Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pantalons.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.pantalons.ru/ | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: close Date: Fri, 05 Sep 2014 20:16:31 GMT Location: http://pantalons.ru/ Server: uServ/3.2.2 Content-Type: application/octet-stream | clean |
http://pantalons.ru/ | 200 OK Content-Length: 36660 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mobapeople.com <script type='text/javascript'> function resizeFrame(){ var WX,WY,BX,BY; var o=document.getElementById("iFaAGZ9q"),t,d; if (!o) return; d=o.contentDocument; if (!(t=d.getElementById("wrapperXaAGZ9q"))) WX=0; else WX=t.value; if (!(t=d.getElementById("wrapperYaAGZ9q"))) WY=0; else WY=t.value; if (!(t=d.getElementById("bannerXaAGZ9q"))) BX=0; else BX=t.value; if (!(t=d.getElementById("banne ...[4461 bytes skipped]... | ||
http://senkevich-vk.net/vk/2941charset | 200 OK Content-Length: 136 Content-Type: text/html | clean |
http://slsdlkgjlksdg.net/vk_code/samcode.php?avast=2941&charset=utf8 | 200 OK Content-Length: 15676 Content-Type: text/javascript | clean |
http://senkevich-vk.net/test404page.js | 404 Not Found Content-Length: 294 Content-Type: text/html | clean |
http://mobapeople.com/963qlrfrdpb7mn4ze8i1hw1bl6otjsd1 | 200 OK Content-Length: 8006 Content-Type: text/javascript | clean |
http://s83.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s83.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 22618 Content-Type: text/javascript | clean |
http://s83.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228554 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: pics.smotri.com jQuery.ajaxSettings.traditional=true; /* * jQuery Form Plugin * version: 3.17 (25-SEP-2012) * @requires jQuery v1.3.2 or later * * Examples and documentation at: http://malsup.com/jquery/form/ * Project repository: https://github.com/malsup/form * Dual licensed under the MIT and GPL licenses: * http://malsup.github.com/mit-license.txt * http://malsup.github.com/gpl-license-v2.txt */ (funct ...[3752 bytes skipped]... | ||
http://qwertypay.com/any/shop_tovar/2/qwertypaycom.js?aff=blakmore&color=DCDCDC&blocks=7&width=180 | 200 OK Content-Length: 238 Content-Type: text/html | clean |
http://geoloc18.whoaremyfriends.net/private/geocounter.js?compte=148731178909 | 200 OK Content-Length: 11144 Content-Type: text/html | clean |
http://domine.pp.ua/cc/12 | 200 OK Content-Length: 371 Content-Type: text/html | clean |
http://domine.pp.ua/id/ | HTTP/1.1 302 Found Connection: close Date: Fri, 05 Sep 2014 20:16:26 GMT Location: / Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.5.9-1ubuntu4.3 | clean |
http://domine.pp.ua/ | 200 OK Content-Length: 29664 Content-Type: text/html | clean |
http://domine.pp.ua/template/cron/js/cc.js | 200 OK Content-Length: 5203 Content-Type: application/javascript | clean |
http://domine.pp.ua/template/cron/js/jquery.js | 200 OK Content-Length: 216840 Content-Type: application/javascript | clean |
http://101widgets.com/07040001/130/93 | 200 OK Content-Length: 255 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pantalons.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Fri, 05 Sep 2014 20:16:31 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 0pantalonsuCoz=; path=/; expires=Wed, 05-Sep-2012 20:16:32 GMT; domain=.pantalons.ru;
Set-Cookie: 0pantalonsuzll=1409948192; path=/; expires=Sat, 05-Sep-2015 20:16:32 GMT; domain=.pantalons.ru;
GET / HTTP/1.1
Host: pantalons.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Fri, 05 Sep 2014 20:16:31 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 0pantalonsuCoz=; path=/; expires=Wed, 05-Sep-2012 20:16:32 GMT; domain=.pantalons.ru;
Set-Cookie: 0pantalonsuzll=1409948192; path=/; expires=Sat, 05-Sep-2015 20:16:32 GMT; domain=.pantalons.ru;
Second query (visit from search engine):
GET / HTTP/1.1
Host: pantalons.ru
Referer: http://www.google.com/search?q=pantalons.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pantalons.ru
Referer: http://www.google.com/search?q=pantalons.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.