Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sentiabrev.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://sentiabrev.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://sentiabrev.ru/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:41 GMT Location: http://www.sentiabrev.ru/ Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 312 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/ | 200 OK Content-Length: 15519 Content-Type: text/html | suspicious |
Suspicious code found <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t44.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='1' <!-- /Yandex.Metrika counter --> <!-- BEGIN JIVOSITE CODE {literal} --> <script type='text/javascript'> (function(){ var widget_id = 'XTeL15vurk'; var s = document.createElement('script'); s.type = 'text/javascript'; s.async = true; s.src = '//code.jivosite.com/script/widget/'+widget_id; var ss = document.getElementsByTagName('script')[0]; ss.parentNode.insertBefore(s, ss);})();</script> <!-- {/literal} END JIVOSITE CODE --> | ||
http://www.sentiabrev.ru/inc/js/jquery-2.1.1.min.js | 200 OK Content-Length: 84245 Content-Type: application/javascript | clean |
http://sentiabrev.ru/uploadify/jquery.uploadify.v2.1.0.min.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:41 GMT Location: http://www.sentiabrev.ru/uploadify/jquery.uploadify.v2.1.0.min.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 352 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/uploadify/jquery.uploadify.v2.1.0.min.js | 200 OK Content-Length: 7563 Content-Type: application/javascript | clean |
http://sentiabrev.ru/inc/js/swfobject/swfobject.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:42 GMT Location: http://www.sentiabrev.ru/inc/js/swfobject/swfobject.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 341 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/inc/js/swfobject/swfobject.js | 200 OK Content-Length: 10220 Content-Type: application/javascript | clean |
http://sentiabrev.ru/highslide/highslide-with-gallery.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:42 GMT Location: http://www.sentiabrev.ru/highslide/highslide-with-gallery.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 347 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/highslide/highslide-with-gallery.js | 200 OK Content-Length: 73065 Content-Type: application/javascript | clean |
http://sentiabrev.ru/inc/js/some.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:43 GMT Location: http://www.sentiabrev.ru/inc/js/some.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 326 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/inc/js/some.js | 200 OK Content-Length: 1238 Content-Type: application/javascript | clean |
http://sentiabrev.ru/inc/fancybox/source/jquery.fancybox.pack.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:43 GMT Location: http://www.sentiabrev.ru/inc/fancybox/source/jquery.fancybox.pack.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 355 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/inc/fancybox/source/jquery.fancybox.pack.js | 200 OK Content-Length: 23135 Content-Type: application/javascript | clean |
http://sentiabrev.ru/text33.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:43 GMT Location: http://www.sentiabrev.ru/text33.html Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 323 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/text33.html | 200 OK Content-Length: 28561 Content-Type: text/html | suspicious |
Suspicious code found <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t44.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='1' <!-- /Yandex.Metrika counter --> <!-- BEGIN JIVOSITE CODE {literal} --> <script type='text/javascript'> (function(){ var widget_id = 'XTeL15vurk'; var s = document.createElement('script'); s.type = 'text/javascript'; s.async = true; s.src = '//code.jivosite.com/script/widget/'+widget_id; var ss = document.getElementsByTagName('script')[0]; ss.parentNode.insertBefore(s, ss);})();</script> <!-- {/literal} END JIVOSITE CODE --> | ||
http://api-maps.yandex.ru/1.1/index.xml?key=ABEdEUoBAAAAduDBZwIA6t-zKmtbplAtIWZeL0xYLUTOeHcAAAAAAAAAAAAt8sLndDV7Zo1B-NqyHTJKmDdA6Q== | 200 OK Content-Length: 5487 Content-Type: text/javascript | clean |
http://sentiabrev.ru/inc/js/jquery-add-ons.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:43 GMT Location: http://www.sentiabrev.ru/inc/js/jquery-add-ons.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 336 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/inc/js/jquery-add-ons.js | 200 OK Content-Length: 512 Content-Type: application/javascript | clean |
http://sentiabrev.ru/inc/js/common.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:44 GMT Location: http://www.sentiabrev.ru/inc/js/common.js Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 328 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/inc/js/common.js | 200 OK Content-Length: 806 Content-Type: application/javascript | clean |
http://sentiabrev.ru/text32.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 04:09:44 GMT Location: http://www.sentiabrev.ru/text32.html Server: nginx/0.7.67 Vary: Accept-Encoding Content-Length: 323 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.sentiabrev.ru/text32.html | 200 OK Content-Length: 15113 Content-Type: text/html | suspicious |
Suspicious code found <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t44.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='1' <!-- /Yandex.Metrika counter --> <!-- BEGIN JIVOSITE CODE {literal} --> <script type='text/javascript'> (function(){ var widget_id = 'XTeL15vurk'; var s = document.createElement('script'); s.type = 'text/javascript'; s.async = true; s.src = '//code.jivosite.com/script/widget/'+widget_id; var ss = document.getElementsByTagName('script')[0]; ss.parentNode.insertBefore(s, ss);})();</script> <!-- {/literal} END JIVOSITE CODE --> | ||
http://www.sentiabrev.ru/text54.html | 200 OK Content-Length: 15622 Content-Type: text/html | suspicious |
Suspicious code found <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t44.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='1' <!-- /Yandex.Metrika counter --> <!-- BEGIN JIVOSITE CODE {literal} --> <script type='text/javascript'> (function(){ var widget_id = 'XTeL15vurk'; var s = document.createElement('script'); s.type = 'text/javascript'; s.async = true; s.src = '//code.jivosite.com/script/widget/'+widget_id; var ss = document.getElementsByTagName('script')[0]; ss.parentNode.insertBefore(s, ss);})();</script> <!-- {/literal} END JIVOSITE CODE --> | ||
http://www.sentiabrev.ru/catalog/type10.html | 200 OK Content-Length: 16193 Content-Type: text/html | suspicious |
Suspicious code found <!--LiveInternet counter--><script type="text/javascript"><!-- document.write("<a href='http://www.liveinternet.ru/click' "+ "target=_blank><img src='//counter.yadro.ru/hit?t44.6;r"+ escape(document.referrer)+((typeof(screen)=="undefined")?"": ";s"+screen.width+"*"+screen.height+"*"+(screen.colorDepth? screen.colorDepth:screen.pixelDepth))+";u"+escape(document.URL)+ ";"+Math.random()+ "' alt='' title='LiveInternet' "+ "border='0' width='1' <!-- /Yandex.Metrika counter --> <!-- BEGIN JIVOSITE CODE {literal} --> <script type='text/javascript'> (function(){ var widget_id = 'XTeL15vurk'; var s = document.createElement('script'); s.type = 'text/javascript'; s.async = true; s.src = '//code.jivosite.com/script/widget/'+widget_id; var ss = document.getElementsByTagName('script')[0]; ss.parentNode.insertBefore(s, ss);})();</script> <!-- {/literal} END JIVOSITE CODE --> | ||
http://www.sentiabrev.ru/news.html | 200 OK Content-Length: 300568 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sentiabrev.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 08 Jan 2015 04:09:41 GMT
Location: http://www.sentiabrev.ru/
Server: nginx/0.7.67
Vary: Accept-Encoding
Content-Length: 312
Content-Type: text/html; charset=iso-8859-1
...312 bytes of data.
GET / HTTP/1.1
Host: sentiabrev.ru
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 08 Jan 2015 04:09:41 GMT
Location: http://www.sentiabrev.ru/
Server: nginx/0.7.67
Vary: Accept-Encoding
Content-Length: 312
Content-Type: text/html; charset=iso-8859-1
...312 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sentiabrev.ru
Referer: http://www.google.com/search?q=sentiabrev.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sentiabrev.ru
Referer: http://www.google.com/search?q=sentiabrev.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.