New scan:

Malware Scanner report for portal-ug.ru

Malicious/Suspicious/Total urls checked
0/5/31
5 pages have suspicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "portal-ug.ru" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=portal-ug.ru

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://portal-ug.ru/
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 26 Feb 2015 09:33:16 GMT
Location: http://www.portal-yug.ru/
Server: nginx/0.8.53
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
clean
http://www.portal-yug.ru/
200 OK
Content-Length: 40599
Content-Type: text/html
suspicious
Suspicious code found

<div class="scrollable">
<div class="items">
<div>
<a rel="nofollow" href="http://www.1c.ru/" target="_blank" style="width: 110px !important; display: inline-block; overflow-y: hidden;"><img src="/upload/iblock/f30/f30905380d50b4d45e97e0777cefa8cd.jpg" alt="1С" /></a>
<a rel="nofollow" href="http://www.microsoft.com/ru-ru/default.aspx" target="_blank" style="width: 110px !important; display: inline-block; overflow-y: hidden;"><img src
... 3448 bytes are skipped ...
110px !important; display: inline-block; overflow-y: hidden;"><img src="/upload/iblock/3e9/3e9a29abb96b2cde3bd003cd08363cbe.png" alt="Intel" /></a>
<a rel="nofollow" href="http://www.cleverence.ru" target="_blank" style="width: 110px !important; display: inline-block; overflow-y: hidden;"><img src="/upload/resize_cache/iblock/937/110_1000_1/9374ff443e4d1b976a6bcd52063c7570.png" alt="Клеверенс" /></a>
</div>
</div>
</div>

http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/
404 Not Found
Content-Length: 36286
Content-Type: text/html
suspicious
Suspicious code found

<fieldset class="searchForm">
<form action="/search/">
<input type="text" class="textbox" name="q" value="поиск по сайту" onfocus="if(this.value=='поиск по сайту'){this.value='';this.style.color='#000';}" onblur="if(this.value==''){this.value='поиск по сайту';this.style.color='#4e4e4e';}"/>
<input type="submit" value="" class="btnSearch" />
</form><
...[875 bytes skipped]...

http://www.portal-yug.ru/bitrix/js/main/core/core.js?140385452480568
200 OK
Content-Length: 80568
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/bitrix/js/main/core/core_ajax.js?140385452430663
200 OK
Content-Length: 30663
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/bitrix/js/main/session.js?14000697002880
200 OK
Content-Length: 2880
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/bitrix/js/main/jquery/jquery-1.8.3.min.js?139582877493636
200 OK
Content-Length: 93636
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/bitrix/js/phpsolutions.backtotop/backtotop.js?14218253103165
200 OK
Content-Length: 3165
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/js/jquery-1.7.1.min.js?134218394993868
200 OK
Content-Length: 93868
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/js/jquery.tools.min.js?1342183949118700
200 OK
Content-Length: 118700
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/js/mscoder.js?13738965231017
200 OK
Content-Length: 1017
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/js/jquery.fancybox-1.3.4.pack.js?134218394915624
200 OK
Content-Length: 15624
Content-Type: application/x-javascript
clean
http://www.portal-yug.ru/sitemap/
200 OK
Content-Length: 36452
Content-Type: text/html
suspicious
Suspicious code found

<fieldset class="searchForm">
<form action="/search/">
<input type="text" class="textbox" name="q" value="поиск по сайту" onfocus="if(this.value=='поиск по сайту'){this.value='';this.style.color='#000';}" onblur="if(this.value==''){this.value='поиск по сайту';this.style.color='#4e4e4e';}"/>
<input type="submit" value="" class="btnSearch" />
</form><
...[875 bytes skipped]...

http://www.portal-yug.ru/sitemap/?CITY=30
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:21 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/sitemap/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/sitemap/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/sitemap/
Set-Cookie: PHPSESSID=02007c92c14a1b09f073f65400add347; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:21 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/test404page.js
404 Not Found
Content-Length: 36286
Content-Type: text/html
suspicious
Suspicious code found

<fieldset class="searchForm">
<form action="/search/">
<input type="text" class="textbox" name="q" value="поиск по сайту" onfocus="if(this.value=='поиск по сайту'){this.value='';this.style.color='#000';}" onblur="if(this.value==''){this.value='поиск по сайту';this.style.color='#4e4e4e';}"/>
<input type="submit" value="" class="btnSearch" />
</form><
...[875 bytes skipped]...

http://www.portal-yug.ru/?CITY=30
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:21 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/
Set-Cookie: PHPSESSID=ecf66516d59471a80c6e29557a5fe21d; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:21 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/?CITY=31
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:21 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/
Set-Cookie: PHPSESSID=1b4e8bba6b9ab14ae9779e4fd0a18a84; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=31; expires=Fri, 27-Feb-2015 09:33:21 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/?CITY=8594
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:21 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/
Set-Cookie: PHPSESSID=f0a7a46c1e2e5529706d44969bf182b8; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=8594; expires=Fri, 27-Feb-2015 09:33:21 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/?CITY=25635
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:22 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/
Set-Cookie: PHPSESSID=5f98579181bfd1e30bdda9a62fa10696; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=25635; expires=Fri, 27-Feb-2015 09:33:22 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/sitemap/?CITY=31
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:22 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/sitemap/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/sitemap/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/sitemap/
Set-Cookie: PHPSESSID=335ed9457ecd2eefa18ad4b604e19bcc; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=31; expires=Fri, 27-Feb-2015 09:33:22 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/sitemap/?CITY=8594
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:22 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/sitemap/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/sitemap/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/sitemap/
Set-Cookie: PHPSESSID=a94fce309921d2d60309d40165a91f0c; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=8594; expires=Fri, 27-Feb-2015 09:33:22 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/sitemap/?CITY=25635
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:22 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/sitemap/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/sitemap/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/sitemap/
Set-Cookie: PHPSESSID=8152c0626eae316cb37c628482e77e2d; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=25635; expires=Fri, 27-Feb-2015 09:33:22 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=30/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:22 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=450168892d7ad6f98720c43f1e55f59d; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:22 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
404 Not Found
Content-Length: 36286
Content-Type: text/html
suspicious
Suspicious code found

<fieldset class="searchForm">
<form action="/search/">
<input type="text" class="textbox" name="q" value="поиск по сайту" onfocus="if(this.value=='поиск по сайту'){this.value='';this.style.color='#000';}" onblur="if(this.value==''){this.value='поиск по сайту';this.style.color='#4e4e4e';}"/>
<input type="submit" value="" class="btnSearch" />
</form><
...[875 bytes skipped]...

http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/?CITY=30
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:23 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=ae12454bfde4c14c6f7a6c4e197b311e; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:23 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=30/?CITY=31/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:23 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=27af81b546f807dff65d9c9c3f78bf9c; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:23 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=30/?CITY=8594/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:23 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=aa97d4b95f0058bd99c4695602037d7c; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:23 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=30/?CITY=25635/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:23 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=45b04c2a2a7f60476b5dbca568c27bf2; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=30; expires=Fri, 27-Feb-2015 09:33:23 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=31/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:23 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=fe6a109debc2aaf7b400b59fdb58883d; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=31; expires=Fri, 27-Feb-2015 09:33:23 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=8594/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:23 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=eef6ebaf41f2a1fe99ac37433e14daed; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=8594; expires=Fri, 27-Feb-2015 09:33:23 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean
http://www.portal-yug.ru//mc.yandex.ru/metrika/watch.js/?CITY=25635/
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 09:33:24 GMT
Pragma: no-cache
Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Server: nginx/0.8.53
Content-Length: 0
Content-Location: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
P3P: policyref="/bitrix/p3p.xml", CP="NON DSP COR CUR ADM DEV PSA PSD OUR UNR BUS UNI COM NAV INT DEM STA"
Request-URI: http://www.portal-yug.ru/mc.yandex.ru/metrika/watch.js/
Set-Cookie: PHPSESSID=cbd9a5c2091f37928cb4210dde904782; path=/; HttpOnly
Set-Cookie: BITRIX_SM_CITY_ID=25635; expires=Fri, 27-Feb-2015 09:33:24 GMT; path=/
X-Powered-By: PHP/5.3.18
X-Powered-CMS: Bitrix Site Manager (5416ee13f2e6faa3b467865478416541)
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: portal-ug.ru

Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 26 Feb 2015 09:33:16 GMT
Location: http://www.portal-yug.ru/
Server: nginx/0.8.53
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1

...233 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: portal-ug.ru
Referer: http://www.google.com/search?q=portal-ug.ru

Result:
The result is similar to the first query. There are no suspicious redirects found.