Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: stifmk.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 02:51:02 GMT
Server: Apache/2.2.15 (CentOS)
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: stifmk.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 02:51:02 GMT
Server: Apache/2.2.15 (CentOS)
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: stifmk.ru
Referer: http://www.google.com/search?q=stifmk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: stifmk.ru
Referer: http://www.google.com/search?q=stifmk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://stifmk.ru/ | 200 OK Content-Length: 11677 Content-Type: text/html | clean |
http://stifmk.ru/1415756572.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://stifmk.ru/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://stifmk.ru/1165132171.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://stifmk.ru/6465711275.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://stifmk.ru/6581816312.php | 200 OK Content-Length: 37437 Content-Type: text/html | clean |
http://stifmk.ru/epl.js | 200 OK Content-Length: 383 Content-Type: text/javascript | clean |
http://stifmk.ru/1121721274.php | 200 OK Content-Length: 26088 Content-Type: text/html | clean |
http://stifmk.ru/7113718181.php | 200 OK Content-Length: 40295 Content-Type: text/html | clean |
http://stifmk.ru/1164641163.php | 200 OK Content-Length: 20984 Content-Type: text/html | clean |
http://stifmk.ru/6315126472.php | 200 OK Content-Length: 2436 Content-Type: text/html | clean |
http://stifmk.ru/6581721414.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://stifmk.ru/6374656362.php | 200 OK Content-Length: 39421 Content-Type: text/html | clean |
http://stifmk.ru/7175751465.php | 200 OK Content-Length: 34565 Content-Type: text/html | clean |
http://stifmk.ru/6463137413.php | 200 OK Content-Length: 26269 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=stifmk.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://stifmk.ru/
Result: stifmk.ru is not infected or malware details are not published yet.
Result: stifmk.ru is not infected or malware details are not published yet.