Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=street-racing.su
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://street-racing.su/ | 200 OK Content-Length: 67599 Content-Type: text/html | clean |
http://street-racing.su/engine/classes/min/index.php?charset=windows-1251&g=general&7 | 200 OK Content-Length: 183156 Content-Type: application/x-javascript | clean |
http://street-racing.su/engine/classes/min/index.php?charset=windows-1251&f=engine/classes/highslide/highslide.js&7 | 200 OK Content-Length: 46342 Content-Type: application/x-javascript | clean |
http://street-racing.su/templates/Sanda/css/monkey.js | 200 OK Content-Length: 74404 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var MooTools={version:'1.11'};function $defined(obj){return(obj!=undefined);};function $type(obj){if(!$defined(obj))return false;if(obj.htmlElement)return'element';var type=typeof obj;if(type=='object'&&obj.nodeName){switch(obj.nodeType){case 1:return'element';case 3:return(/\S/).test(obj.nodeValue)?'textnode':'whitespace';}} if(type=='object'||type=='function'){switch(obj.constructor){case Array:return'array';case RegExp:return'regexp';case Class:return'class';} if(typeof obj.le Antivirus reports:
| ||
http://street-racing.su/templates/Sanda/css/engine.js | 200 OK Content-Length: 2206 Content-Type: application/javascript | clean |
http://street-racing.su/templates/Sanda/css/image_show.js | 200 OK Content-Length: 6392 Content-Type: application/javascript | clean |
http://street-racing.su/templates/Sanda/css/script.js | 200 OK Content-Length: 3012 Content-Type: application/javascript | clean |
http://userapi.com/js/api/openapi.js?20 | 200 OK Content-Length: 64063 Content-Type: application/x-javascript | clean |
http://counter.rambler.ru/top100.jcn?2124903 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://tools.spylog.ru/counter_cv.js | 200 OK Content-Length: 5066 Content-Type: application/javascript | clean |
http://widgets.amung.us/classic.js | 200 OK Content-Length: 9043 Content-Type: application/x-javascript | clean |
http://dc1.top.drom.ru/script.js | 404 Not Found Content-Length: 14037 Content-Type: text/html | suspicious |
Suspicious code found <div style="display:none; " data-parent-layout = "false" id='candy_781'></div> <br/> | ||
http://dc1.top.drom.ru//ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js/ | 404 Not Found Content-Length: 14037 Content-Type: text/html | suspicious |
Suspicious code found <div style="display:none; " data-parent-layout = "false" id='candy_781'></div> <br/> | ||
http://c.rdrom.ru/js/common.js?rev=2.4.7 | 200 OK Content-Length: 38711 Content-Type: application/x-javascript | clean |
http://www.googleadservices.com/pagead/conversion.js | 200 OK Content-Length: 10592 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: street-racing.su
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 18 Jan 2015 18:48:27 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=cp1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=t5llhnjddbua9tdtc3fp6nddt3; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.street-racing.su; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.street-racing.su; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.street-racing.su; httponly
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: street-racing.su
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 18 Jan 2015 18:48:27 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=cp1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=t5llhnjddbua9tdtc3fp6nddt3; path=/
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.street-racing.su; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.street-racing.su; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.street-racing.su; httponly
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: street-racing.su
Referer: http://www.google.com/search?q=street-racing.su
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: street-racing.su
Referer: http://www.google.com/search?q=street-racing.su
Result:
The result is similar to the first query. There are no suspicious redirects found.