New scan:

Malware Scanner report for orator39.ru

Malicious/Suspicious/Total urls checked
0/0/2
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/2/2
2 suspicious iframes found. See details below
Deface / Content modification
Found
Probably the website is defaced. The following signature was found:

HackeD By Hell Child  (4 websites defaced)

See details below

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://orator39.ru/
200 OK
Content-Length: 13736
Content-Type: text/html
suspicious
Hidden iFrame found.
size: 0x0     
src: http://www.youtube.com/v/aontb-iq4tm?version=3&autoplay=1

<iframe src="http://www.youtube.com/v/aontb-iq4tm?version=3&amp;autoplay=1" frameborder="0" height="0" width="0">

Deface/Content modification. The following signature was found: HackeD By Hell Child


<html><head>
<title>HackeD By Hell Child</title>



<STYLE type=text/css>BODY {

}
</STYLE>




<BGSOUND src="">
<META content="anahtar kelimelerinizi buraya girin" name=keywords>
<META content="tanıtıcı kelimelerinizi buraya girin" name=description>
<META content="isminizi buraya girin" name=author>
<META content="Mynet, mySite HTML EditörÃ
...[15703 bytes skipped]...


http://orator39.ru/test404page.js
200 OK
Content-Length: 13736
Content-Type: text/html
suspicious
Hidden iFrame found.
size: 0x0     
src: http://www.youtube.com/v/aontb-iq4tm?version=3&autoplay=1

<iframe src="http://www.youtube.com/v/aontb-iq4tm?version=3&amp;autoplay=1" frameborder="0" height="0" width="0">


Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: orator39.ru

Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 22 Mar 2015 10:38:12 GMT
Server: nginx/1.6.2
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: orator39.ru
Referer: http://www.google.com/search?q=orator39.ru

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=orator39.ru

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://orator39.ru/

Result: orator39.ru is not infected or malware details are not published yet.