Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=med-an.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://med-an.ru/ | 200 OK Content-Length: 45246 Content-Type: text/html | suspicious |
Suspicious code found </span> | ||
http://school-zarya-ru.1gb.ru/tqdplxqz.php?id=3637916 | 404 Not Found Content-Length: 312 Content-Type: text/html | clean |
http://school-zarya-ru.1gb.ru/test404page.js | 404 Not Found Content-Length: 314 Content-Type: text/html | clean |
http://med-an.ru/templates/orange/js/ajax.js | 404 Not Found Content-Length: 225 Content-Type: text/html | clean |
http://med-an.ru/templates/orange/css/v_1.3.js | 404 Not Found Content-Length: 227 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.3.2/jquery.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://med-an.ru/templates/orange/js/jquery.colorbox.js | 200 OK Content-Length: 21101 Content-Type: application/x-javascript | clean |
http://med-an.ru/engine/ajax/menu.js | 200 OK Content-Length: 3395 Content-Type: application/x-javascript | suspicious |
http://med-an.ru/engine/ajax/dle_ajax.js | 200 OK Content-Length: 5194 Content-Type: application/x-javascript | suspicious |
http://med-an.ru/engine/ajax/js_edit.js | 200 OK Content-Length: 13066 Content-Type: application/x-javascript | suspicious |
http://med-an.ru/engine/classes/highslide/highslide.js | 200 OK Content-Length: 20833 Content-Type: application/x-javascript | clean |
http://med-an.ru//yandex.st/share/share.js/ | 404 Not Found Content-Length: 223 Content-Type: text/html | clean |
http://med-an.ru/templates/orange/js/ajax_framework.js | 200 OK Content-Length: 995 Content-Type: application/x-javascript | clean |
http://med-an.ru//vk.com/js/api/openapi.js?82/ | 404 Not Found Content-Length: 222 Content-Type: text/html | clean |
http://med-an.ru/online.php | 200 OK Content-Length: 20 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: med-an.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 25 Dec 2014 17:47:33 GMT
Pragma: no-cache
Server: nginx/1.7.4
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Thu, 25 Dec 2014 10:47:33 +0300 GMT
Set-Cookie: PHPSESSID=g70a891bu0so2114hb3jpttlr4; path=/
Set-Cookie: dle_user_id=deleted; expires=Wed, 25-Dec-2013 17:47:31 GMT; path=/; domain=.med-an.ru; httponly
Set-Cookie: dle_password=deleted; expires=Wed, 25-Dec-2013 17:47:31 GMT; path=/; domain=.med-an.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Wed, 25-Dec-2013 17:47:31 GMT; path=/; domain=.med-an.ru; httponly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: med-an.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 25 Dec 2014 17:47:33 GMT
Pragma: no-cache
Server: nginx/1.7.4
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Thu, 25 Dec 2014 10:47:33 +0300 GMT
Set-Cookie: PHPSESSID=g70a891bu0so2114hb3jpttlr4; path=/
Set-Cookie: dle_user_id=deleted; expires=Wed, 25-Dec-2013 17:47:31 GMT; path=/; domain=.med-an.ru; httponly
Set-Cookie: dle_password=deleted; expires=Wed, 25-Dec-2013 17:47:31 GMT; path=/; domain=.med-an.ru; httponly
Set-Cookie: dle_hash=deleted; expires=Wed, 25-Dec-2013 17:47:31 GMT; path=/; domain=.med-an.ru; httponly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: med-an.ru
Referer: http://www.google.com/search?q=med-an.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: med-an.ru
Referer: http://www.google.com/search?q=med-an.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.