Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=whitepeaks.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: whitepeaks.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 23:46:09 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=UTF-8
X-Pingback: http://whitepeaks.ru/xmlrpc.php
X-Powered-By: PHP/5.3.26
GET / HTTP/1.1
Host: whitepeaks.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 23:46:09 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=UTF-8
X-Pingback: http://whitepeaks.ru/xmlrpc.php
X-Powered-By: PHP/5.3.26
Second query (visit from search engine):
GET / HTTP/1.1
Host: whitepeaks.ru
Referer: http://www.google.com/search?q=whitepeaks.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: whitepeaks.ru
Referer: http://www.google.com/search?q=whitepeaks.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://whitepeaks.ru/ | 200 OK Content-Length: 47354 Content-Type: text/html | clean |
http://whitepeaks.ru/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/themes/sight/js/jquery.cycle.all.min.js?ver=3.5.1 | 200 OK Content-Length: 31032 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/themes/sight/js/jquery.cookie.js?ver=3.5.1 | 200 OK Content-Length: 4246 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/themes/sight/js/script.js?ver=3.5.1 | 200 OK Content-Length: 5233 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.40.0-2013.08.13 | 200 OK Content-Length: 14625 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.2 | 200 OK Content-Length: 8326 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/plugins/nimble-portfolio/includes/prettyphoto/prettyphoto.js?ver=2.0.8 | 200 OK Content-Length: 22176 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru/wp-content/plugins/nimble-portfolio/includes/sort.js?ver=2.0.8 | 200 OK Content-Length: 1103 Content-Type: application/x-javascript | clean |
http://whitepeaks.ru//mc.yandex.ru/metrika/watch.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 24 Feb 2015 23:46:12 GMT Pragma: no-cache Location: http://whitepeaks.ru/mc.yandex.ru/metrika/watch.js/ Server: nginx/1.4.1 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://whitepeaks.ru/xmlrpc.php X-Powered-By: PHP/5.3.26 | clean |
http://whitepeaks.ru/mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 20368 Content-Type: text/html | clean |
http://whitepeaks.ru/goto/http://www.facebook.com/pages/The-White-Peaks/133054066748415?ref=hl | HTTP/1.1 302 Found Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 24 Feb 2015 23:46:13 GMT Pragma: no-cache Location: http://www.facebook.com/pages/The-White-Peaks/133054066748415?ref=hl Server: nginx/1.4.1 Content-Length: 622 Content-Type: text/html; charset="utf-8" Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://whitepeaks.ru/xmlrpc.php X-Powered-By: PHP/5.3.26 | clean |
http://www.facebook.com/pages/the-white-peaks/133054066748415?ref=hl | HTTP/1.1 302 Found Connection: close Date: Tue, 24 Feb 2015 23:46:13 GMT Location: https://www.facebook.com/pages/the-white-peaks/133054066748415?ref=hl Content-Length: 0 Content-Type: text/html; charset=utf-8 P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=RQ3tVIDTicoQVdMTIC--_t13; expires=Thu, 23-Feb-2017 23:46:13 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly X-Content-Type-Options: nosniff X-FB-Debug: QdcZrL1rauXs316yWhtA4hLVVEOZLrUzi2jA1tfWSeR274r6jXC2/20wzDya+llCaJntg1HWFiwKM5Nh8Kbyiw== X-UA-Compatible: IE=edge,chrome=1 | clean |
https://www.facebook.com/pages/the-white-peaks/133054066748415?ref=hl | HTTP/1.1 200 OK Connection: close Date: Tue, 24 Feb 2015 23:46:14 GMT Content-Length: 854 Content-Type: text/html;charset=utf-8 P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=Rg3tVNzgh52hiQEWH6LF2YZO; expires=Thu, 23-Feb-2017 23:46:14 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Fpages%2Fthe-white-peaks%2F133054066748415%3Fref%3Dhl; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Fpages%2Fthe-white-peaks%2F133054066748415%3Fref%3Dhl; path=/; domain=.facebook.com X-Content-Type-Options: nosniff X-FB-Debug: DoFcD4KzPLZXPkvAKkG6+X2tnCnjAzzY+m7oedEtZuwCNQsz2SiS25csGmti8vdqgGL0UaV3gQQtw3771y6Mrw== X-UA-Compatible: IE=edge,chrome=1 | clean |
http://www.facebook.com/test404page.js | 404 Not Found Content-Length: 72 Content-Type: text/html | clean |
http://www.facebook.com/ | HTTP/1.1 302 Found Connection: close Date: Tue, 24 Feb 2015 23:46:14 GMT Location: https://www.facebook.com/ Content-Length: 0 Content-Type: text/html; charset=utf-8 X-FB-Debug: B8LuZpvxtlyI1XI+POcOFUXRuq+/VLlunkgMQFQt55H0wcZQaqTmQ2JJzxLOhsbezybT0I93JV3wtOa7UcLI5A== | clean |
https://www.facebook.com/ | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:15 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=Rw3tVCl5LAXRaqRMrJZQDwDU; expires=Thu, 23-Feb-2017 23:46:15 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2F; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2F; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: x/ILUSvRQy30CqKEYxPFWIWaKuexg+zuF9PSM4dZrgu34ZHGxJ5OSbiGTknSnwziy4RksKIKS2j0MlmnuyJokg== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/?_fb_noscript=1 | 200 OK Content-Length: 48415 Content-Type: text/html | clean |
https://fbstatic-a.akamaihd.net/rsrc.php/v2/yR/r/GXN2l3aBNmj.js | 200 OK Content-Length: 108011 Content-Type: application/x-javascript | clean |
https://www.facebook.com/recover/initiate | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:16 GMT Pragma: no-cache Content-Length: 817 Content-Type: text/html;charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=SA3tVNWUpXlg-y_N2jJq9TTz; expires=Thu, 23-Feb-2017 23:46:16 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: TFnsX6E7A5phESJtwTcyAZ0r/3tSveApILN/opkqu7yOopamStBdE2GtiYk8ASj6emVIcd91eKVDbn6fevXSbw== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login/identify?ctx=recover | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:17 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=SQ3tVPpMEndTlYzP822CzjX3; expires=Thu, 23-Feb-2017 23:46:17 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: 4OiCK/jgXBAHeCAc7ytoJlEMKQQcRhC7uSiymTFfb4gQe3Ihh8Lq4zp48OEkZR6vYPf7JMEIRbwOd4KfLuD6Sg== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login/identify?ctx=recover&_fb_noscript=1 | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:17 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=SQ3tVOSKA2rXbs-joZR6esuC; expires=Thu, 23-Feb-2017 23:46:17 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: UWLwVbyB0lAmMN35zE2rAIMWyxxq6nNxN+m3RJWUq0n2/RryYLZ1sYAH0Hpw89f0wXY0weIRzGPVaTUb8XGqwg== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login/identify?ctx=recover&%3b_fb_noscript=1&_fb_noscript=1 | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:17 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=SQ3tVJaJ3Y-70xJzbLfW7qIw; expires=Thu, 23-Feb-2017 23:46:17 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253Bamp%253B_fb_noscript%3D1%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253Bamp%253B_fb_noscript%3D1%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: +xXMmd6G4CSPyh+4jSY6zX1ZQEtr2arpBoLBMV/QEo0gB/tvuDoBdf2qyMEjBVhEmA8Sns8iOiI2YYHdJjXpCg== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login/identify?ctx=recover&%3bamp%3b_fb_noscript=1&%3b_fb_noscript=1&_fb_noscript=1 | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:18 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=Sg3tVE-pRJMjzuni2lT8-Uwn; expires=Thu, 23-Feb-2017 23:46:18 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253Bamp%253Bamp%253B_fb_noscript%3D1%26amp%253Bamp%253B_fb_noscript%3D1%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253Bamp%253Bamp%253B_fb_noscript%3D1%26amp%253Bamp%253B_fb_noscript%3D1%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: 1/9O/Of6tG8ajmoQrYHuUIOK8iVBEs1VOo9lhNzsOkWArPbeE0AWbUwIdTWbVIVp/dgKIV81EOB7bZdRMywISg== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login/identify?ctx=recover&%3bamp%3bamp%3b_fb_noscript=1&%3bamp%3b_fb_noscript=1&%3b_fb_noscript=1&_fb_noscript=1 | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:18 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=Sg3tVGRFt90qoCvXp1YzivOx; expires=Thu, 23-Feb-2017 23:46:18 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253Bamp%253Bamp%253Bamp%253B_fb_noscript%3D1%26amp%253Bamp%253Bamp%253B_fb_noscript%3D1%26amp%253Bamp%253B_fb_noscript%3D1%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Flogin%2Fidentify%3Fctx%3Drecover%26amp%253Bamp%253Bamp%253Bamp%253B_fb_noscript%3D1%26amp%253Bamp%253Bamp%253B_fb_noscript%3D1%26amp%253Bamp%253B_fb_noscript%3D1%26amp%253B_fb_noscript%3D1; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: YJyUuRFNw3tmRR/XZG44Y66RSdFJ/AFcQZLRf3jToIwbA+Rz5Xyh6eT3zXVr6S/VoC05hH+WZsuYj/R1HyJ6iQ== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
http://www.facebook.com/legal/terms | HTTP/1.1 302 Found Connection: close Date: Tue, 24 Feb 2015 23:46:18 GMT Location: https://www.facebook.com/legal/terms Content-Length: 0 Content-Type: text/html; charset=utf-8 P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=Sg3tVPDaWvUYoacYTPJvIXR_; expires=Thu, 23-Feb-2017 23:46:18 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly X-Content-Type-Options: nosniff X-FB-Debug: 7wKpqZOYe8asuuCkGwbiDNf7ES3wZIsknco/2LGW/mj8xXulkIAPbp5R+vZl+Xsb3+tTqSJ/+2rGH5BT0ZVdVA== X-UA-Compatible: IE=edge,chrome=1 | clean |
https://www.facebook.com/legal/terms | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 24 Feb 2015 23:46:19 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Set-Cookie: datr=Sw3tVCRA-OJzCorlYSEPslB4; expires=Thu, 23-Feb-2017 23:46:19 GMT; Max-Age=63072000; path=/; domain=.facebook.com; httponly Set-Cookie: reg_ext_ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.facebook.com Set-Cookie: reg_fb_ref=https%3A%2F%2Fwww.facebook.com%2Flegal%2Fterms; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=https%3A%2F%2Fwww.facebook.com%2Flegal%2Fterms; path=/; domain=.facebook.com Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: HOzqWLsTPapnuyYSbeqqmlJ6NqCpkE5M9v7wdO3h2KHDLxLfonY6pd3fxmjVb0ulTKlu2bEwqct3SXQplnSjeA== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/legal/terms?_fb_noscript=1 | 200 OK Content-Length: 48983 Content-Type: text/html | clean |
https://fbstatic-a.akamaihd.net/rsrc.php/v2/yx/r/B67rGiOqstH.js | 200 OK Content-Length: 108043 Content-Type: application/x-javascript | clean |