Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=postel5.com.ua
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://postel5.com.ua/ | 200 OK Content-Length: 23046 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html dir="ltr" lang="ru-RU" xmlns:og="http://opengraphprotocol.org/schema/"> <head> <title>ÐÑпиÑÑ ÐоÑÑелÑное ÐелÑе ТÐÐ ÐпÑом Ð¾Ñ ÐÑоизводиÑÐµÐ»Ñ Ð£ÐºÑаина Ðиев</title> <!-- Place this tag after the last +1 button tag. --> <script type="text/javascript"> window.___gcfg = {lang: 'ru'}; ...[4312 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://userapi.com/js/api/openapi.js?52 | 200 OK Content-Length: 64063 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js?ver=3.4.2 | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://postel5.com.ua/wp-content/plugins/simple-countdown-timer/jquery.countdown.min.js?ver=3.4.2 | 200 OK Content-Length: 1596 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15624 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/plugins/nextgen-gallery/shutter/shutter-reloaded.js?ver=1.3.3 | 200 OK Content-Length: 9986 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/plugins/nextgen-gallery/js/jquery.cycle.all.min.js?ver=2.9995 | 200 OK Content-Length: 26590 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/plugins/nextgen-gallery/js/ngg.slideshow.min.js?ver=1.06 | 200 OK Content-Length: 1791 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/themes/Newtheme/js/modal-window.misha.js | 200 OK Content-Length: 1084 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.18 | 200 OK Content-Length: 15021 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.3.1 | 200 OK Content-Length: 6859 Content-Type: application/x-javascript | clean |
http://postel5.com.ua/detskoe-postelnoe-bele/ | 200 OK Content-Length: 32349 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html dir="ltr" lang="ru-RU" xmlns:og="http://opengraphprotocol.org/schema/"> <head> <title>ÐеÑÑкое поÑÑелÑное белÑе</title> <!-- Place this tag after the last +1 button tag. --> <script type="text/javascript"> window.___gcfg = {lang: 'ru'}; (function() { var po = document.createElement('script' ...[4312 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://postel5.com.ua/polutornoe-postelnoe-bele/ | 200 OK Content-Length: 64468 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html dir="ltr" lang="ru-RU" xmlns:og="http://opengraphprotocol.org/schema/"> <head> <title>ÐолÑÑоÑное поÑÑелÑное белÑе</title> <!-- Place this tag after the last +1 button tag. --> <script type="text/javascript"> window.___gcfg = {lang: 'ru'}; (function() { var po = document.createElement('s ...[4312 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://postel5.com.ua/dvuspalnoe-postelnoe-bele/ | 200 OK Content-Length: 69306 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html dir="ltr" lang="ru-RU" xmlns:og="http://opengraphprotocol.org/schema/"> <head> <title>ÐвÑÑпалÑное поÑÑелÑное белÑе</title> <!-- Place this tag after the last +1 button tag. --> <script type="text/javascript"> window.___gcfg = {lang: 'ru'}; (function() { var po = document.createElement( ...[4309 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://postel5.com.ua/postelnoe-bele-evrostandarta/ | 200 OK Content-Length: 69434 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html dir="ltr" lang="ru-RU" xmlns:og="http://opengraphprotocol.org/schema/"> <head> <title>ÐоÑÑелÑное белÑе ÐвÑоÑÑандаÑÑа</title> <!-- Place this tag after the last +1 button tag. --> <script type="text/javascript"> window.___gcfg = {lang: 'ru'}; (function() { var po = document.createElem ...[4302 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: postel5.com.ua
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Mar 2015 12:11:10 GMT
Server: nginx/1.2.1
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://postel5.com.ua/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: postel5.com.ua
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Mar 2015 12:11:10 GMT
Server: nginx/1.2.1
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://postel5.com.ua/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: postel5.com.ua
Referer: http://www.google.com/search?q=postel5.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: postel5.com.ua
Referer: http://www.google.com/search?q=postel5.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.