Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sansaratov.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://sansaratov.ru/ | 200 OK Content-Length: 28737 Content-Type: text/html | suspicious |
Suspicious code found <span id="openstat2151086"></span><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://counter.rambler.ru/top100.jcn?2360790 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12798 Content-Type: application/javascript | clean |
http://sansaratov.ru/news.htm | 200 OK Content-Length: 40265 Content-Type: text/html | suspicious |
Suspicious code found </font><span id="openstat2151086"></span><font face="Georgia"><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://userapi.com/js/api/openapi.js?26 | 200 OK Content-Length: 64063 Content-Type: application/x-javascript | clean |
http://sansaratov.ru/index.htm | 200 OK Content-Length: 28737 Content-Type: text/html | suspicious |
Suspicious code found <span id="openstat2151086"></span><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://sansaratov.ru/gallery.htm | 200 OK Content-Length: 23427 Content-Type: text/html | suspicious |
Suspicious code found <span id="openstat2151086"></span><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://api-maps.yandex.ru/1.1/index.xml?key=AArUGE0BAAAAJGTICQIAgB0kRMyZ-ZUMmw5Uc4p8dxyAnKsAAAAAAAAAAAAJriE2PHGUwGFgmHtwEtyoq5aBJQ==&modules=plainstyle | 200 OK Content-Length: 5956 Content-Type: text/javascript | clean |
http://sansaratov.ru/highslide/highslide-with-gallery.js | 200 OK Content-Length: 74754 Content-Type: application/x-javascript | clean |
http://sansaratov.ru/video.htm | 200 OK Content-Length: 24444 Content-Type: text/html | suspicious |
Suspicious code found </font><span id="openstat2151086"></span><font face="Georgia"><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://sansaratov.ru/highslide/highslide-with-html.js | 200 OK Content-Length: 69976 Content-Type: application/x-javascript | clean |
http://sansaratov.ru/download.htm | 200 OK Content-Length: 23551 Content-Type: text/html | suspicious |
Suspicious code found <span id="openstat2151086"></span><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://sansaratov.ru/contacts.htm | 200 OK Content-Length: 22664 Content-Type: text/html | suspicious |
Suspicious code found </font><span id="openstat2151086"></span><font face="Georgia"><script type="text/javascript"> var openstat = { counter: 2151086, image: 5046, next: openstat }; (function(d, t, p) { var j = d.createElement(t); j.async = true; j.type = "text/javascript"; j.src = ("https:" == p ? "https:" : "http:") + "//openstat.net/cnt.js"; var s = d.getElementsByTagName(t)[0]; s.parentNode.insertBefore(j, s); })(document, "script", document.location.protocol); </script> | ||
http://sansaratov.ru/test404page.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://sansaratov.ru/price_sansaratov.ru.xls | 200 OK Content-Length: 300955 Content-Type: application/vnd.ms-excel | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sansaratov.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 23 Jan 2015 20:13:31 GMT
Accept-Ranges: bytes
Server: nginx/0.8.53
Content-Length: 28737
Content-Type: text/html
Last-Modified: Wed, 21 Jan 2015 16:54:44 GMT
...28737 bytes of data.
GET / HTTP/1.1
Host: sansaratov.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 23 Jan 2015 20:13:31 GMT
Accept-Ranges: bytes
Server: nginx/0.8.53
Content-Length: 28737
Content-Type: text/html
Last-Modified: Wed, 21 Jan 2015 16:54:44 GMT
...28737 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sansaratov.ru
Referer: http://www.google.com/search?q=sansaratov.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sansaratov.ru
Referer: http://www.google.com/search?q=sansaratov.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.