Scanned pages/files
Request | Server response | Status |
http://wizardgenerator.livejournal.com/ | 200 OK Content-Length: 54367 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=487894059&r=839556007&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=487894059&r=839556007&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://l-stat.livejournal.net/js/??.ljlib.js?v=1395917130 | 200 OK Content-Length: 301184 Content-Type: application/x-javascript | clean |
http://l-stat.livejournal.net/js/??cda/aacv3.js,jquery/jquery.lj.calendar.js,jquery/jquery.mask.js,controlstrip.js,jquery/jquery.lj.repostbutton.js,s2.js,esn.js,jquery/jquery.lj.confirmbubble.js,jquery/jquery.lj.ljcut.js,fb-select-image.js,jquery/jquery.lj.inlineCalendar.js,jquery/jquery.calendarEvents.js,apps.js,apps/appcontainer.js,jquery/jquery.lj.journalPromoStrip.js,ljlive.js,ljlive/brand.double.js?v=1395917130 | 200 OK Content-Length: 301184 Content-Type: application/x-javascript | clean |
http://counter.rambler.ru/top100.jcn?1111412 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://wizardgenerator.livejournal.com/profile | 200 OK Content-Length: 43898 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=504987173&r=285005070&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=504987173&r=285005070&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://l-stat.livejournal.net/js/??cda/aacv3.js,profile_new.js,jquery/jquery.lj.socialconnections.js,lanzelot-adaptive.js,ljlive.js,ljlive/brand.double.js?v=1395917130 | 200 OK Content-Length: 277549 Content-Type: application/x-javascript | clean |
http://l-stat.livejournal.net/js/??ads/adfox.reload_code.embeds.js,ads/adfox.asyn.code.ver3.js,ads/adfox.asyn.code.scroll.js?v=1395917130 | 200 OK Content-Length: 11779 Content-Type: application/x-javascript | clean |
http://wizardgenerator.livejournal.com// | 200 OK Content-Length: 54367 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=487894059&r=839556007&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=487894059&r=839556007&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://wizardgenerator.livejournal.com/friends | 200 OK Content-Length: 59564 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=734147849&r=493532350&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=734147849&r=493532350&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://l-stat.livejournal.net/js/??cda/aacv3.js,jquery/jquery.lj.calendar.js,jquery/jquery.mask.js,controlstrip.js,jquery/jquery.lj.repostbutton.js,s2.js,esn.js,jquery/jquery.lj.confirmbubble.js,jquery/jquery.lj.ljcut.js,fb-select-image.js,jquery/jquery.lj.inlineCalendar.js,jquery/jquery.calendarEvents.js,apps.js,apps/appcontainer.js,ljlive.js,ljlive/brand.double.js?v=1395917130 | 200 OK Content-Length: 302339 Content-Type: application/x-javascript | clean |
http://wizardgenerator.livejournal.com/calendar | 200 OK Content-Length: 43235 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=239684153&r=511369828&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=239684153&r=511369828&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://wizardgenerator.livejournal.com/data/rss | 200 OK Content-Length: 8042 Content-Type: text/xml | clean |
http://wizardgenerator.livejournal.com/test404page.js | 404 Not Found Content-Length: 5428 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=572647587&r=97179482&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=572647587&r=97179482&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://wizardgenerator.livejournal.com/2014/01/ | 200 OK Content-Length: 39178 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=91856415&r=393011753&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=91856415&r=393011753&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> | ||
http://wizardgenerator.livejournal.com/2014/02/ | 200 OK Content-Length: 39141 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://cnt.sup.com/adv?i1=000100000425433e&vid=660347552&r=284186571&srv=23&cp=&adzone=cnt_ljcom_noad_journal <iframe src='http://cnt.sup.com/adv?i1=000100000425433e&vid=660347552&r=284186571&srv=23&cp=&adzone=cnt_ljcom_noad_journal' frameborder='0' scrolling='no' id='adframe' style='width: 1px; height: 1px'> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wizardgenerator.livejournal.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, proxy-revalidate
Connection: close
Date: Mon, 31 Mar 2014 20:33:54 GMT
Age: 0
ETag: GgZzKo1CAB1V/Dav5pOh+Hw7/w
Server: nginx
Vary: Accept-Encoding,ETag
Content-MD5: Ko1CAB1V/Dav5pOh+Hw7/w
Content-Type: text/html; charset=utf-8
Set-Cookie: ljident=2986612140.20480.0000;domain=.livejournal.com; path=/
X-AWS-Id: ws16
X-Beta: http://varnish
X-Gateway: bil1-swlb10.prod.livejournal.org
X-Varnish: 1172301781 1172301737
X-VWS-Id: bil1-varn22
GET / HTTP/1.1
Host: wizardgenerator.livejournal.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, proxy-revalidate
Connection: close
Date: Mon, 31 Mar 2014 20:33:54 GMT
Age: 0
ETag: GgZzKo1CAB1V/Dav5pOh+Hw7/w
Server: nginx
Vary: Accept-Encoding,ETag
Content-MD5: Ko1CAB1V/Dav5pOh+Hw7/w
Content-Type: text/html; charset=utf-8
Set-Cookie: ljident=2986612140.20480.0000;domain=.livejournal.com; path=/
X-AWS-Id: ws16
X-Beta: http://varnish
X-Gateway: bil1-swlb10.prod.livejournal.org
X-Varnish: 1172301781 1172301737
X-VWS-Id: bil1-varn22
Second query (visit from search engine):
GET / HTTP/1.1
Host: wizardgenerator.livejournal.com
Referer: http://www.google.com/search?q=wizardgenerator.livejournal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wizardgenerator.livejournal.com
Referer: http://www.google.com/search?q=wizardgenerator.livejournal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wizardgenerator.livejournal.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wizardgenerator.livejournal.com/
Result: wizardgenerator.livejournal.com is not infected or malware details are not published yet.
Result: wizardgenerator.livejournal.com is not infected or malware details are not published yet.