Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: microlux.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Sat, 16 Aug 2014 11:12:18 GMT
Pragma: no-cache
Server: Azar-A Content/1.32
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: cdc3a0f5f45a7818df2c3bafb9fe0f68=6joh9ai7f751e21mod02uuhn51; path=/
GET / HTTP/1.1
Host: microlux.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Sat, 16 Aug 2014 11:12:18 GMT
Pragma: no-cache
Server: Azar-A Content/1.32
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: cdc3a0f5f45a7818df2c3bafb9fe0f68=6joh9ai7f751e21mod02uuhn51; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: microlux.ru
Referer: http://www.google.com/search?q=microlux.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: microlux.ru
Referer: http://www.google.com/search?q=microlux.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://microlux.ru/ | 200 OK Content-Length: 14103 Content-Type: text/html | clean |
http://microlux.ru/media/system/js/jquery.js | 200 OK Content-Length: 72174 Content-Type: application/javascript | clean |
http://microlux.ru/media/system/js/jquery-ui.js | 200 OK Content-Length: 210265 Content-Type: application/javascript | clean |
http://microlux.ru/media/system/js/core.js | 200 OK Content-Length: 3616 Content-Type: application/javascript | clean |
http://microlux.ru/media/system/js/mootools-core.js | 200 OK Content-Length: 83987 Content-Type: application/javascript | clean |
http://microlux.ru/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/javascript | clean |
http://microlux.ru/media/system/js/fancybox/jquery.fancybox-1.3.4.js | 200 OK Content-Length: 28243 Content-Type: application/javascript | clean |
http://microlux.ru//mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 1949 Content-Type: text/html | clean |
http://microlux.ru/index.php | 200 OK Content-Length: 14112 Content-Type: text/html | clean |
http://microlux.ru/production | 200 OK Content-Length: 11363 Content-Type: text/html | clean |
http://microlux.ru/price | 200 OK Content-Length: 18203 Content-Type: text/html | clean |
http://microlux.ru/service | 200 OK Content-Length: 8137 Content-Type: text/html | clean |
http://microlux.ru/dealer | 200 OK Content-Length: 16170 Content-Type: text/html | clean |
http://microlux.ru/contacts | 200 OK Content-Length: 8646 Content-Type: text/html | clean |
http://microlux.ru//api-maps.yandex.ru/services/constructor/1.0/js/?sid=ITufy-YqKV5jLj9jvizP_EFL0uR1WVJU&width=600&height=450/ | 404 Not Found Content-Length: 1949 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=microlux.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://microlux.ru/
Result: microlux.ru is not infected or malware details are not published yet.
Result: microlux.ru is not infected or malware details are not published yet.