Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://modul-sm.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: modul-sm.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 18 Nov 2014 06:03:56 GMT Location: http://alfsystem.com.my/includes/domit/1.php Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
Scanned pages/files
Request | Server response | Status |
http://modul-sm.ru/ | 200 OK Content-Length: 22187 Content-Type: text/html | clean |
http://modul-sm.ru/media/system/js/caption.js | 200 OK Content-Length: 2011 Content-Type: application/javascript | clean |
http://modul-sm.ru/modules/mod_news_pro_gk4/interface/scripts/engine-mootools-11.js | 200 OK Content-Length: 8795 Content-Type: application/javascript | clean |
http://modul-sm.ru/index.php?option=com_content&view=article&id=456&Itemid=120 | 200 OK Content-Length: 24971 Content-Type: text/html | clean |
http://modul-sm.ru/index.php?option=com_content&view=article&id=470&Itemid=120 | 200 OK Content-Length: 19531 Content-Type: text/html | clean |
http://modul-sm.ru/index.php | 200 OK Content-Length: 22187 Content-Type: text/html | clean |
http://modul-sm.ru/?option=com_xmap&sitemap=1&Itemid=137 | 200 OK Content-Length: 168878 Content-Type: text/html | clean |
http://modul-sm.ru/index.php?option=com_content&view=article&id=1&Itemid=1 | 200 OK Content-Length: 20675 Content-Type: text/html | clean |
http://modul-sm.ru/index.php?option=com_content&view=article&id=99&Itemid=2 | 200 OK Content-Length: 22187 Content-Type: text/html | clean |
http://modul-sm.ru/index.php?option=com_virtuemart&Itemid=3 | HTTP/1.1 303 See other Connection: close Date: Tue, 18 Nov 2014 06:04:03 GMT Location: http://www.modul-sm.ru/index.php?option=com_virtuemart&Itemid=3&vmcchk=1&Itemid=3 Server: nginx/0.7.67 Vary: Accept-Encoding Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 65b083d651dbea665b50592e7b85efb9=nb7m78tqic1mgjk321jmbs9um7; path=/ Set-Cookie: virtuemart=nb7m78tqic1mgjk321jmbs9um7 X-Powered-By: PHP/5.2.17 | clean |
http://www.modul-sm.ru/index.php?option=com_virtuemart&itemid=3&vmcchk=1&itemid=3 | 200 OK Content-Length: 22630 Content-Type: text/html | clean |
http://www.modul-sm.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/default&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js&subdir[2]=/js/mootools&file[2]=mootools-release-1.11.js&subdir[3]=/js/mootools&file[3]=mooPrompt.js | 200 OK Content-Length: 56658 Content-Type: text/javascript | clean |
http://www.modul-sm.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/js&file[0]=wz_tooltip.js | 200 OK Content-Length: 36625 Content-Type: text/javascript | clean |
http://modul-sm.ru/index.php?option=com_virtuemart&page=shop.browse&category_id=1&Itemid=3 | HTTP/1.1 303 See other Connection: close Date: Tue, 18 Nov 2014 06:04:06 GMT Location: http://www.modul-sm.ru/index.php?option=com_virtuemart&page=shop.browse&category_id=1&Itemid=3&vmcchk=1&Itemid=3 Server: nginx/0.7.67 Vary: Accept-Encoding Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 65b083d651dbea665b50592e7b85efb9=ic0g00hf0519f8acs3pv4cfmv4; path=/ Set-Cookie: virtuemart=ic0g00hf0519f8acs3pv4cfmv4 X-Powered-By: PHP/5.2.17 | clean |
http://www.modul-sm.ru/index.php?option=com_virtuemart&page=shop.browse&category_id=1&itemid=3&vmcchk=1&itemid=3 | 200 OK Content-Length: 100389 Content-Type: text/html | clean |
http://www.modul-sm.ru/index.php?option=com_content&view=article&id=456&Itemid=120 | 200 OK Content-Length: 24971 Content-Type: text/html | clean |
http://www.modul-sm.ru/media/system/js/caption.js | 200 OK Content-Length: 2011 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=modul-sm.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://modul-sm.ru/
Result: modul-sm.ru is not infected or malware details are not published yet.
Result: modul-sm.ru is not infected or malware details are not published yet.