Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://pharmlex.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: pharmlex.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Thu, 11 Sep 2014 02:39:30 GMT Location: http://alfsystem.com.my/includes/domit/1.php Server: nginx/1.4.4 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.17-pl0-gentoo | malicious |
URL: http://alfsystem.com.my/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: alfsystem.com.my Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 11 Sep 2014 02:39:30 GMT Location: http://www.csra.de/includes/domit/1.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.23 | malicious |
Scanned pages/files
Request | Server response | Status |
http://pharmlex.ru/ | 200 OK Content-Length: 24011 Content-Type: text/html | clean |
http://pharmlex.ru/media/system/js/caption.js | 200 OK Content-Length: 1994 Content-Type: application/x-javascript | clean |
http://pharmlex.ru/templates/ja_purity/js/ja.script.js | 200 OK Content-Length: 3238 Content-Type: application/x-javascript | clean |
http://api-maps.yandex.ru/1.1/?key=AJBvqE4BAAAA5c7LdwIAGaaxBoDHpH1VwgCAIU_Qwr47tbQAAAAAAAAAAACTL5Vq1o6-lfd1z0y1PiY9hspSQw==&modules=pmap&wizard=constructor | 200 OK Content-Length: 5824 Content-Type: text/javascript | clean |
http://pharmlex.ru/index.php/component/user/reset | 200 OK Content-Length: 18931 Content-Type: text/html | clean |
http://pharmlex.ru/media/system/js/validate.js | 200 OK Content-Length: 4277 Content-Type: application/x-javascript | clean |
http://pharmlex.ru/index.php/category?page=shop.registration | 200 OK Content-Length: 30395 Content-Type: text/html | clean |
http://pharmlex.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/default&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js | 200 OK Content-Length: 6182 Content-Type: text/javascript | clean |
http://pharmlex.ru/includes/js/mambojavascript.js | 200 OK Content-Length: 14658 Content-Type: application/x-javascript | clean |
http://pharmlex.ru/index.php?option=com_virtuemart | 200 OK Content-Length: 23970 Content-Type: text/html | clean |
http://pharmlex.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/default&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js&subdir[2]=/js/mootools&file[2]=mootools-release-1.11.js&subdir[3]=/js/mootools&file[3]=mooPrompt.js | 200 OK Content-Length: 56473 Content-Type: text/javascript | clean |
http://pharmlex.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/js&file[0]=wz_tooltip.js | 200 OK Content-Length: 36789 Content-Type: text/javascript | clean |
http://pharmlex.ru/index.php/component/content/article/53 | 200 OK Content-Length: 20334 Content-Type: text/html | clean |
http://pharmlex.ru/index.php/component/content/article/54 | 200 OK Content-Length: 21602 Content-Type: text/html | clean |
http://pharmlex.ru/index.php/category?page=shop.browse&category_id=1 | 200 OK Content-Length: 23419 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pharmlex.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://pharmlex.ru/
Result: pharmlex.ru is not infected or malware details are not published yet.
Result: pharmlex.ru is not infected or malware details are not published yet.