Scanned pages/files
Request | Server response | Status |
http://www.pro-naim.ru/ | 200 OK Content-Length: 22620 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<td style="padding:0px;width:50px;height:21px;"><img border="0" width="50" height="21" src="http://counter.24log.ru/counter?id=177856&t=24&st=3&r='+escape(document.referrer)+'&u='+escape(document.URL)+'&s='+((typeof(screen)=='undefined')?'':screen.width+'x'+screen.height+'x'+(screen.colorDepth?screen.colorDepth:screen.pixelDepth))+'&rnd='+Math.random()+'" alt="РейÑинг: ТоваÑÑ, ÑÑлÑги" title="Ðоказано ÑиÑло пÑоÑмоÑÑов вÑего и за ÑегоднÑ" style="margin:0;padding:0;" /></td>'); Antivirus reports:
| ||
http://www.pro-naim.ru/assets/templates/site/scripts/jquery-1.4.1.min.js | 200 OK Content-Length: 1831 Content-Type: text/javascript | clean |
http://www.pro-naim.ru/assets/templates/site/scripts/jquery.jcarousel.pack.js | 200 OK Content-Length: 1831 Content-Type: text/javascript | clean |
http://www.pro-naim.ru/assets/templates/site/scripts/jquery.jcarousel.setup.js | 200 OK Content-Length: 1831 Content-Type: text/javascript | clean |
http://www.pro-naim.ru//mc.yandex.ru/metrika/watch.js/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.pro-naim.ru/test404page.js | 404 Not Found Content-Length: 591 Content-Type: text/html | clean |
http://counter.rambler.ru/top100.jcn?2665533 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pro-naim.ru
Result:
GET / HTTP/1.1
Host: pro-naim.ru
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: pro-naim.ru
Referer: http://www.google.com/search?q=pro-naim.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pro-naim.ru
Referer: http://www.google.com/search?q=pro-naim.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pro-naim.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://pro-naim.ru/
Result: pro-naim.ru is not infected or malware details are not published yet.
Result: pro-naim.ru is not infected or malware details are not published yet.