Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ufsknsk.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, pre-check=0, post-check=0
Connection: close
Date: Fri, 03 Oct 2014 14:58:21 GMT
Pragma: no-cache
Server: Apache/2.2.17 (Unix) PHP/5.3.28
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Thu, 02 Oct 2014 14:58:21 GMT
Set-Cookie: lang=russian; expires=Sun, 02-Nov-2014 14:58:21 GMT
Set-Cookie: PHPSESSID=tfkki87qf06d19n94ru7eu1g16; path=/
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: ufsknsk.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, pre-check=0, post-check=0
Connection: close
Date: Fri, 03 Oct 2014 14:58:21 GMT
Pragma: no-cache
Server: Apache/2.2.17 (Unix) PHP/5.3.28
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Thu, 02 Oct 2014 14:58:21 GMT
Set-Cookie: lang=russian; expires=Sun, 02-Nov-2014 14:58:21 GMT
Set-Cookie: PHPSESSID=tfkki87qf06d19n94ru7eu1g16; path=/
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: ufsknsk.ru
Referer: http://www.google.com/search?q=ufsknsk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ufsknsk.ru
Referer: http://www.google.com/search?q=ufsknsk.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ufsknsk.ru/ | 200 OK Content-Length: 38574 Content-Type: text/html | clean |
http://ufsknsk.ru/ajax/global_func.js | 200 OK Content-Length: 14093 Content-Type: application/javascript | clean |
http://ufsknsk.ru/ajax/block_error.js | 200 OK Content-Length: 68 Content-Type: application/javascript | clean |
http://ufsknsk.ru/ajax/tool_box.js | 200 OK Content-Length: 32234 Content-Type: application/javascript | clean |
http://ufsknsk.ru/index.php | 200 OK Content-Length: 38574 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=ruk&op=nach | 200 OK Content-Length: 26631 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=news | 200 OK Content-Length: 43624 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=search | 200 OK Content-Length: 24206 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=ruk | 200 OK Content-Length: 23618 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=structure | 200 OK Content-Length: 23470 Content-Type: text/html | clean |
http://ufsknsk.ru/ajax/struct_script.js | 200 OK Content-Length: 763 Content-Type: application/javascript | clean |
http://ufsknsk.ru/index.php?name=mes | 200 OK Content-Length: 24693 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=law | 200 OK Content-Length: 24668 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=faq | 200 OK Content-Length: 18081 Content-Type: text/html | clean |
http://ufsknsk.ru/index.php?name=kadr | 200 OK Content-Length: 24426 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ufsknsk.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ufsknsk.ru/
Result: ufsknsk.ru is not infected or malware details are not published yet.
Result: ufsknsk.ru is not infected or malware details are not published yet.