Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=layt94.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: layt94.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Connection: close
Date: Mon, 15 Sep 2014 17:10:23 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Mon, 15 09 14 17:10:23GMT
Set-Cookie: PHPSESSID=6bb1edb7ba42d7a1386757882915790b; path=/
X-Powered-By: PHP/5.2.13-pl0-gentoo
GET / HTTP/1.1
Host: layt94.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Connection: close
Date: Mon, 15 Sep 2014 17:10:23 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Mon, 15 09 14 17:10:23GMT
Set-Cookie: PHPSESSID=6bb1edb7ba42d7a1386757882915790b; path=/
X-Powered-By: PHP/5.2.13-pl0-gentoo
Second query (visit from search engine):
GET / HTTP/1.1
Host: layt94.ru
Referer: http://www.google.com/search?q=layt94.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: layt94.ru
Referer: http://www.google.com/search?q=layt94.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://layt94.ru/ | 200 OK Content-Length: 9747 Content-Type: text/html | clean |
http://www.tourprom.ru/gen_code.aspx?width=300&target=1&text=0&color=10 | HTTP/1.1 301 MOVED PERMANENTLY Connection: close Date: Mon, 15 Sep 2014 17:10:24 GMT Location: http://www.tourprom.ru/gen_code.aspx/?width=300&target=1&text=0&color=10 Server: nginx/1.1.19 Content-Type: text/html; charset=utf-8 | clean |
http://www.tourprom.ru/gen_code.aspx/?width=300&target=1&text=0&color=10 | 200 OK Content-Length: 7000 Content-Type: text/html | clean |
http://www.tourprom.ru/ | 200 OK Content-Length: 166900 Content-Type: text/html | clean |
http://www.tourprom.ru/site_media/js/jquery-1.11.1.min.js | 200 OK Content-Length: 95786 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/js/top_header.js | 200 OK Content-Length: 2630 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/js/main.js | 200 OK Content-Length: 16470 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/js/jquery.cookie.js | 200 OK Content-Length: 3937 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/js/swfobject.js | 200 OK Content-Length: 10220 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/flowplayer/flowplayer-3.1.4.min.js | 200 OK Content-Length: 15960 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/flowplayer/flowplayer.playlist-3.0.7.min.js | 200 OK Content-Length: 2281 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/js/tslider.js | 200 OK Content-Length: 7786 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/site_media/js/baron.js | 200 OK Content-Length: 3956 Content-Type: application/x-javascript | clean |
http://www.tourprom.ru/baner/js/?type=vip&area=vip | 200 OK Content-Length: 512 Content-Type: text/plain | clean |
http://www.tourprom.ru/baner/click/4628 | HTTP/1.1 301 MOVED PERMANENTLY Connection: close Date: Mon, 15 Sep 2014 17:10:28 GMT Location: http://www.tourprom.ru/baner/click/4628/ Server: nginx/1.1.19 Content-Type: text/html; charset=utf-8 | clean |
http://www.tourprom.ru/baner/click/4628/ | HTTP/1.1 302 FOUND Connection: close Date: Mon, 15 Sep 2014 17:10:28 GMT Location: http://www.natalie-tours.ru/deals/uae/159715/ Server: nginx/1.1.19 Vary: Cookie Content-Type: text/html; charset=utf-8 | clean |
http://www.natalie-tours.ru/deals/uae/159715/ | 200 OK Content-Length: 34508 Content-Type: text/html | clean |
http://www.natalie-tours.ru/jquery-1.8.3.min.js | 200 OK Content-Length: 93637 Content-Type: text/javascript | clean |