Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mpegg.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Sep 2015 05:42:12 GMT
Server: uServ/3.2.2
Content-Length: 56709
Content-Type: text/html; charset=UTF-8
...56709 bytes of data.
GET / HTTP/1.1
Host: mpegg.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Sep 2015 05:42:12 GMT
Server: uServ/3.2.2
Content-Length: 56709
Content-Type: text/html; charset=UTF-8
...56709 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mpegg.ru
Referer: http://www.google.com/search?q=mpegg.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mpegg.ru
Referer: http://www.google.com/search?q=mpegg.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://mpegg.ru/ | 200 OK Content-Length: 56709 Content-Type: text/html | clean |
http://s10.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s10.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 22097 Content-Type: text/javascript | clean |
http://s10.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228554 Content-Type: text/javascript | clean |
http://www.google.com/coop/cse/brand?form=cse-search-box&lang=ru | HTTP/1.1 302 Found Cache-Control: public, max-age=172800 Connection: close Date: Wed, 23 Sep 2015 17:16:32 GMT Age: 131141 Location: http://cse.google.com/coop/cse/brand?form=cse-search-box&lang=ru Server: pfe Content-Length: 265 Content-Type: text/html; charset=UTF-8 Expires: Fri, 25 Sep 2015 17:16:32 GMT Content-Disposition: attachment; filename="f.txt" X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://cse.google.com/coop/cse/brand?form=cse-search-box&lang=ru | 200 OK Content-Length: 2502 Content-Type: text/javascript | clean |
http://mpegg.ru/temp/owl.carousel.js | 200 OK Content-Length: 52797 Content-Type: text/javascript | clean |
http://mpegg.ru/temp/owl.carousel2.js | 200 OK Content-Length: 196 Content-Type: text/javascript | clean |
http://mpegg.ru/_news/_2015/07_2015/210715/itog_okno3_0.jpg | 200 OK Content-Length: 32954 Content-Type: image/jpeg | clean |
http://mpegg.ru/test404page.js | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://mpegg.ru/_news/_2015/07_2015/210715/sochi-3x6.jpg | 200 OK Content-Length: 156609 Content-Type: image/jpeg | clean |
http://mpegg.ru/index/municipalnoe_uchrezhdenie_upravlenie_po_delam_molodezhi_i_turizmu_administracii_goroda_gubkinskogo/0-70 | 200 OK Content-Length: 64003 Content-Type: text/html | clean |
http://mpegg.ru/index/kollegialnye_organy/0-95 | 200 OK Content-Length: 30793 Content-Type: text/html | clean |
http://mpegg.ru/index/perechen_informacionnykh_sistem_bankov_dannykh_reestrov_registrov/0-96 | 200 OK Content-Length: 29728 Content-Type: text/html | clean |
http://mpegg.ru/index/plany_i_otchety/0-97 | 200 OK Content-Length: 34600 Content-Type: text/html | clean |
http://mpegg.ru/index/obshhaja_statisticheskaja_informacija_o_dejatelnosti_upravlenija/0-85 | 200 OK Content-Length: 37946 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mpegg.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mpegg.ru/
Result: mpegg.ru is not infected or malware details are not published yet.
Result: mpegg.ru is not infected or malware details are not published yet.