Scanned pages/files
Request | Server response | Status |
http://totoshka-sad.ru/ | 200 OK Content-Length: 26932 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Hind-Hacker ...[30219 bytes skipped]... A5LTIyLTEwLTEwLTMzJmNhdGlkPTE6bGF0ZXN0LW5ld3MmSXRlbWlkPTUw" title="E-mail" onclick="window.open(this.href,'win2','width=400,height=350,menubar=yes,resizable=yes'); return false;"><img src="/images/M_images/emailButton.png" alt="E-mail" /></a> </td> </tr> </table> <table class="contentpaneopen"> <tr> <td valign="top" colspan="2"> <p>Hacked by Hind-Hacker</p></td> </tr> </table> <span class="article_separator"> </span> </td> <td valign="top" width="50%" class="article_column column_separator"> </td> </tr> </table> </td> </tr> <tr> <td valign="top" align="center"> <br /><br /> </td> </tr ...[365 bytes skipped]... | ||
http://totoshka-sad.ru/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://totoshka-sad.ru/templates/themza_j15_47/js/moomenu.js | 200 OK Content-Length: 4902 Content-Type: application/javascript | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=section&id=14&Itemid=57 | 200 OK Content-Length: 12648 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=35&Itemid=59 | 200 OK Content-Length: 27580 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=36&Itemid=60 | 200 OK Content-Length: 45505 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=37&Itemid=61 | 200 OK Content-Length: 24928 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=40&Itemid=64 | 200 OK Content-Length: 21880 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=section&id=15&Itemid=66 | 200 OK Content-Length: 12597 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=42&Itemid=67 | 200 OK Content-Length: 18287 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=43&Itemid=68 | 200 OK Content-Length: 20926 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=44&Itemid=69 | 200 OK Content-Length: 17927 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=45&Itemid=70 | 200 OK Content-Length: 61284 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=section&id=17&Itemid=73 | 200 OK Content-Length: 12378 Content-Type: text/html | clean |
http://totoshka-sad.ru/index.php?option=com_content&view=category&layout=blog&id=48&Itemid=74 | 200 OK Content-Length: 37476 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: totoshka-sad.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=0
Connection: close
Date: Fri, 18 Apr 2014 10:14:05 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Expires: Fri, 18 Apr 2014 10:14:04 GMT
Last-Modified: Fri, 18 Apr 2014 10:14:05 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 6b6e61a4903a410b3c59e74ebac28ebd=0618d01c90f893d821c767bbc75e572e; path=/
GET / HTTP/1.1
Host: totoshka-sad.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=0
Connection: close
Date: Fri, 18 Apr 2014 10:14:05 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Expires: Fri, 18 Apr 2014 10:14:04 GMT
Last-Modified: Fri, 18 Apr 2014 10:14:05 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 6b6e61a4903a410b3c59e74ebac28ebd=0618d01c90f893d821c767bbc75e572e; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: totoshka-sad.ru
Referer: http://www.google.com/search?q=totoshka-sad.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: totoshka-sad.ru
Referer: http://www.google.com/search?q=totoshka-sad.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=totoshka-sad.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://totoshka-sad.ru/
Result: totoshka-sad.ru is not infected or malware details are not published yet.
Result: totoshka-sad.ru is not infected or malware details are not published yet.