Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.r40.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.r40.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sun, 06 Jul 2014 22:05:15 GMT Location: http://www.caribsoft-online.biz/templates/rhuk_solarflare_ii/images/index.php Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Sun, 06 Jul 2014 22:05:15 GMT | malicious |
URL: http://www.caribsoft-online.biz/templates/rhuk_solarflare_ii/images/index.php (imitation of visitor from search engine) GET /templates/rhuk_solarflare_ii/images/index.php HTTP/1.1 Host: www.caribsoft-online.biz Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 06 Jul 2014 22:05:16 GMT Location: http://avicennahealth.org/templates/beez/html/mod_poll/1/all.php Server: nginx/1.6.0 Content-Length: 0 Content-Type: text/html | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.r40.ru/ | 200 OK Content-Length: 62716 Content-Type: text/html | clean |
http://www.r40.ru/components/com_jcomments/js/jcomments-v2.3.js?v=8 | 200 OK Content-Length: 27624 Content-Type: application/javascript | clean |
http://www.r40.ru/components/com_jcomments/libraries/joomlatune/ajax.js?v=4 | 200 OK Content-Length: 4206 Content-Type: application/javascript | clean |
http://www.r40.ru/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://www.r40.ru/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://www.r40.ru/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://www.r40.ru/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://www.r40.ru/media/com_attachments/js/attachments_refresh.js | 200 OK Content-Length: 1835 Content-Type: application/javascript | clean |
http://www.r40.ru/plugins/system/jcemediabox/js/jcemediabox.js?f164ea24e8567d41a795089153b69cd9 | 200 OK Content-Length: 56983 Content-Type: application/javascript | clean |
http://www.r40.ru/media/widgetkit/js/jquery.js | 200 OK Content-Length: 94194 Content-Type: application/javascript | clean |
http://www.r40.ru/cache/widgetkit/widgetkit-c408c5f5.js | 200 OK Content-Length: 19919 Content-Type: application/javascript | clean |
http://r40.ru/modules/mod_blog_calendar/js/blog_calendar.js | 200 OK Content-Length: 3214 Content-Type: application/javascript | clean |
http://www.r40.ru/templates/yoo_revista/warp/js/warp.js | 200 OK Content-Length: 8802 Content-Type: application/javascript | clean |
http://www.r40.ru/templates/yoo_revista/warp/js/accordionmenu.js | 200 OK Content-Length: 1501 Content-Type: application/javascript | clean |
http://www.r40.ru/templates/yoo_revista/warp/js/dropdownmenu.js | 200 OK Content-Length: 6138 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=r40.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://r40.ru/
Result: r40.ru is not infected or malware details are not published yet.
Result: r40.ru is not infected or malware details are not published yet.