Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ugmetiz.com.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 09 Oct 2014 20:01:28 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=4373764c0dfb7fb81448d2b541996afb; path=/
Set-Cookie: ci_session=a%3A4%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%2239143cc311b712998d9c30bc23a754f8%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bs%3A10%3A%221412884888%22%3B%7D4380e7e4734273cf588f9719bcde9c0a; expires=Thu, 09-Oct-2014 22:01:28 GMT; path=/
X-Cache: HIT from Backend
GET / HTTP/1.1
Host: ugmetiz.com.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 09 Oct 2014 20:01:28 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=4373764c0dfb7fb81448d2b541996afb; path=/
Set-Cookie: ci_session=a%3A4%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%2239143cc311b712998d9c30bc23a754f8%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bs%3A10%3A%221412884888%22%3B%7D4380e7e4734273cf588f9719bcde9c0a; expires=Thu, 09-Oct-2014 22:01:28 GMT; path=/
X-Cache: HIT from Backend
Second query (visit from search engine):
GET / HTTP/1.1
Host: ugmetiz.com.ua
Referer: http://www.google.com/search?q=ugmetiz.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ugmetiz.com.ua
Referer: http://www.google.com/search?q=ugmetiz.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ugmetiz.com.ua/ | 200 OK Content-Length: 16046 Content-Type: text/html | clean |
http://ugmetiz.com.ua/design/js/jquery-1.10.2.min.js | 200 OK Content-Length: 93100 Content-Type: application/x-javascript | clean |
http://ugmetiz.com.ua/design/plugins/fredhq/jquery.roundabout.js | 200 OK Content-Length: 21141 Content-Type: application/x-javascript | clean |
http://ugmetiz.com.ua/catalog/categories | 200 OK Content-Length: 13939 Content-Type: text/html | clean |
http://ugmetiz.com.ua/pages/dokumenty | 200 OK Content-Length: 11458 Content-Type: text/html | clean |
http://ugmetiz.com.ua/pages/partnery | 200 OK Content-Length: 11454 Content-Type: text/html | clean |
http://ugmetiz.com.ua/pages/dostavka | 200 OK Content-Length: 14857 Content-Type: text/html | clean |
http://ugmetiz.com.ua/articleslist | 200 OK Content-Length: 14908 Content-Type: text/html | clean |
http://ugmetiz.com.ua/pages/karta_sayta | 200 OK Content-Length: 17904 Content-Type: text/html | clean |
http://ugmetiz.com.ua/contacts | 200 OK Content-Length: 14610 Content-Type: text/html | clean |
http://ugmetiz.com.ua/catalog/provoloka | 200 OK Content-Length: 18196 Content-Type: text/html | clean |
http://ugmetiz.com.ua/catalog/kanat_stalnoy | 200 OK Content-Length: 26149 Content-Type: text/html | clean |
http://ugmetiz.com.ua/catalog/strop_gruzopodemnyy | 200 OK Content-Length: 16920 Content-Type: text/html | clean |
http://ugmetiz.com.ua/catalog/komplektuyuschie_dlya_strop | 200 OK Content-Length: 12918 Content-Type: text/html | clean |
http://ugmetiz.com.ua/catalog/cepi_gruzovye | 200 OK Content-Length: 18020 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ugmetiz.com.ua
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ugmetiz.com.ua/
Result: ugmetiz.com.ua is not infected or malware details are not published yet.
Result: ugmetiz.com.ua is not infected or malware details are not published yet.