Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=prodamteplo.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://prodamteplo.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: prodamteplo.ru
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Thu, 15 May 2014 06:45:05 GMT
Pragma: no-cache
Server: nginx/1.5.11
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Thu, 15 May 2014 06:45:05 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 68050a1f51db0429e327b63b85b0808e=7ebgv3tn0civjluurpv4kc8aq6; path=/
Set-Cookie: virtuemart=7ebgv3tn0civjluurpv4kc8aq6
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: prodamteplo.ru
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Thu, 15 May 2014 06:45:05 GMT
Pragma: no-cache
Server: nginx/1.5.11
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Thu, 15 May 2014 06:45:05 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 68050a1f51db0429e327b63b85b0808e=7ebgv3tn0civjluurpv4kc8aq6; path=/
Set-Cookie: virtuemart=7ebgv3tn0civjluurpv4kc8aq6
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: prodamteplo.ru
Referer: http://www.google.com/search?q=prodamteplo.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: prodamteplo.ru
Referer: http://www.google.com/search?q=prodamteplo.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://prodamteplo.ru/ | 200 OK Content-Length: 112118 Content-Type: text/html | clean |
http://prodamteplo.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/default&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js&subdir[2]=/js/mootools&file[2]=mootools-release-1.11.js&subdir[3]=/js/mootools&file[3]=mooPrompt.js | 200 OK Content-Length: 64127 Content-Type: text/javascript | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://prodamteplo.ru/templates/prodamteplo/js/support.js | 200 OK Content-Length: 1837 Content-Type: application/javascript | clean |
http://prodamteplo.ru/modules/mod_virtuemart/dtree/dtree.js | 200 OK Content-Length: 14004 Content-Type: application/javascript | clean |
http://prodamteplo.ru/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/js&file[0]=wz_tooltip.js | 200 OK Content-Length: 39908 Content-Type: text/javascript | clean |
http://prodamteplo.ru/modules/share/share42.js | 200 OK Content-Length: 3992 Content-Type: application/javascript | clean |
http://prodamteplo.ru/kondicioneri/view-all-products.html | 200 OK Content-Length: 103759 Content-Type: text/html | clean |
http://prodamteplo.ru/hand-tools/view-all-products.html | 200 OK Content-Length: 123183 Content-Type: text/html | clean |
http://prodamteplo.ru/dimoxodi/view-all-products.html | 200 OK Content-Length: 97344 Content-Type: text/html | clean |
http://prodamteplo.ru/radiatori-otopleniya/view-all-products.html | 200 OK Content-Length: 108810 Content-Type: text/html | clean |
http://prodamteplo.ru/plitki-gazovie/view-all-products.html | 200 OK Content-Length: 94255 Content-Type: text/html | clean |
http://prodamteplo.ru/pechi/view-all-products.html | 200 OK Content-Length: 87653 Content-Type: text/html | clean |
http://prodamteplo.ru/power-tools/view-all-products.html | 200 OK Content-Length: 100037 Content-Type: text/html | clean |
http://prodamteplo.ru/temploventilyatori-i-sushilki-dlya-ruk/view-all-products.html | 200 OK Content-Length: 97143 Content-Type: text/html | clean |