Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=web-redirect.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://web-redirect.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://web-redirect.ru/ | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 07 Mar 2015 00:36:20 GMT Pragma: no-cache Location: http://ya.ru Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 07 Mar 2015 00:36:20 GMT X-Powered-By: PHP/5.3.3 | clean |
http://ya.ru/ | 200 Ok Content-Length: 11335 Content-Type: text/html | clean |
http://ya.ru//yastatic.net/jquery/1.8.3/jquery.min.js/ | 404 Not Found Content-Length: 79107 Content-Type: text/html | clean |
http://ya.ru//yastatic.net/www/2.262/v12/pages-desktop/error404/_error404.ru.js/ | 404 Not Found Content-Length: 79139 Content-Type: text/html | clean |
http://ya.ru//www.yandex.ru/ | 404 Not Found Content-Length: 79075 Content-Type: text/html | clean |
http://ya.ru//maps.yandex.ru/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 07 Mar 2015 00:36:21 GMT Location: http://maps.yandex.ru Server: nginx Content-Length: 154 Content-Type: text/html | clean |
http://maps.yandex.ru/ | 200 OK Content-Length: 51396 Content-Type: text/html | suspicious |
Suspicious code found <table class="b-head-userinfo b-head-userinfo_is-bem_yes i-bem i-bem" onclick="return {'b-head-userinfo':{name:'b-head-userinfo'}}"><tr><td class="b-head-userinfo__td"></td><td class="b-head-userinfo__entry"><a class="b-link b-link_pseudo_yes" href="https://passport.yandex.ru//passport?mode=auth&msg=maps&retpath=http%3A%2F%2Fmaps.yandex.ru%2F" onmousedown="Lego.ch('maps.login.enter',this)"><span class="b-link__inner">ÐойÑи</span></a><form class="b-domik b-domik_type_popup i-bem i-hidden" action="https://passport.yandex.ru//passport?mode=auth&from=maps&twoweeks=yes&retpath=http%3A%2F%2Fmaps.yandex.ru%2F" method="post" onclick="return {'b-domik':{name:'b-domik_type_popup',title:''}}"><input name="login"><input name="passwd" type="password"><input name="twoweeks" type="checkbox" value="no"></form></td></tr></table> | ||
http://maps.yandex.ru/print/ | 200 OK Content-Length: 6814 Content-Type: text/html | clean |
http://maps.yandex.ru//yandex.st/swf/swfobject/2.2-yandex1/_swfobject.js/ | 404 Not Found Content-Length: 79329 Content-Type: text/html | clean |
http://maps.yandex.ru//yastatic.net/jquery/1.8.3/jquery.min.js/ | 404 Not Found Content-Length: 79317 Content-Type: text/html | clean |
http://maps.yandex.ru//yastatic.net/www/2.262/v12/pages-desktop/error404/_error404.ru.js/ | 404 Not Found Content-Length: 79352 Content-Type: text/html | clean |
http://maps.yandex.ru//www.yandex.ru/ | 404 Not Found Content-Length: 79285 Content-Type: text/html | clean |
http://maps.yandex.ru//maps.yandex.ru/ | 404 Not Found Content-Length: 79289 Content-Type: text/html | clean |
http://maps.yandex.ru//market.yandex.ru/?clid=505/ | 404 Not Found Content-Length: 79304 Content-Type: text/html | clean |
http://maps.yandex.ru//slovari.yandex.ru/ | 404 Not Found Content-Length: 79289 Content-Type: text/html | clean |
http://maps.yandex.ru//yandex.ru/images/ | 404 Not Found Content-Length: 79293 Content-Type: text/html | clean |
http://maps.yandex.ru//yandex.ru/video/ | 404 Not Found Content-Length: 79292 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: web-redirect.ru
Result:
HTTP/1.1 302 Found
Cache-Control: max-age=0
Connection: close
Date: Sat, 07 Mar 2015 00:36:20 GMT
Pragma: no-cache
Location: http://ya.ru
Server: nginx/1.0.15
Content-Length: 0
Content-Type: text/html; charset=utf-8
Expires: Thu, 21 Jul 1977 07:30:00 GMT
Last-Modified: Sat, 07 Mar 2015 00:36:20 GMT
X-Powered-By: PHP/5.3.3
...0 bytes of data.
GET / HTTP/1.1
Host: web-redirect.ru
Result:
HTTP/1.1 302 Found
Cache-Control: max-age=0
Connection: close
Date: Sat, 07 Mar 2015 00:36:20 GMT
Pragma: no-cache
Location: http://ya.ru
Server: nginx/1.0.15
Content-Length: 0
Content-Type: text/html; charset=utf-8
Expires: Thu, 21 Jul 1977 07:30:00 GMT
Last-Modified: Sat, 07 Mar 2015 00:36:20 GMT
X-Powered-By: PHP/5.3.3
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: web-redirect.ru
Referer: http://www.google.com/search?q=web-redirect.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: web-redirect.ru
Referer: http://www.google.com/search?q=web-redirect.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.