Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xalol.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xalol.ru/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://xalol.ru/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:43:54 GMT Location: http://rublevskiypirs.ru/books?charset=utf-8&keyword=%D1%88%D1%83%D1%82%D0%BE%D1%87%D0%BD%D0%BE%D0%B5+%D0%B3%D0%B0%D0%B4%D0%B0%D0%BD%D0%B8%D0%B5+%D1%86%D1%8B%D0%B3%D0%B0%D0%BD%D0%BA%D0%B8+%D0%BD%D0%B0+%D1%81%D0%B2%D0%B0%D0%B4%D1%8C%D0%B1%D0%B5&v=3&id_mark=325 Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://rublevskiypirs.ru/books?charset=utf-8&keyword=%d1%88%d1%83%d1%82%d0%be%d1%87%d0%bd%d0%be%d0%b5+%d0%b3%d0%b0%d0%b4%d0%b0%d0%bd%d0%b8%d0%b5+%d1%86%d1%8b%d0%b3%d0%b0%d0%bd%d0%ba%d0%b8+%d0%bd%d0%b0+%d1%81%d0%b2%d0%b0%d0%b4%d1%8c%d0%b1%d0%b5&v=3&id_mark=325 | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 17 Jan 2015 02:43:54 GMT Pragma: no-cache Location: http://fporno.free-best-hosting.com Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 17 Jan 2015 02:43:54 GMT X-Powered-By: PHP/5.4.34 | clean |
http://fporno.free-best-hosting.com/ | 200 OK Content-Length: 44677 Content-Type: text/html | clean |
http://fporno.free-best-hosting.com//ajax.googleapis.com/ajax/libs/jquery/1.11.1/jquery.min.js/ | 200 OK Content-Length: 14 Content-Type: text/html | clean |
http://fporno.free-best-hosting.com/test404page.js | 200 OK Content-Length: 14 Content-Type: text/html | clean |
http://xalol.ru/wp-includes/js/jquery/jquery-migrate.min.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:09 GMT Location: http://restoran-bambuk.ru/404?keyword=jquery-migrate.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://restoran-bambuk.ru/404?keyword=jquery-migrate.rar | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 17 Jan 2015 02:44:10 GMT Pragma: no-cache Location: http://fast-rutracker.in/redirect/redirect.php?site=11&sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 17 Jan 2015 02:44:10 GMT X-Powered-By: PHP/5.4.34 | clean |
http://fast-rutracker.in/redirect/redirect.php?site=11&sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:58:34 GMT Location: http://dl20.softportalncc.name?sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip Server: nginx Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.27 | suspicious |
http://dl20.softportalncc.name?sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip/ | HTTP/1.1 302 Found Cache-Control: max-age=259200 Connection: close Date: Sat, 17 Jan 2015 02:44:10 GMT Pragma: no-cache Location: /?page=lending&key=archive755217.zip%2F Server: nginx/1.0.14 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Tue, 20 Jan 2015 02:44:10 GMT Set-Cookie: PHPSESSID=lv3i4gp6ie7js7utb6adrve8g2; path=/ X-Powered-By: PHP/5.3.10 | clean |
http://dl20.softportalncc.name?sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip/?page=lending&key=archive755217.zip%2f | HTTP/1.1 302 Found Cache-Control: max-age=259200 Connection: close Date: Sat, 17 Jan 2015 02:44:10 GMT Pragma: no-cache Location: /?page=lending&key=archive755217.zip%2F Server: nginx/1.0.14 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Tue, 20 Jan 2015 02:44:10 GMT Set-Cookie: PHPSESSID=35vlp1n7otk2bg7h1t1sol7bf7; path=/ X-Powered-By: PHP/5.3.10 | clean |
http://xalol.ru/wp-content/themes/KoRuDoTheme/js/modernizr.min.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:11 GMT Location: http://restoran-bambuk.ru/404?keyword=modernizr.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://restoran-bambuk.ru/404?keyword=modernizr.rar | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 17 Jan 2015 02:44:11 GMT Pragma: no-cache Location: http://fast-rutracker.in/redirect/redirect.php?site=11&sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 17 Jan 2015 02:44:11 GMT X-Powered-By: PHP/5.4.34 | clean |
http://xalol.ru/wp-content/themes/KoRuDoTheme/js/jquery.plugins.min.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:11 GMT Location: http://restoran-bambuk.ru/404?keyword=jquery.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://restoran-bambuk.ru/404?keyword=jquery.rar | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 17 Jan 2015 02:44:12 GMT Pragma: no-cache Location: http://fast-rutracker.in/redirect/redirect.php?site=11&sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 17 Jan 2015 02:44:12 GMT X-Powered-By: PHP/5.4.34 | clean |
http://xalol.ru/wp-includes/js/masonry.min.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:12 GMT Location: http://restoran-bambuk.ru/404?keyword=masonry.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://restoran-bambuk.ru/404?keyword=masonry.rar | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 17 Jan 2015 02:44:12 GMT Pragma: no-cache Location: http://fast-rutracker.in/redirect/redirect.php?site=11&sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 17 Jan 2015 02:44:12 GMT X-Powered-By: PHP/5.4.34 | clean |
http://xalol.ru/wp-includes/js/jquery/jquery.masonry.min.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:13 GMT Location: http://restoran-bambuk.ru/404?keyword=jquery.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://xalol.ru/wp-content/themes/KoRuDoTheme/js/jquery.fitvids.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:13 GMT Location: http://restoran-bambuk.ru/404?keyword=jquery.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://xalol.ru/wp-content/themes/KoRuDoTheme/js/theme.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 17 Jan 2015 02:44:13 GMT Location: http://restoran-bambuk.ru/404?keyword=theme.rar Server: nginx/1.4.3 Content-Type: text/html X-Powered-By: PHP/5.4.21-1~dotdeb.1 | clean |
http://restoran-bambuk.ru/404?keyword=theme.rar | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sat, 17 Jan 2015 02:44:13 GMT Pragma: no-cache Location: http://fast-rutracker.in/redirect/redirect.php?site=11&sid=491349525&buyer_sid=911441499&page=lending&key=archive755217.zip Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Sat, 17 Jan 2015 02:44:13 GMT X-Powered-By: PHP/5.4.34 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xalol.ru
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 17 Jan 2015 02:43:54 GMT
Location: http://rublevskiypirs.ru/books?charset=utf-8&keyword=%D1%88%D1%83%D1%82%D0%BE%D1%87%D0%BD%D0%BE%D0%B5+%D0%B3%D0%B0%D0%B4%D0%B0%D0%BD%D0%B8%D0%B5+%D1%86%D1%8B%D0%B3%D0%B0%D0%BD%D0%BA%D0%B8+%D0%BD%D0%B0+%D1%81%D0%B2%D0%B0%D0%B4%D1%8C%D0%B1%D0%B5&v=3&id_mark=325
Server: nginx/1.4.3
Content-Type: text/html
X-Powered-By: PHP/5.4.21-1~dotdeb.1
GET / HTTP/1.1
Host: xalol.ru
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 17 Jan 2015 02:43:54 GMT
Location: http://rublevskiypirs.ru/books?charset=utf-8&keyword=%D1%88%D1%83%D1%82%D0%BE%D1%87%D0%BD%D0%BE%D0%B5+%D0%B3%D0%B0%D0%B4%D0%B0%D0%BD%D0%B8%D0%B5+%D1%86%D1%8B%D0%B3%D0%B0%D0%BD%D0%BA%D0%B8+%D0%BD%D0%B0+%D1%81%D0%B2%D0%B0%D0%B4%D1%8C%D0%B1%D0%B5&v=3&id_mark=325
Server: nginx/1.4.3
Content-Type: text/html
X-Powered-By: PHP/5.4.21-1~dotdeb.1
Second query (visit from search engine):
GET / HTTP/1.1
Host: xalol.ru
Referer: http://www.google.com/search?q=xalol.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xalol.ru
Referer: http://www.google.com/search?q=xalol.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.