Scanned pages/files
Request | Server response | Status |
http://vlad-yama.my1.ru/ | 200 OK Content-Length: 25070 Content-Type: text/html | clean |
http://s50.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s50.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 39848 Content-Type: text/javascript | clean |
http://s50.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228798 Content-Type: text/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21987 Content-Type: text/javascript | clean |
http://vlad-yama.my1.ru/news/biografija_izvestnogo_tancora_i_sudi_vladislava_jamy/2011-06-19-1 | 200 OK Content-Length: 61650 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ban_item(id){if (confirm('ÐÑ Ð´ÐµÐ¹ÑÑвиÑелÑно Ñ
оÑиÑе акÑивиÑоваÑÑ Ð´Ð°Ð½Ð½Ñй маÑеÑиал?')){var img=document.getElementById('bi'+id);img.src='http://s50.ucoz.net/img/fr/EmnAjax.gif';_uPostForm('',{url:'http://vlad-yama.my1.ru/index/86-'+id+'-1'});}}function del_item(id){if (confirm('ÐÑ Ð¿Ð¾Ð´ÑвеÑждаеÑе Ñдаление?')){var img=document.getElementById('di'+id);img.src='http://s50.ucoz.net/img/fr/EmnAjax.gif';_uPostForm('',{url:'http://vlad-yama.my1.ru/index/',type:'POST',data:{ssid:'501042443147252046423',a:'38',s:id}});}} Antivirus reports:
| ||
http://vlad-yama.my1.ru/news/2011-00 | 200 OK Content-Length: 21315 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/news/2011-06-19 | 200 OK Content-Length: 24703 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/news/2011-6 | 404 Not Found Content-Length: 6933 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/test404page.js | 404 Not Found Content-Length: 6933 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/news/ | 200 OK Content-Length: 25596 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/publ/lichnaja_zhizn/5 | 200 OK Content-Length: 63340 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/publ/ | 200 OK Content-Length: 81361 Content-Type: text/html | clean |
http://vlad-yama.my1.ru/publ/novosti_shou_biza/aksessuary_ljubimykh_znamenitostej_vy_mozhete_imet_analogichnuju/20-1-0-46 | 200 OK Content-Length: 35933 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ban_item(id){if (confirm('ÐÑ Ð´ÐµÐ¹ÑÑвиÑелÑно Ñ
оÑиÑе акÑивиÑоваÑÑ Ð´Ð°Ð½Ð½Ñй маÑеÑиал?')){var img=document.getElementById('bi'+id);img.src='http://s50.ucoz.net/img/fr/EmnAjax.gif';_uPostForm('',{url:'http://vlad-yama.my1.ru/index/86-'+id+'-1'});}}function del_item(id){if (confirm('ÐÑ Ð¿Ð¾Ð´ÑвеÑждаеÑе Ñдаление?')){var img=document.getElementById('di'+id);img.src='http://s50.ucoz.net/img/fr/EmnAjax.gif';_uPostForm('',{url:'http://vlad-yama.my1.ru/index/',type:'POST',data:{ssid:'737423160300044337002',a:'38',s:id}});}} Antivirus reports:
| ||
http://vlad-yama.my1.ru/publ/novosti_shou_biza/20 | 200 OK Content-Length: 58778 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vlad-yama.my1.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 28 Apr 2014 11:00:49 GMT
Server: uServ/3.2.2
Content-Length: 25070
Content-Type: text/html; charset=UTF-8
...25070 bytes of data.
GET / HTTP/1.1
Host: vlad-yama.my1.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 28 Apr 2014 11:00:49 GMT
Server: uServ/3.2.2
Content-Length: 25070
Content-Type: text/html; charset=UTF-8
...25070 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: vlad-yama.my1.ru
Referer: http://www.google.com/search?q=vlad-yama.my1.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vlad-yama.my1.ru
Referer: http://www.google.com/search?q=vlad-yama.my1.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vlad-yama.my1.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vlad-yama.my1.ru/
Result: vlad-yama.my1.ru is not infected or malware details are not published yet.
Result: vlad-yama.my1.ru is not infected or malware details are not published yet.