Scanned pages/files
Request | Server response | Status |
http://mbdoudrujba.3dn.ru/ | 200 OK Content-Length: 115649 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://s58.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s58.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 22097 Content-Type: text/javascript | clean |
http://s58.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228554 Content-Type: text/javascript | clean |
http://mbdoudrujba.3dn.ru/register | 200 OK Content-Length: 86105 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://mbdoudrujba.3dn.ru/index/0-3 | 200 OK Content-Length: 86490 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://mbdoudrujba.3dn.ru/news/rss/ | 200 OK Content-Length: 38649 Content-Type: text/xml | clean |
http://mbdoudrujba.3dn.ru/test404page.js | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://mbdoudrujba.3dn.ru/blog | 200 OK Content-Length: 80727 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://mbdoudrujba.3dn.ru/blog/rss/ | 200 OK Content-Length: 304 Content-Type: text/xml | clean |
http://mbdoudrujba.3dn.ru/sitemap.xml | 200 OK Content-Length: 79815 Content-Type: text/xml | clean |
http://mbdoudrujba.3dn.ru/news/2015-07 | 200 OK Content-Length: 256730 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://mbdoudrujba.3dn.ru/news/2015-00 | 200 OK Content-Length: 83647 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://mbdoudrujba.3dn.ru/news/2015-07-11 | 200 OK Content-Length: 300566 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
| ||
http://mbdoudrujba.3dn.ru/news/tvorcheskie_zadanija_vremena_goda_zima_tetrad_dlja_zanjatij_s_detmi_2_3_let_fgos_elena_uleva/2015-07-11-407 | 200 OK Content-Length: 88039 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) f=0;while(f<89)document.write(String.fromCharCode('=tdsjqu?!wbs!ejw!>!epdvnfou/hfuFmfnfoutCzUbhObnf)(ejw(*\\1^<!ejw/joofsIUNM!>!((<!=0tdsjqu?'.charCodeAt(f++)-1)) Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mbdoudrujba.3dn.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Wed, 28 Oct 2015 14:35:35 GMT
Pragma: no-cache
Server: nginx/1.8.0
Content-Type: text/html; charset=UTF-8
Set-Cookie: 4mbdoudrujbauCoz=; path=/; expires=Mon, 28-Oct-2013 14:35:36 GMT; domain=.mbdoudrujba.3dn.ru;
Set-Cookie: 4mbdoudrujbauzll=1446042936; path=/; expires=Thu, 27-Oct-2016 14:35:36 GMT; domain=.mbdoudrujba.3dn.ru;
Set-Cookie: 4mbdoudrujbauCoz=; path=/; expires=Mon, 28-Oct-2013 14:35:36 GMT; domain=.mbdoudrujba.3dn.ru;
GET / HTTP/1.1
Host: mbdoudrujba.3dn.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Wed, 28 Oct 2015 14:35:35 GMT
Pragma: no-cache
Server: nginx/1.8.0
Content-Type: text/html; charset=UTF-8
Set-Cookie: 4mbdoudrujbauCoz=; path=/; expires=Mon, 28-Oct-2013 14:35:36 GMT; domain=.mbdoudrujba.3dn.ru;
Set-Cookie: 4mbdoudrujbauzll=1446042936; path=/; expires=Thu, 27-Oct-2016 14:35:36 GMT; domain=.mbdoudrujba.3dn.ru;
Set-Cookie: 4mbdoudrujbauCoz=; path=/; expires=Mon, 28-Oct-2013 14:35:36 GMT; domain=.mbdoudrujba.3dn.ru;
Second query (visit from search engine):
GET / HTTP/1.1
Host: mbdoudrujba.3dn.ru
Referer: http://www.google.com/search?q=mbdoudrujba.3dn.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mbdoudrujba.3dn.ru
Referer: http://www.google.com/search?q=mbdoudrujba.3dn.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mbdoudrujba.3dn.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mbdoudrujba.3dn.ru/
Result: mbdoudrujba.3dn.ru is not infected or malware details are not published yet.
Result: mbdoudrujba.3dn.ru is not infected or malware details are not published yet.