Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vestawedding.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vestawedding.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vestawedding.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 26 Jul 2014 20:07:28 GMT
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://vestawedding.ru/xmlrpc.php
X-Powered-By: PHP/5.4.4-14+deb7u8
GET / HTTP/1.1
Host: vestawedding.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 26 Jul 2014 20:07:28 GMT
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://vestawedding.ru/xmlrpc.php
X-Powered-By: PHP/5.4.4-14+deb7u8
Second query (visit from search engine):
GET / HTTP/1.1
Host: vestawedding.ru
Referer: http://www.google.com/search?q=vestawedding.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vestawedding.ru
Referer: http://www.google.com/search?q=vestawedding.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://vestawedding.ru/ | 200 OK Content-Length: 18717 Content-Type: text/html | clean |
http://vestawedding.ru/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://vestawedding.ru/wp-content/plugins/jquery-colorbox/js/jquery.colorbox-min.js?ver=1.3.19 | 200 OK Content-Length: 9514 Content-Type: application/javascript | clean |
http://vestawedding.ru/wp-content/plugins/jquery-colorbox/js/jquery-colorbox-wrapper-min.js?ver=4.4.1 | 200 OK Content-Length: 7650 Content-Type: application/javascript | clean |
http://vestawedding.ru/wp-content/plugins/cyclone-slider/js/jquery.cycle.all.min.js?ver=3.5.1 | 200 OK Content-Length: 32046 Content-Type: application/javascript | clean |
http://vestawedding.ru/wp-content/plugins/advanced-spoiler/js/jquery-spoiler.js?ver=2.02 | 200 OK Content-Length: 3121 Content-Type: application/javascript | clean |
http://vestawedding.ru//e.issuu.com/embed.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 26 Jul 2014 20:07:30 GMT Pragma: no-cache Location: http://vestawedding.ru/e.issuu.com/embed.js/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 128 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://vestawedding.ru/xmlrpc.php X-Powered-By: PHP/5.4.4-14+deb7u8 | clean |
http://vestawedding.ru/e.issuu.com/embed.js/ | 404 Not Found Content-Length: 12278 Content-Type: text/html | clean |
http://vestawedding.ru/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.15 | 200 OK Content-Length: 14760 Content-Type: application/javascript | clean |
http://vestawedding.ru/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.3 | 200 OK Content-Length: 6859 Content-Type: application/javascript | clean |
http://vestawedding.ru/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 3598 Content-Type: application/javascript | clean |
http://vestawedding.ru/aboute | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 26 Jul 2014 20:07:31 GMT Location: http://vestawedding.ru/aboute/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 128 Content-Type: text/html; charset=UTF-8 X-Pingback: http://vestawedding.ru/xmlrpc.php X-Powered-By: PHP/5.4.4-14+deb7u8 | clean |
http://vestawedding.ru/aboute/ | 200 OK Content-Length: 18992 Content-Type: text/html | clean |
http://vestawedding.ru//vk.com/js/api/openapi.js?59/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 26 Jul 2014 20:07:32 GMT Pragma: no-cache Location: http://vestawedding.ru/vk.com/js/api/openapi.js?59/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 128 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://vestawedding.ru/xmlrpc.php X-Powered-By: PHP/5.4.4-14+deb7u8 | clean |
http://vestawedding.ru/vk.com/js/api/openapi.js?59/ | 404 Not Found Content-Length: 12276 Content-Type: text/html | clean |
http://vestawedding.ru/konkurs | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 26 Jul 2014 20:07:33 GMT Location: http://vestawedding.ru/konkurs/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 128 Content-Type: text/html; charset=UTF-8 X-Pingback: http://vestawedding.ru/xmlrpc.php X-Powered-By: PHP/5.4.4-14+deb7u8 | clean |
http://vestawedding.ru/konkurs/ | 200 OK Content-Length: 17497 Content-Type: text/html | clean |
http://vestawedding.ru/sobitiya | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 26 Jul 2014 20:07:34 GMT Location: http://vestawedding.ru/sobitiya/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 128 Content-Type: text/html; charset=UTF-8 X-Pingback: http://vestawedding.ru/xmlrpc.php X-Powered-By: PHP/5.4.4-14+deb7u8 | clean |
http://vestawedding.ru/sobitiya/ | 200 OK Content-Length: 24532 Content-Type: text/html | clean |
http://vestawedding.ru/disqontnyi-club | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 26 Jul 2014 20:07:35 GMT Location: http://vestawedding.ru/disqontnyi-club/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Length: 128 Content-Type: text/html; charset=UTF-8 X-Pingback: http://vestawedding.ru/xmlrpc.php X-Powered-By: PHP/5.4.4-14+deb7u8 | clean |
http://vestawedding.ru/disqontnyi-club/ | 200 OK Content-Length: 16022 Content-Type: text/html | clean |