, 19 Dec 2014 00:04:29 GMT Pragma: no-cache Location: http://laed.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dla%2520ed%26ai%3DifVxDC5KGca6BGEKdBb_WfyHMhwELROhkypRtbc31uDWZSNl1xOYUCIILHdYqWdGxwotg79L3hZ6JIyV3Jy3IckY6VqmXsxcdtWKgWIBO592_qDKpAnqdA94vpmFWKjAc5qmgnG6qUEWF3N8pXPesGKeseZxi-boQITMx_OK5suBOvD81wsfXNANScCRNPCAfXyxOGwy1p8XaxTfXjZqA0RQTy7KSvyRRC5aIlU5XyihskdLXF5VdIGQC1YhRr2X7OJMgUjmv5QuJ3cjQQbtTf7dUXuy878s4TtgQauXFXpZwm7-DSXPnlO668FnGKIuqGgAEkSDrjgZclw4AiD-Sz2rCeoTRaintDfrCZf3iSt8FQZRgW1kLNpc00h2eWQZ0vR9kf8-BlWJTdbjsVKcKEm_iImzJQUmIB9egtFIOXm5OrpMo-8SPjXNEFgqZT72%26version%3D1.2&v=OTQyOWNhNjFiMjdlMzI2NTRhZjVjYTFmZTFkMDExYjIJMQlsYWVkLnJ1NTQ5MzZiOGMzNThlYzcuOTk4MjgzODIJbGFlZC5ydTU0OTM2YjhjMzU5ZWIzLjExNTIyMzY5CTE0MTg5NDc0NjgJYWRfN18x&l=NAlBRFMJYTcyZmQxOTBhNDgwYWFmNGUwOTFmOWM2M2VjMzZhNzMJMC4wMDAzCTAJMTMJCTMxCTIJMgkwCTk0YjA4OGI1MDVkZDU1NTM2ZjQ4YjEzZjJlMjZlMzE2CWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkxMTIwODk2NzEJYwkxMDQ0MzU0MTEJCWxhIGVkCTEwMDYJNwkyMAkyNQkxNDE4OTQ3NDY4CTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQlsYWVkLnJ1NTQ5MzZiOGMzNThlYzcuOTk4MjgzODIJMC4wMDA2CTAJCTEJMTUwOAkxMDQ5CTgyNTUyMDMyCQ%3D%3D Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Fri, 19 Dec 2014 00:04:29 GMT X-Cache: MISS from 610543 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://laed.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3dla%2520ed%26ai%3difvxdc5kgca6bgekdbb_wfyhmhwelrohkyprtbc31udwzsnl1xoyuciilhdyqwdgxwotg79l3hz6jiyv3jy3icky6vqmxsxcdtwkgwibo592_qdkpanqda94vpmfwkjac5qmgng6quewf3n8pxpesgkesezxi-boqitmx_ok5subovd81wsfxnansccrnpcafxyxogwy1p8xaxtfxjzqa0rqty7ksvyrrc5ailu5xyihskdlxf <span>...748 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |