Scanned pages/files
Request | Server response | Status |
http://xxxvizg.ru/ | 200 OK Content-Length: 5910 Content-Type: text/html | suspicious |
Suspicious code found <div class="bannerbg"> <div class="banner"><a href="/eromore/"><img src="/tpl/images/banner.jpg" alt="" /></a></div></div> | ||
http://xxxvizg.ru/js/jquery-1.8.2.min.js | 200 OK Content-Length: 93436 Content-Type: application/x-javascript | clean |
http://xxxvizg.ru/ili/ | 200 OK Content-Length: 7203 Content-Type: text/html | suspicious |
Suspicious code found <div class="head"> <a href="/ili/" class="logo left">I Like It! 18+</a> <div class="toptext right">ÐÑкÑой Ð´Ð»Ñ ÑÐµÐ±Ñ Ð¾ÑÑÑÐµÐ½Ð¸Ñ Ñ Ð½Ð¾Ð²Ñми ÑоÑо и видео в HD каÑеÑÑве, вÑегда лÑÑÑее и инÑеÑеÑное Ð´Ð»Ñ Ð´Ð¾ÑÑга!</div> <div class="clr"></div> </div> | ||
http://xxxvizg.ru/sysop.php?act=form&sp=login | 200 OK Content-Length: 8317 Content-Type: text/html | suspicious |
Suspicious code found <div class="bannerbg"> </div> | ||
http://xxxvizg.ru/sysop.php?act=form&sp=registration | 200 OK Content-Length: 61657 Content-Type: text/html | suspicious |
Suspicious code found <div class="bannerbg"> </div> | ||
http://xxxvizg.ru/sysop.php?act=page&sp=mt_rools | 200 OK Content-Length: 41257 Content-Type: text/html | suspicious |
Suspicious code found <div class="bannerbg"> </div> | ||
http://xxxvizg.ru/test404page.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://xxxvizg.ru/sysop.php?act=form&sp=registration&method=sms | 200 OK Content-Length: 21949 Content-Type: text/html | suspicious |
Suspicious code found <div class="bannerbg"> </div> | ||
http://xxxvizg.ru/sysop.php?act=form&sp=mt_cancel | 200 OK Content-Length: 10417 Content-Type: text/html | suspicious |
Suspicious code found <div class="bannerbg"> </div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xxxvizg.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 06 Mar 2015 03:21:16 GMT
Pragma: no-cache
Server: nginx/1.0.14
Content-Length: 5910
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=0tks13ap4g29ig0toih9aifo32; path=/
Set-Cookie: jc_country=lt; expires=Fri, 06-Mar-2015 06:21:16 GMT; path=/
Set-Cookie: jc_counted=1; expires=Fri, 06-Mar-2015 06:21:16 GMT; path=/
X-Powered-By: PHP/5.2.17
...5910 bytes of data.
GET / HTTP/1.1
Host: xxxvizg.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 06 Mar 2015 03:21:16 GMT
Pragma: no-cache
Server: nginx/1.0.14
Content-Length: 5910
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=0tks13ap4g29ig0toih9aifo32; path=/
Set-Cookie: jc_country=lt; expires=Fri, 06-Mar-2015 06:21:16 GMT; path=/
Set-Cookie: jc_counted=1; expires=Fri, 06-Mar-2015 06:21:16 GMT; path=/
X-Powered-By: PHP/5.2.17
...5910 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xxxvizg.ru
Referer: http://www.google.com/search?q=xxxvizg.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xxxvizg.ru
Referer: http://www.google.com/search?q=xxxvizg.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xxxvizg.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xxxvizg.ru/
Result: xxxvizg.ru is not infected or malware details are not published yet.
Result: xxxvizg.ru is not infected or malware details are not published yet.