Scanned pages/files
Request | Server response | Status |
http://myzuka.org/ | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:49 GMT Location: https://myzuka.org/ Server: Microsoft-IIS/8.5 Content-Length: 142 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/ | 200 OK Content-Length: 201534 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. (function(){ var D=new Date(),d=document,b='body',ce='createElement',ac='appendChild',st='style',ds='display',n='none',gi='getElementById'; var i=d[ce]('iframe');i[st][ds]=n;d[gi]("MarketGidScriptRootC577725")[ac](i);try{var iw=i.contentWindow.document;iw.open();iw.writeln("<ht"+"ml><bo"+"dy></bo"+"dy></ht"+"ml>");iw.close();var c=iw[b];} catch(e){var iw=d;var c=d[gi]("MarketGidScriptRootC577725");}var dv=iw[ce]('div');dv.id="MG_ID";dv[st][ds]=n;dv.innerHTML=577725;c[ac](dv); var s=iw[ce]('script');s.async='async';s.defer='defer';s.charset='utf-8';s.src="//jsc.marketgid.com/m/y/myzuka.org.577725.js?t="+D.getYear()+D.getMonth()+D.getDate()+D.getHours();c[ac](s);})(); | ||
https://myzuka.org//go.mobtrks.com/notice.php?p=246675&interstitial=1/ | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://myzuka.org/test404page.js | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:50 GMT Location: https://myzuka.org/test404page.js Server: Microsoft-IIS/8.5 Content-Length: 156 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://myzuka.org//ddnk.advertur.ru/v1/code.js?id=30882/ | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:51 GMT Location: https://myzuka.org/ddnk.advertur.ru/v1/code.js?id=30882/ Server: Microsoft-IIS/8.5 Content-Length: 179 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/ddnk.advertur.ru/v1/code.js?id=30882/ | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://myzuka.org//yastatic.net/share/share.js/ | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:51 GMT Location: https://myzuka.org/yastatic.net/share/share.js/ Server: Microsoft-IIS/8.5 Content-Length: 170 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/yastatic.net/share/share.js/ | 404 Not Found Content-Length: 4778 Content-Type: text/html | clean |
http://mc.yandex.ru/metrika/watch.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 29 Jul 2015 14:38:14 GMT Location: https://mc.yandex.ru/metrika/watch.js Server: nginx/1.6.3 Content-Length: 184 Content-Type: text/html | clean |
https://mc.yandex.ru/metrika/watch.js | 200 OK Content-Length: 62524 Content-Type: application/x-javascript | clean |
http://www.google-analytics.com/analytics.js | 200 OK Content-Length: 25252 Content-Type: text/javascript | clean |
http://myzuka.org//ddnk.advertur.ru/v1/code.js?id=65651/ | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:52 GMT Location: https://myzuka.org/ddnk.advertur.ru/v1/code.js?id=65651/ Server: Microsoft-IIS/8.5 Content-Length: 179 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/ddnk.advertur.ru/v1/code.js?id=65651/ | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://myzuka.org//ddnk.advertur.ru/v1/code.js?id=30881/ | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:53 GMT Location: https://myzuka.org/ddnk.advertur.ru/v1/code.js?id=30881/ Server: Microsoft-IIS/8.5 Content-Length: 179 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/ddnk.advertur.ru/v1/code.js?id=30881/ | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://myzuka.org/bundles/common?v=GFice0ZIqCf5ZoSy84FcGO9pN-tJrVq4hJu7lR6n2q81 | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:53 GMT Location: https://myzuka.org/bundles/common?v=GFice0ZIqCf5ZoSy84FcGO9pN-tJrVq4hJu7lR6n2q81 Server: Microsoft-IIS/8.5 Content-Length: 203 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/bundles/common?v=gfice0ziqcf5zosy84fcgo9pn-tjrvq4hju7lr6n2q81 | 200 OK Content-Length: 220854 Content-Type: text/javascript | clean |
http://myzuka.org/Scripts/admodule.js | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:54 GMT Location: https://myzuka.org/Scripts/admodule.js Server: Microsoft-IIS/8.5 Content-Length: 161 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/scripts/admodule.js | 200 OK Content-Length: 80894 Content-Type: application/javascript | clean |
http://myzuka.org/Scripts/addb.js | HTTP/1.1 302 Redirect Date: Wed, 29 Jul 2015 14:34:55 GMT Location: https://myzuka.org/Scripts/addb.js Server: Microsoft-IIS/8.5 Content-Length: 157 Content-Type: text/html; charset=UTF-8 | clean |
https://myzuka.org/scripts/addb.js | 200 OK Content-Length: 2443 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: myzuka.org
Result:
HTTP/1.1 302 Redirect
Date: Wed, 29 Jul 2015 14:34:49 GMT
Location: https://myzuka.org/
Server: Microsoft-IIS/8.5
Content-Length: 142
Content-Type: text/html; charset=UTF-8
...142 bytes of data.
GET / HTTP/1.1
Host: myzuka.org
Result:
HTTP/1.1 302 Redirect
Date: Wed, 29 Jul 2015 14:34:49 GMT
Location: https://myzuka.org/
Server: Microsoft-IIS/8.5
Content-Length: 142
Content-Type: text/html; charset=UTF-8
...142 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: myzuka.org
Referer: http://www.google.com/search?q=myzuka.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: myzuka.org
Referer: http://www.google.com/search?q=myzuka.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=myzuka.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://myzuka.org/
Result: myzuka.org is not infected or malware details are not published yet.
Result: myzuka.org is not infected or malware details are not published yet.