Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vataga32.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vataga32.ru/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vataga32.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 11 Oct 2014 22:06:28 GMT
Pragma: no-cache
Server: Apache/2.2.25 (Unix) mod_ssl/2.2.25 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.10.1
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sat, 11 Oct 2014 22:06:28 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 6b9cd26e6709093e74139c6cb3cdc8ca=a1f219293339c218011ad549dfaabc87; path=/
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: vataga32.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 11 Oct 2014 22:06:28 GMT
Pragma: no-cache
Server: Apache/2.2.25 (Unix) mod_ssl/2.2.25 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.10.1
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sat, 11 Oct 2014 22:06:28 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 6b9cd26e6709093e74139c6cb3cdc8ca=a1f219293339c218011ad549dfaabc87; path=/
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: vataga32.ru
Referer: http://www.google.com/search?q=vataga32.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vataga32.ru
Referer: http://www.google.com/search?q=vataga32.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://vataga32.ru/ | 200 OK Content-Length: 12571 Content-Type: text/html | clean |
http://vataga32.ru/media/system/js/caption.js | 200 OK Content-Length: 1721 Content-Type: application/javascript | clean |
http://vataga32.ru/templates/vataga12/jquery.js | 200 OK Content-Length: 72174 Content-Type: application/javascript | clean |
http://vataga32.ru/templates/vataga12/script.js | 200 OK Content-Length: 5891 Content-Type: application/javascript | clean |
http://counter.rambler.ru/top100.jcn?2332609 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://vataga32.ru/index.php?option=com_content&view=article&id=67:2013-07-02-08-47-08&catid=4:2010-10-20-19-53-55&Itemid=17 | 200 OK Content-Length: 9870 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=70%3A2013-08-30-08-43-41&Itemid=17 | 200 OK Content-Length: 8992 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=71%3A2013-09-02-05-27-02&Itemid=17 | 200 OK Content-Length: 8898 Content-Type: text/html | clean |
http://vataga32.ru/test404page.js | 404 Not Found Content-Length: 532 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=67%3A2013-07-02-08-47-08&Itemid=17 | 200 OK Content-Length: 9870 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=66%3A2013-06-21-18-12-45&Itemid=17 | 200 OK Content-Length: 8821 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=65%3A2013-06-16-17-29-24&Itemid=17 | 200 OK Content-Length: 8570 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=64%3A2013-04-05-18-25-18&Itemid=17 | 200 OK Content-Length: 11239 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=62%3A2013-03-03-15-21-23&Itemid=17 | 200 OK Content-Length: 9636 Content-Type: text/html | clean |
http://vataga32.ru/index.php?option=com_content&view=article&catid=4%3A2010-10-20-19-53-55&id=60%3A2013-02-28-07-16-38&Itemid=17 | 200 OK Content-Length: 12649 Content-Type: text/html | clean |