Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=reltime2012.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://reltime2012.ru/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 12:35:56 GMT Location: http://www.reltime2012.ru/ Server: nginx/1.4.1 Content-Length: 314 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.reltime2012.ru/ | 200 OK Content-Length: 159982 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>Ðнлайн заÑвки на кÑÐµÐ´Ð¸Ñ Ð² ÐаÑем гоÑоде</title> <meta name="keywords" content="Ðнлайн заÑвки на кÑÐµÐ´Ð¸Ñ ...[4460 bytes skipped]... | ||
http://www.reltime2012.ru/kredityi.html | 200 OK Content-Length: 105415 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>ÐоÑÑебиÑелÑÑкий и кÑÐµÐ´Ð¸Ñ Ð½Ð°Ð»Ð¸ÑнÑми. Ðнлайн-заÑвка в ÐаÑем гоÑоде</title> <meta name="keywords" cont ...[4459 bytes skipped]... | ||
http://www.reltime2012.ru/kreditnyie-kartyi.html | 200 OK Content-Length: 103761 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>ÐÑоÑмление онлайн заÑвки на кÑедиÑнÑÑ ÐºÐ°ÑÑÑ Ð² ÐаÑем гоÑоде</title> <meta name="keywords" content="ÐÑе ...[4447 bytes skipped]... | ||
http://www.reltime2012.ru/bizneskredit.html | 200 OK Content-Length: 95651 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>ÐÑоÑмление онлайн-заÑвки на кÑÐµÐ´Ð¸Ñ Ð´Ð»Ñ Ð±Ð¸Ð·Ð½ÐµÑа в ÐаÑем гоÑоде</title> <meta name="keywords" content="Ð ...[4459 bytes skipped]... | ||
http://www.reltime2012.ru/ipoteka.html | 200 OK Content-Length: 99747 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>ÐпоÑека в ÐаÑем гоÑоде</title> <meta name="keywords" content="ÐпоÑека в ÐаÑем гоÑоде" /> <meta name="desc ...[4510 bytes skipped]... | ||
http://www.reltime2012.ru/avtokredityi.html | 200 OK Content-Length: 94363 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>Ðнлайн-заÑвка на авÑокÑÐµÐ´Ð¸Ñ Ð² ÐаÑем гоÑоде</title> <meta name="keywords" content="РнаÑÑоÑÑее вÑÐµÐ¼Ñ Ð°Ð ...[4379 bytes skipped]... | ||
http://www.reltime2012.ru/mikrokredityi.html | 200 OK Content-Length: 110700 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aleksandrov.reltime2012.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <title>Ðнлайн-заÑвка на микÑокÑÐµÐ´Ð¸Ñ Ð² ÐаÑем гоÑоде</title> <meta name="keywords" content="ÐаÑвка на микÑокÑе ...[4462 bytes skipped]... | ||
http://www.reltime2012.ru/send/mili_m | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 25 Dec 2014 12:35:58 GMT Pragma: no-cache Location: http://pxl.leads.su/click/f7c5d5f96f1ef68a0fc32b7c73078292?&aff_sub=SU37_www&aff_sub2=%2Fsend%2Fmili_m&aff_sub4=96685&aff_sub5=x&aff_sub3=x Server: nginx/1.4.1 Content-Length: 3 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=pg8p4abteufn8gjgscn9iqq136; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://pxl.leads.su/click/f7c5d5f96f1ef68a0fc32b7c73078292?&aff_sub=su37_www&aff_sub2=%2fsend%2fmili_m&aff_sub4=96685&aff_sub5=x&aff_sub3=x | HTTP/1.1 302 OK Cache-Control: no-cache, no-store, must-revalidate Connection: close Date: Thu, 25 Dec 2014 12:35:58 GMT Pragma: no-cache Location: https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r Server: nginx Content-Type: text/html P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: session-click-417=LtWyGWJy0OVNC5pI9sXawNkt67Py07TN29cWYadVjK1bBVSkm%2BsspsbVinxvWRCaQP0k05gnZ3IXz%2BlOfp%2BZiGm3%2BbGikFhgxX5HNKqhEqxJHah38mieU9rGh3oDMDqSCSdT0domHfbspPyEyNWFiXVF00CDLgTneuIUMJlrrkgNzBi1%2FTShJvTad3bEBPvV1Z3xny7vnZAYOxCRG4hX%2BcIWpdmq6cGaKLKjg%2B2J2NNlrLwbj%2BBqcx0vxhvBv9LEPFMKqecJzbjjKPou6MgSMQ%3D%3D; expires=Sat, 24-Jan-2015 12:35:58 GMT; path=/; httponly | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r/ | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r//mili-st.cdn.ngenix.net/assets/land1/web-17ca67be.js/ | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r//www.googleadservices.com/pagead/conversion.js/ | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r/mili | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r/kak-eto-rabotaet | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r/faq | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r/stati | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
https://mili.ru?leads-su=bb2f91c07e06d12343034c68b4cebe5f&utm_source=leadssu&utm_medium=cpa&utm_term=988&utm_campaign=120r/kontakty | 200 OK Content-Length: 12833 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: reltime2012.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 12:35:56 GMT
Location: http://www.reltime2012.ru/
Server: nginx/1.4.1
Content-Length: 314
Content-Type: text/html; charset=iso-8859-1
...314 bytes of data.
GET / HTTP/1.1
Host: reltime2012.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 12:35:56 GMT
Location: http://www.reltime2012.ru/
Server: nginx/1.4.1
Content-Length: 314
Content-Type: text/html; charset=iso-8859-1
...314 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: reltime2012.ru
Referer: http://www.google.com/search?q=reltime2012.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: reltime2012.ru
Referer: http://www.google.com/search?q=reltime2012.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.