Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=oics.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: oics.ru
Result:
GET / HTTP/1.1
Host: oics.ru
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: oics.ru
Referer: http://www.google.com/search?q=oics.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: oics.ru
Referer: http://www.google.com/search?q=oics.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.oics.ru/ | 200 OK Content-Length: 29751 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://www.oics.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Doics%26ai%3DYK1bQ4OnW6CRICloMjW19xbfaRVjzv6Kag--c602ANydpUSYuHfem9KD9JBrkK60s5h7B5Yh1jIbmNj_1PiboJU0DuMMXuhP6jjyh5kwFp6TUoDw78f1K1M8t83c36T0mOUfKiLhmu0jVJFJhg-DA2jqDa2MLxrV8OwLsynQK1fVJugRSYr55zb82NvIoDqYmQ3FN0s8qgZ4OyRev-ET6n22mxSXpyk8K0RHc0SeyPxh5Dmn2Sx <span>...743 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Thu, 25 Dec 2014 18:41:59 GMT Pragma: no-cache Location: http://www.oics.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Doics%26ai%3DYK1bQ4OnW6CRICloMjW19xbfaRVjzv6Kag--c602ANydpUSYuHfem9KD9JBrkK60s5h7B5Yh1jIbmNj_1PiboJU0DuMMXuhP6jjyh5kwFp6TUoDw78f1K1M8t83c36T0mOUfKiLhmu0jVJFJhg-DA2jqDa2MLxrV8OwLsynQK1fVJugRSYr55zb82NvIoDqYmQ3FN0s8qgZ4OyRev-ET6n22mxSXpyk8K0RHc0SeyPxh5Dmn2Sx01L7l5n0kZ4pLyXZuYLZZiULyWCMswvmg0n75c6EuMTO954E3wV14ajRdGJ9ZknHUZvMcXy6sLtKKdGqm-V6S5eo9wv__7cYc5dSCL_8nn5vldC9lgMeRGEpgaKsuZRb1stxkbJCS052V8H1SrdeVQPLEGbErtv8hHUJr862opvi-ZaONQNZbhRMve0Zu39zw0w%26version%3D1.2&v=ODU0OGM4NTI3YjAxNmFjZTU5NWE2MjZlNzU2YzRlMGEJMQl3d3cub2ljcy5ydTU0OWM1YTc2MGJiNGQwLjA1MTE5MzIzCXd3dy5vaWNzLnJ1NTQ5YzVhNzYwYmMxOTAuNzE4MTczNTgJMTQxOTUzMjkxOAlhZF83XzA=&l=NAlBRFMJOGY1NmJkNmMxMDJkYWZmYTM2ZTUxOWY4Y2E1MWI3OGUJMC4wMDAzCTAJMTMJCTMxCTIJMQkwCTBjMDBjNzljYzZhMTBlYTdjYTNlYTc4Mzg5MmJlYTkwCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQk5MDM4NTkyMwljCTEzNTk0OTE1CQlvaWNzCTEwMDYJNwkyMAkyNQkxNDE5NTMyOTE4CTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQl3d3cub2ljcy5ydTU0OWM1YTc2MGJiNGQwLjA1MTE5MzIzCTAuMDAwNgkwCQkxCTAJMTIzNQk3Nzg2MzE3OAk%3D Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Thu, 25 Dec 2014 18:41:59 GMT X-Cache: MISS from 931531 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://www.oics.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3doics%26ai%3dyk1bq4onw6criclomjw19xbfarvjzv6kag--c602anydpusyuhfem9kd9jbrkk60s5h7b5yh1jibmnj_1piboju0dummxuhp6jjyh5kwfp6tuodw78f1k1m8t83c36t0moufkilhmu0jvjfjhg-da2jqda2mlxrv8owlsynqk1fvjugrsyr55zb82nviodqymq3fn0s8qgz4oyrev-et6n22mxsxpyk8k0rhc0seypxh5dmn2sx <span>...743 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://www.oics.ru/test404page.js | 200 OK Content-Length: 22870 Content-Type: text/html | clean |
http://www.oics.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Doics%26ai%3DLJ1akTD7v39DvT4iga_wWogpcf8VRpIA6jmLEHg_u5trRcv-Nb-fDNPcbOUWYCv0Xx-QfNV8Eapy2H5P2FaU12Y7I66OjF8_ULZLf7KWp7h_BxkyybiqFjImMLCnwNQVUIryD0q5TdAyuP-3KY4mpcRGb7-bIt0G69t4pK2ipPvfHZF0lTi8lbOtllH1LMnEpPABC5fuW7-AzdQQ6TvXmxRBMxAXJqw4BcJ6hTKGW0hILf030mU <span>...743 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Thu, 25 Dec 2014 18:42:00 GMT Pragma: no-cache Location: http://www.oics.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Doics%26ai%3DLJ1akTD7v39DvT4iga_wWogpcf8VRpIA6jmLEHg_u5trRcv-Nb-fDNPcbOUWYCv0Xx-QfNV8Eapy2H5P2FaU12Y7I66OjF8_ULZLf7KWp7h_BxkyybiqFjImMLCnwNQVUIryD0q5TdAyuP-3KY4mpcRGb7-bIt0G69t4pK2ipPvfHZF0lTi8lbOtllH1LMnEpPABC5fuW7-AzdQQ6TvXmxRBMxAXJqw4BcJ6hTKGW0hILf030mUil3f7Q5IqwuPjcq_L7pgrygEkauBm175rTNgmp2Ymj-JL0H8hN3cNlZZNI2_HIUucNZPQzLMakqOj0YKWRitCstYN82V1KOd-d82j4C3-ZQnC0Ut0h3cQMM5PFyQvAWeuN23YH02f55_VFaTaVI8WyIxeZHMFNhW7BfKWq5kG2Ik29LjmLmw-9ubg6tjt90CmlQ%26version%3D1.2&v=Yzc5NTIyYTlmOWM2ZDExZmQ1NTcxNzZlMTJkNmM0MTQJMQl3d3cub2ljcy5ydTU0OWM1YTc2MGJiNGQwLjA1MTE5MzIzCXd3dy5vaWNzLnJ1NTQ5YzVhNzYwYmMxOTAuNzE4MTczNTgJMTQxOTUzMjkxOAlhZF83XzE=&l=NAlBRFMJNWEwOTBiMjgwZjIyZTc5MTdhNDk5NTJkM2M0NmM3Y2QJMC4wMDAzCTAJMTMJCTMxCTIJMgkwCTk0ZjJmMmYyYTc5YjM5YTQ3ODQzMTlhZjdmNmJiNWY4CWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQk5MDM4NTkyMwljCTEzNTk0OTE1CQlvaWNzCTEwMDYJNwkyMAkyNQkxNDE5NTMyOTE4CTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQl3d3cub2ljcy5ydTU0OWM1YTc2MGJiNGQwLjA1MTE5MzIzCTAuMDAwNgkwCQkxCTAJMTIzNQk3Nzg2MzE3OAk%3D Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Thu, 25 Dec 2014 18:42:00 GMT X-Cache: MISS from 001415 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://www.oics.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3doics%26ai%3dlj1aktd7v39dvt4iga_wwogpcf8vrpia6jmlehg_u5trrcv-nb-fdnpcbouwycv0xx-qfnv8eapy2h5p2fau12y7i66ojf8_ulzlf7kwp7h_bxkyybiqfjimmlcnwnqvuiryd0q5tdayup-3ky4mpcrgb7-bit0g69t4pk2ippvfhzf0lti8lbotllh1lmneppabc5fuw7-azdqq6tvxmxrbmxaxjqw4bcj6htkgw0hilf030mu <span>...743 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |