New scan:

Malware Scanner report for meraba-villas.ru

Malicious/Suspicious/Total urls checked
0/1/12
1 page has suspicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "meraba-villas.ru" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=meraba-villas.ru

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://www.meraba-villas.ru/
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 24 Feb 2015 17:21:17 GMT
Location: http://meraba-villas.ru/
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: _icl_current_language=ru; expires=Wed, 25-Feb-2015 17:21:17 GMT; path=/
X-Pingback: http://meraba-villas.ru/xmlrpc.php
X-Powered-By: PHP/5.3.10-1ubuntu3.11
clean
http://meraba-villas.ru/
200 OK
Content-Length: 22823
Content-Type: text/html
suspicious
Page code contains blacklisted domain: tdskj.twilightparadox.com

<!DOCTYPE html>
<html lang="ru-RU">
<head>
<meta charset="UTF-8" />
<link rel="alternate" type="application/atom+xml" title="Мераба &#8212; Аренда частных вилл, коттеджей и домов на берегу Черного Моря для отдыха в Крыму (Гузуф, Ялта)." href="http://meraba-villas.ru/?feed=atom" />
<link rel="al
...[4037 bytes skipped]...

http://yandex.st/jquery/1.7.2/jquery.min.js
200 OK
Content-Length: 94840
Content-Type: application/x-javascript
clean
http://www.google.com/jsapi?ver=3.5.1
200 OK
Content-Length: 24552
Content-Type: text/javascript
clean
http://meraba-villas.ru/wp-includes/js/jquery/jquery.js?ver=1.8.3
200 OK
Content-Length: 93658
Content-Type: application/javascript
clean
http://meraba-villas.ru/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4
200 OK
Content-Length: 15667
Content-Type: application/javascript
clean
http://meraba-villas.ru/wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js
200 OK
Content-Length: 994
Content-Type: application/javascript
clean
http://meraba-villas.ru/wp-content/themes/meraba/js/app.js
200 OK
Content-Length: 50
Content-Type: application/javascript
clean
http://meraba-villas.ru/wp-content/themes/meraba/js/jquery.cycle.min.js
200 OK
Content-Length: 26561
Content-Type: application/javascript
clean
http://counter.rambler.ru/top100.jcn?2391488
200 OK
Content-Length: 6853
Content-Type: application/x-javascript
clean
http://www.meraba-villas.ru//mc.yandex.ru/metrika/watch.js/
404 Not Found
Content-Length: 314
Content-Type: text/html
clean
http://www.meraba-villas.ru/test404page.js
404 Not Found
Content-Length: 298
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: meraba-villas.ru

Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 17:21:18 GMT
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: _icl_current_language=ru; expires=Wed, 25-Feb-2015 17:21:18 GMT; path=/
X-Pingback: http://meraba-villas.ru/xmlrpc.php
X-Powered-By: PHP/5.3.10-1ubuntu3.11
Second query (visit from search engine):
GET / HTTP/1.1
Host: meraba-villas.ru
Referer: http://www.google.com/search?q=meraba-villas.ru

Result:
The result is similar to the first query. There are no suspicious redirects found.