Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=timedirect.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: timedirect.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 27 Dec 2014 13:14:52 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 27 Dec 2014 13:14:51 GMT
Set-Cookie: tu=9582c688cb518a23217caa455a810294; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=timedirect.ru; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_HeifBOGrsaXbNyl6qExJzX7ce1UJVbClMwZZGfcZdFRUxnrqzt1ttY4kN5Yja5HdGVqadF+JEEC7I/da6G/Ddw==
X-Cache: MISS from 610543
X-Powered-By: PHP/5.3.3-7+squeeze19
GET / HTTP/1.1
Host: timedirect.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 27 Dec 2014 13:14:52 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 27 Dec 2014 13:14:51 GMT
Set-Cookie: tu=9582c688cb518a23217caa455a810294; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=timedirect.ru; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_HeifBOGrsaXbNyl6qExJzX7ce1UJVbClMwZZGfcZdFRUxnrqzt1ttY4kN5Yja5HdGVqadF+JEEC7I/da6G/Ddw==
X-Cache: MISS from 610543
X-Powered-By: PHP/5.3.3-7+squeeze19
Second query (visit from search engine):
GET / HTTP/1.1
Host: timedirect.ru
Referer: http://www.google.com/search?q=timedirect.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: timedirect.ru
Referer: http://www.google.com/search?q=timedirect.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://timedirect.ru/ | 200 OK Content-Length: 29153 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://timedirect.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dtimedirect%26ai%3DHUPesQG71Drz-VczBNueskXf_KGIhWfGk43EG2BmMz3zJ-xpBJYims36KuNBVErZXI1LIYImE56XeajUfspphvNlsNlPoxBGC14nT1x5NsJqAy_zK8uQ1ZK38CvE3-t7Adis2N0sqUtr21_LkTw7Bsa6CU0ZdfH6l-nCBt3dsuVfWAvsvL1xwJkiT0p9bJ715CNTzK4z2s9eVWRe2Zcr6b9FYIqMF2RXuNKT67MtkXJ <span>...779 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 27 Dec 2014 13:14:52 GMT Pragma: no-cache Location: http://timedirect.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dtimedirect%26ai%3DHUPesQG71Drz-VczBNueskXf_KGIhWfGk43EG2BmMz3zJ-xpBJYims36KuNBVErZXI1LIYImE56XeajUfspphvNlsNlPoxBGC14nT1x5NsJqAy_zK8uQ1ZK38CvE3-t7Adis2N0sqUtr21_LkTw7Bsa6CU0ZdfH6l-nCBt3dsuVfWAvsvL1xwJkiT0p9bJ715CNTzK4z2s9eVWRe2Zcr6b9FYIqMF2RXuNKT67MtkXJsk_JTR7qq4c24YoFtgoZRud-JscItw0KNvfr63TKqYuDA5mS33UFRJB0mkr3CGqi-PRvP5AeK_aDL0DjGRDMFdvt_gARa526yEiDizYuHMeb2v1nVmFSpnIjXsR_TjGBWfn6bxGwNLqKZV9WytEhoUtLw5akfSElkPyIAvacecwPw3GAUhe6p1N_ij4Dlxu4Y4jIFgIQdOSPlg3kh0JSb%26version%3D1.2&v=NDQ5MzIxZmEyY2Q1NmFiMjY1NzFjMmU5NDY4ZDc5ZjUJMQl0aW1lZGlyZWN0LnJ1NTQ5ZWIwY2JiZDE0MjkuNDk5Mjk5MTQJdGltZWRpcmVjdC5ydTU0OWViMGNiYmQyMTU5LjAzNjEwMDQzCTE0MTk2ODYwOTIJYWRfN18w&l=NAlBRFMJOWM3MzBhY2QwNjdkYTc3ZmRjNGZkNGQwMTc5NTcxMWUJMC4wMDAzCTAJMTMJCTMxCTIJMQkwCTRiM2FhZDU5ZDA0YjZmYjc5MzI5NDhlMjdkOTdiZjNkCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkxOTMwODA2MzkJYwk5MDM3NTY5NwkJdGltZWRpcmVjdAkxMDcyCTcJMjAJMjUJMTQxOTY4NjA5MgkwLjAwMDYJTgkwCTAJMAkJMC4wMDAzCQkJCQkJdGltZWRpcmVjdC5ydTU0OWViMGNiYmQxNDI5LjQ5OTI5OTE0CTAuMDAwNgkwCQkxCTEzMjgJMTIwNQkxMzY5Mjg0ODgJ Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 27 Dec 2014 13:14:52 GMT X-Cache: MISS from 051375 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://timedirect.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3dtimedirect%26ai%3dhupesqg71drz-vczbnueskxf_kgihwfgk43eg2bmmz3zj-xpbjyims36kunbverzxi1liyime56xeajufspphvnlsnlpoxbgc14nt1x5nsjqay_zk8uq1zk38cve3-t7adis2n0squtr21_lktw7bsa6cu0zdfh6l-ncbt3dsuvfwavsvl1xwjkit0p9bj715cntzk4z2s9evwre2zcr6b9fyiqmf2rxunkt67mtkxj <span>...779 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://timedirect.ru/test404page.js | 200 OK Content-Length: 22148 Content-Type: text/html | clean |
http://timedirect.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dtimedirect%26ai%3DlE3INifxzO9GNIaJLF4qJjK2BGCKbmP7pNeV_OW6MtH6hhfrDjKWm074HV292DLavYPnn-ZYkcMGCqIRPxOjem0uEsl6zk--1MFfa5B-_ZrlHWIJvMbMVmVW-fIcn-9xi2BlZQBmxGb0iPAPt98aVnwKU5c3n5gD6iX0BvRm1-SHxEXvV84EA1JF1dMXV_e32y038UrfDnBhRawKvjXgZCTwPnv2YP1FxPNCZ-gwBzH <span>...769 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 27 Dec 2014 13:14:54 GMT Pragma: no-cache Location: http://timedirect.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dtimedirect%26ai%3DlE3INifxzO9GNIaJLF4qJjK2BGCKbmP7pNeV_OW6MtH6hhfrDjKWm074HV292DLavYPnn-ZYkcMGCqIRPxOjem0uEsl6zk--1MFfa5B-_ZrlHWIJvMbMVmVW-fIcn-9xi2BlZQBmxGb0iPAPt98aVnwKU5c3n5gD6iX0BvRm1-SHxEXvV84EA1JF1dMXV_e32y038UrfDnBhRawKvjXgZCTwPnv2YP1FxPNCZ-gwBzHPK_74_uBlJiWm9OGj1rpE81-iQZp8__DiqGgzXEYff1eHKpqUThA9Bg1yOy-j_xOIi3Vu0bW6aJj703mTLDyqOfScqv1_C5x6xC6xFhNg3pemeLttQEBrY82z0SmKy1l5Dz3_BFMlYvqu4dAYgCPmYfTbGhCWeFOjenKmhh8o3tJl1YlFd5bdqrTdI_Z8PcwESJmxvKRWgA%26version%3D1.2&v=ZWU5ZThhYTNhNWUxZWM0YzQ0YzYyMGU3MDJjYTExZGQJMQl0aW1lZGlyZWN0LnJ1NTQ5ZWIwY2JiZDE0MjkuNDk5Mjk5MTQJdGltZWRpcmVjdC5ydTU0OWViMGNiYmQyMTU5LjAzNjEwMDQzCTE0MTk2ODYwOTIJYWRfN18x&l=NAlBRFMJNzI1YmZmZmU1MTc2YjQ3OWZhNWUwN2ZjNTEyMDk2MDQJMC4wMDAzCTAJMTMJCTMxCTIJMgkwCTgxNWZmYmNhMzlhODEzMTAwZDQyZDkzOTc1NmRkODNhCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkxOTMwODA2MzkJYwk5MDM3NTY5NwkJdGltZWRpcmVjdAkxMDcyCTcJMjAJMjUJMTQxOTY4NjA5MgkwLjAwMDYJTgkwCTAJMAkJMC4wMDAzCQkJCQkJdGltZWRpcmVjdC5ydTU0OWViMGNiYmQxNDI5LjQ5OTI5OTE0CTAuMDAwNgkwCQkxCTEzMjgJMTIwNQkxMzY5Mjg0ODgJ Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 27 Dec 2014 13:14:54 GMT X-Cache: MISS from 110439 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://timedirect.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3dtimedirect%26ai%3dle3inifxzo9gniajlf4qjjk2bgckbmp7pnev_ow6mth6hhfrdjkwm074hv292dlavypnn-zykcmgcqirpxojem0uesl6zk--1mffa5b-_zrlhwijvmbmvmvw-ficn-9xi2blzqbmxgb0ipapt98avnwku5c3n5gd6ix0bvrm1-shxexvv84ea1jf1dmxv_e32y038urfdnbhrawkvjxgzctwpnv2yp1fxpncz-gwbzh <span>...769 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |