Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: limoni.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 17 Jun 2014 22:53:28 GMT
Location: http://www.limoni.ru/
Server: nginx/1.6.0
Content-Encoding: none
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.limoni.ru/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: limoni.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 17 Jun 2014 22:53:28 GMT
Location: http://www.limoni.ru/
Server: nginx/1.6.0
Content-Encoding: none
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.limoni.ru/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: limoni.ru
Referer: http://www.google.com/search?q=limoni.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: limoni.ru
Referer: http://www.google.com/search?q=limoni.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://limoni.ru/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 17 Jun 2014 22:53:28 GMT Location: http://www.limoni.ru/ Server: nginx/1.6.0 Content-Encoding: none Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.limoni.ru/xmlrpc.php | clean |
http://www.limoni.ru/ | 200 OK Content-Length: 110772 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8/jquery.min.js | 200 OK Content-Length: 93637 Content-Type: text/javascript | clean |
http://www.limoni.ru/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://www.limoni.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.limoni.ru/wp-content/plugins/openid/f/openid.js?ver=519 | 200 OK Content-Length: 1879 Content-Type: application/javascript | clean |
http://www.limoni.ru/wp-content/plugins/cforms/js/cforms.js | 200 OK Content-Length: 17787 Content-Type: application/javascript | clean |
http://api-maps.yandex.ru/1.0/?key=AIXiQUoBAAAAwzjZYwIAZ_g18iQngxpCjsToH3QEI0EKxMsAAAAAAAAAAAAb_WOc-yuUpbbs17VyCVRpEEyxfw== | 200 OK Content-Length: 2273 Content-Type: text/javascript | clean |
http://partner.googleadservices.com/gampad/google_service.js | 200 OK Content-Length: 3878 Content-Type: text/javascript | clean |
http://www.limoni.ru/wp-content/themes/arthemia/scripts/jquery.tabSlideOut.v1.2.js | 200 OK Content-Length: 6842 Content-Type: application/javascript | clean |
http://app.ecwid.com/script.js?878245 | 200 OK Content-Length: 61504 Content-Type: text/javascript | clean |
http://userapi.com/js/api/openapi.js?47 | 200 OK Content-Length: 64039 Content-Type: application/x-javascript | clean |
http://www.limoni.ru/wp-content/plugins/wp-cumulus/swfobject.js | 200 OK Content-Length: 6088 Content-Type: application/javascript | clean |
http://www.limoni.ru/wp-content/plugins/shutter-reloaded//shutter-reloaded.js?ver=2.5 | 200 OK Content-Length: 8036 Content-Type: application/javascript | clean |
http://limoni.ru/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 17 Jun 2014 22:53:39 GMT Pragma: no-cache Location: http://www.limoni.ru/test404page.js Server: nginx/1.6.0 Content-Encoding: none Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://www.limoni.ru/xmlrpc.php | clean |
http://www.limoni.ru/test404page.js | 404 Not Found Content-Length: 44748 Content-Type: text/html | clean |
http://www.limoni.ru//e.issuu.com/embed.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 17 Jun 2014 22:53:47 GMT Pragma: no-cache Location: http://www.limoni.ru/e.issuu.com/embed.js/ Server: nginx/1.6.0 Content-Encoding: none Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://www.limoni.ru/xmlrpc.php | clean |
http://www.limoni.ru/e.issuu.com/embed.js/ | 404 Not Found Content-Length: 44754 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=limoni.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://limoni.ru/
Result: limoni.ru is not infected or malware details are not published yet.
Result: limoni.ru is not infected or malware details are not published yet.