Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://obmenzhilya.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: obmenzhilya.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: public Connection: close Date: Sun, 13 Jul 2014 09:38:10 GMT Location: http://alfsystem.com.my/includes/domit/1.php Server: nginx/1.6.0 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Tue, 12 Aug 2014 09:38:10 GMT X-Powered-By: PHP/5.2.17 X-UA-Compatible: IE=Edge,chrome=1 | malicious |
URL: http://alfsystem.com.my/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: alfsystem.com.my Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 13 Jul 2014 09:38:10 GMT Location: http://www.csra.de/includes/domit/1.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.23 | malicious |
URL: http://www.csra.de/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: www.csra.de Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 13 Jul 2014 09:38:11 GMT Location: http://jbtconsultinggroup.com/components/com_user/views/login/tmpl/1/all3.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.30 | malicious |
URL: http://jbtconsultinggroup.com/components/com_user/views/login/tmpl/1/all3.php (imitation of visitor from search engine) GET /components/com_user/views/login/tmpl/1/all3.php HTTP/1.1 Host: jbtconsultinggroup.com Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 13 Jul 2014 09:38:11 GMT Location: http://google.ru Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html | malicious |
Scanned pages/files
Request | Server response | Status |
http://obmenzhilya.ru/ | 200 OK Content-Length: 38025 Content-Type: text/html | clean |
http://obmenzhilya.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/templates/jblank/js/scripts.js?1361273189 | 200 OK Content-Length: 894 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/modules/mod_ea_properties/assets/jquery.core.pack.js | 200 OK Content-Length: 85961 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/modules/mod_ea_properties/assets/jquery.easing.1.3.js | 200 OK Content-Length: 8301 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/modules/mod_ea_properties/assets/jquery.jcarousel.min.js | 200 OK Content-Length: 15666 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/modules/mod_ea_properties/assets/mod_easlideshow12.js | 200 OK Content-Length: 7829 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/o-nas | 200 OK Content-Length: 34037 Content-Type: text/html | clean |
http://obmenzhilya.ru/uslugi | 200 OK Content-Length: 28742 Content-Type: text/html | clean |
http://obmenzhilya.ru/novosti | 200 OK Content-Length: 32977 Content-Type: text/html | clean |
http://obmenzhilya.ru/kontakty | 200 OK Content-Length: 30058 Content-Type: text/html | clean |
http://obmenzhilya.ru/media/system/js/validate.js | 200 OK Content-Length: 4246 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/katalog-nedvizhimosti | 200 OK Content-Length: 66731 Content-Type: text/html | clean |
http://obmenzhilya.ru/media/system/js/modal.js | 200 OK Content-Length: 10588 Content-Type: application/x-javascript | clean |
http://obmenzhilya.ru/kupit-prodat-nedvizhimost | 200 OK Content-Length: 29507 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=obmenzhilya.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://obmenzhilya.ru/
Result: obmenzhilya.ru is not infected or malware details are not published yet.
Result: obmenzhilya.ru is not infected or malware details are not published yet.