Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=noytbyki.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: youjizz-tube8.com
Result:
GET / HTTP/1.1
Host: youjizz-tube8.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: youjizz-tube8.com
Referer: http://www.google.com/search?q=youjizz-tube8.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: youjizz-tube8.com
Referer: http://www.google.com/search?q=youjizz-tube8.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://noytbyki.ru/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 09 Sep 2014 21:21:26 GMT Location: http://compton-rp.ru/neww_clo/tds/master.php?i=1&q=%CD%E0%E9%E4%E5%ED%EE%3A+%E4%EE%E3%EE%E2%EE%F0%E0+%EF%EE+%ED%E0%E9%EC%F3+%EA%E2%E0%F0%F2%E8%F0%FB.&v=3&host=noytbyki.ru Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | malicious |
http://compton-rp.ru/neww_clo/tds/master.php?i=1&q=%cd%e0%e9%e4%e5%ed%ee%3a+%e4%ee%e3%ee%e2%ee%f0%e0+%ef%ee+%ed%e0%e9%ec%f3+%ea%e2%e0%f0%f2%e8%f0%fb.&v=3&host=noytbyki.ru | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 09 Sep 2014 21:21:26 GMT Location: http://magic-pw.ru/?books&keyword=Íàéäåíî: äîãîâîðà ïî íàéìó êâàðòèðû. Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.4.25-1~dotdeb.1 | malicious |
http://magic-pw.ru/?books&keyword=Íàéäåíî: äîãîâîðà ïî íàéìó êâàðòèðû. | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0 Connection: close Date: Tue, 09 Sep 2014 21:21:26 GMT Pragma: no-cache Location: http://d18dhsdkjsd9.ru/?aburj Server: nginx/1.4.3 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Tue, 09 Sep 2014 21:21:26 GMT X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://d18dhsdkjsd9.ru/?aburj | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0 Connection: close Date: Tue, 09 Sep 2014 21:21:27 GMT Pragma: no-cache Location: http://stoptraff/?670d455d4b609f962c5ba287b49b5e94= Server: nginx/1.4.3 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Tue, 09 Sep 2014 21:21:26 GMT X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://stoptraff/?670d455d4b609f962c5ba287b49b5e94= | 500 Can't connect to stoptraff:80 (Bad hostname) Content-Length: 150 Content-Type: text/plain | clean |
http://stoptraff/test404page.js | 500 Can't connect to stoptraff:80 (Bad hostname) Content-Length: 150 Content-Type: text/plain | clean |