Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=linuxmir.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: linuxmir.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 02 Aug 2014 05:14:19 GMT
Server: nginx/1.4.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: ci_session=dhiTfJSXmhK%2BqFF69ilo49Puldwe6Mbg941%2BRZymUTScdJOmWZC%2BAuvId4ILDbBz%2Flu%2BwAETygeUtjZgf0CMWsHLDNJURPMm57QEybZfUvn4a1TEuI89XLCJdPzztp2J1jo4JTOXycZDwBTBV48rfCTCXi99zQp02VlMZ4tuhvpQBtbB0Ovns2hNmL%2B8bkyGMoRyRDF7bAbdrl3SMArYshH2XSMuZx7Z3rKrb7HuiOrF6PJOVqOdOb9hecFLD%2BZ4EjBeeayqpwX%2B3AhIncql8G38qySUBnWS5WSp5829o%2BU9o6yIiAE1Q6Z2VIa%2FB6hLuMe1mBKeYvL%2BUMmsfGmW6pmqYxXFIf4WWU6%2BGKGVYUCK%2F9JNJqsMgfITP%2BHsOSX6; expires=Sat, 02-Aug-2014 07:14:15 GMT; path=/
Set-Cookie: ci_session=Fw%2BH05qeoFRzNuxk46R5m7mIwgjn3Qlv8lUIopO2WX%2FSSSmQ1QloUYqqEIMZH93ta16Mto6%2FDVxFBi2spqQSfr%2B6KsBuIpZyog1A0wlGc5PSE8lUk9pSTCZb6Kcb55chP6CZF%2B6CxgZCXgSbZlfb3mjc9QCkqEY5GC71rMnjOVts4RlIUD4%2FZl5%2BdOR9qCOAL8MWAAyk39Ya4BjFznm438xlRKzUELJARe%2By3KyX2Wm9hW4t3UCME1Fr8%2BSQvCEDoelJ1hhVs7s0CT4%2B11tKwSllBc9OSx3UfmIOqHp51CuTeHuQT1dsZP8vajvCk9dPQVnB2DujBWgr0y13r86zqgXi%2FtieM70t7ElXioeo2YzveoHHuOuyTO%2BUEc1A2cdkZrFmMmhJ%2FI6NL6EGUc9FXRlgRMngmzjSpam2Lwkz7vpxOeSrSXJay8k0AJ15xNwyoanovYXnA1ufC%2B4SUnvH2w%3D%3D; expires=Sat, 02-Aug-2014 07:14:15 GMT; path=/
Set-Cookie: ci_session=QbWSAJ6y2QCBaJMwYL6pLuU%2BRX63xlESE6lqNOtPYHppFc2YcnX%2FP4gL7hLYXGIGvyLig5U71ix1xvr4Mw1dCTcMXWd29lonh6yOuNIA%2Fr6lAXIYNDe9%2Bgk3X%2FFi2zanRuzyoF3OMT2poJTvFdeKHkdF%2Fj2%2BsSm6RzBKPDKtElYqZplvvWq2oHFANbsSKhZ1eiKGMSadxiuD9WSLLDOXGKy9YyYKF%2F%2Bepcpe21uNtwsI4MCJ7%2ByA7L4e5ymKCmeXjWY5fkUfXmNPSQHIISkNyL7ucam3jIlVPyuJIXLKrQowMJkd1qqMWrAyQRQKd%2BoQDADpv%2BqE0lZjT9gswLQWBZ2hb7Hgvx3ntSDPVLgjicLSVqWilr2g3uQoKjtQ5PGXsMTpYnfkZ6jKco3C2xPxtck2b1PuL4ghuH5E61wxJpq9T0yEppxB%2B08vg6u%2BRgsGXp7LzVxusLDAFrULsdKq1Q%3D%3D; expires=Sat, 02-Aug-2014 07:14:15 GMT; path=/
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: linuxmir.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 02 Aug 2014 05:14:19 GMT
Server: nginx/1.4.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: ci_session=dhiTfJSXmhK%2BqFF69ilo49Puldwe6Mbg941%2BRZymUTScdJOmWZC%2BAuvId4ILDbBz%2Flu%2BwAETygeUtjZgf0CMWsHLDNJURPMm57QEybZfUvn4a1TEuI89XLCJdPzztp2J1jo4JTOXycZDwBTBV48rfCTCXi99zQp02VlMZ4tuhvpQBtbB0Ovns2hNmL%2B8bkyGMoRyRDF7bAbdrl3SMArYshH2XSMuZx7Z3rKrb7HuiOrF6PJOVqOdOb9hecFLD%2BZ4EjBeeayqpwX%2B3AhIncql8G38qySUBnWS5WSp5829o%2BU9o6yIiAE1Q6Z2VIa%2FB6hLuMe1mBKeYvL%2BUMmsfGmW6pmqYxXFIf4WWU6%2BGKGVYUCK%2F9JNJqsMgfITP%2BHsOSX6; expires=Sat, 02-Aug-2014 07:14:15 GMT; path=/
Set-Cookie: ci_session=Fw%2BH05qeoFRzNuxk46R5m7mIwgjn3Qlv8lUIopO2WX%2FSSSmQ1QloUYqqEIMZH93ta16Mto6%2FDVxFBi2spqQSfr%2B6KsBuIpZyog1A0wlGc5PSE8lUk9pSTCZb6Kcb55chP6CZF%2B6CxgZCXgSbZlfb3mjc9QCkqEY5GC71rMnjOVts4RlIUD4%2FZl5%2BdOR9qCOAL8MWAAyk39Ya4BjFznm438xlRKzUELJARe%2By3KyX2Wm9hW4t3UCME1Fr8%2BSQvCEDoelJ1hhVs7s0CT4%2B11tKwSllBc9OSx3UfmIOqHp51CuTeHuQT1dsZP8vajvCk9dPQVnB2DujBWgr0y13r86zqgXi%2FtieM70t7ElXioeo2YzveoHHuOuyTO%2BUEc1A2cdkZrFmMmhJ%2FI6NL6EGUc9FXRlgRMngmzjSpam2Lwkz7vpxOeSrSXJay8k0AJ15xNwyoanovYXnA1ufC%2B4SUnvH2w%3D%3D; expires=Sat, 02-Aug-2014 07:14:15 GMT; path=/
Set-Cookie: ci_session=QbWSAJ6y2QCBaJMwYL6pLuU%2BRX63xlESE6lqNOtPYHppFc2YcnX%2FP4gL7hLYXGIGvyLig5U71ix1xvr4Mw1dCTcMXWd29lonh6yOuNIA%2Fr6lAXIYNDe9%2Bgk3X%2FFi2zanRuzyoF3OMT2poJTvFdeKHkdF%2Fj2%2BsSm6RzBKPDKtElYqZplvvWq2oHFANbsSKhZ1eiKGMSadxiuD9WSLLDOXGKy9YyYKF%2F%2Bepcpe21uNtwsI4MCJ7%2ByA7L4e5ymKCmeXjWY5fkUfXmNPSQHIISkNyL7ucam3jIlVPyuJIXLKrQowMJkd1qqMWrAyQRQKd%2BoQDADpv%2BqE0lZjT9gswLQWBZ2hb7Hgvx3ntSDPVLgjicLSVqWilr2g3uQoKjtQ5PGXsMTpYnfkZ6jKco3C2xPxtck2b1PuL4ghuH5E61wxJpq9T0yEppxB%2B08vg6u%2BRgsGXp7LzVxusLDAFrULsdKq1Q%3D%3D; expires=Sat, 02-Aug-2014 07:14:15 GMT; path=/
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: linuxmir.ru
Referer: http://www.google.com/search?q=linuxmir.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: linuxmir.ru
Referer: http://www.google.com/search?q=linuxmir.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://linuxmir.ru/ | 200 OK Content-Length: 42709 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js | 200 OK Content-Length: 93435 Content-Type: text/javascript | clean |
http://linuxmir.ru/application/maxsite/common/jquery/jquery.cookie.js | 200 OK Content-Length: 1918 Content-Type: application/x-javascript | clean |
http://linuxmir.ru/application/maxsite/plugins/tabs/tabs.js | 200 OK Content-Length: 1320 Content-Type: application/x-javascript | clean |
http://linuxmir.ru/application/maxsite/plugins/tree_comments/js/jquery.tree-comments.js | 200 OK Content-Length: 1011 Content-Type: application/x-javascript | clean |
http://linuxmir.ru/application/maxsite/plugins/lightbox/js/jquery.lightbox.js | 200 OK Content-Length: 10100 Content-Type: application/x-javascript | clean |
http://ulogin.ru/js/ulogin.js | 200 OK Content-Length: 46696 Content-Type: application/x-javascript | clean |
http://linuxmir.ru/partn.js | 200 OK Content-Length: 1406 Content-Type: application/x-javascript | clean |
http://linuxmir.ru/application/maxsite/plugins/tagclouds3d/swfobject.js | 200 OK Content-Length: 6883 Content-Type: application/x-javascript | clean |
http://counter.rambler.ru/top100.jcn?2835236 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://linuxmir.ru/counters.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://linuxmir.ru/test404page.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |