Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nevapk.ru
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 17 May 2014 02:26:13 GMT
Pragma: no-cache
Server: nginx/1.4.4
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sat, 17 May 2014 02:26:13 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 23eb76f5de450d2f7aa156bbfb78939b=7ru1mf42r0qgdiadpj5d3gil34; path=/
Set-Cookie: __utmr_cache=cut_; expires=Tue, 31-Dec-2019 20:00:00 GMT
X-Powered-By: PHP/5.2.17-pl0-gentoo
GET / HTTP/1.1
Host: nevapk.ru
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 17 May 2014 02:26:13 GMT
Pragma: no-cache
Server: nginx/1.4.4
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sat, 17 May 2014 02:26:13 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 23eb76f5de450d2f7aa156bbfb78939b=7ru1mf42r0qgdiadpj5d3gil34; path=/
Set-Cookie: __utmr_cache=cut_; expires=Tue, 31-Dec-2019 20:00:00 GMT
X-Powered-By: PHP/5.2.17-pl0-gentoo
Second query (visit from search engine):
GET / HTTP/1.1
Host: nevapk.ru
Referer: http://www.google.com/search?q=nevapk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nevapk.ru
Referer: http://www.google.com/search?q=nevapk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nevapk.ru/ | 200 OK Content-Length: 36706 Content-Type: text/html | clean |
http://site.yandex.net/load/form/1/form.js | 200 OK Content-Length: 1293 Content-Type: application/x-javascript | clean |
http://nevapk.ru/aboutus | 200 OK Content-Length: 36640 Content-Type: text/html | clean |
http://nevapk.ru/aboutus/proizvodstvo | 200 OK Content-Length: 27324 Content-Type: text/html | clean |
http://nevapk.ru/aboutus/sotrudniki | 200 OK Content-Length: 33418 Content-Type: text/html | clean |
http://nevapk.ru/aboutus/news | 200 OK Content-Length: 39677 Content-Type: text/html | clean |
http://nevapk.ru/service | 200 OK Content-Length: 27632 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-plenka-solly-dlja-sendvich-panelej | 200 OK Content-Length: 27897 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-samoklejaschajasja-plenka-solly-dlja-stekla | 200 OK Content-Length: 27309 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-samoklejaschajasja-plenka-solly-dlja-nerzhavejuschej-stali | 200 OK Content-Length: 26574 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-samoklejaschajasja-plenka-solly-dlja-metalla-s-polimernym-pokrytiem | 200 OK Content-Length: 26761 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-samoklejaschajasja-plenka-solly-dlja-mebeli | 200 OK Content-Length: 27439 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-samoklejaschajasja-plenka-solly-dlja-podokonnikov-i-plastika | 200 OK Content-Length: 26794 Content-Type: text/html | clean |
http://nevapk.ru/self-tape/zaschitnaja-samoklejaschajasja/zaschitnaja-samoklejaschajasja-plenka-solly-dlja-dverej | 200 OK Content-Length: 27010 Content-Type: text/html | clean |
http://nevapk.ru/samoklejaschajasja-plenka/metallizirovannaja-bumaga | 200 OK Content-Length: 54465 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nevapk.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nevapk.ru/
Result: nevapk.ru is not infected or malware details are not published yet.
Result: nevapk.ru is not infected or malware details are not published yet.