Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yadroid.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yadroid.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://yadroid.com/ | 200 OK Content-Length: 88548 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="ru-RU"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="verify-admitad" content="335c712e29" /> <title>Yadroid.com - каÑалог Android пÑил ...[3984 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://yadroid.com/wp-content/themes/Yadroid/js/jquery-1.4.4.min.js | 200 OK Content-Length: 78601 Content-Type: application/javascript | clean |
http://yadroid.com/wp-content/themes/Yadroid/js/common.js | 200 OK Content-Length: 596 Content-Type: application/javascript | clean |
http://vkontakte.ru/js/api/share.js?10 | 200 OK Content-Length: 10156 Content-Type: application/x-javascript | clean |
http://userapi.com/js/api/openapi.js?23 | 200 OK Content-Length: 64063 Content-Type: application/x-javascript | clean |
http://yadroid.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://yadroid.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://yadroid.com/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/javascript | clean |
http://yadroid.com/wp-content/plugins/wp-autosuggest/js/wp.autosuggest.js?ver=1 | 200 OK Content-Length: 15972 Content-Type: application/javascript | clean |
http://yadroid.com/wp-content/plugins/wp-favorite-posts/wpfp.js?ver=3.8.2 | 200 OK Content-Length: 903 Content-Type: application/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 20008 Content-Type: text/javascript | clean |
http://yadroid.com/wp-includes/js/thickbox/thickbox.js?ver=3.1-20121105 | 200 OK Content-Length: 12324 Content-Type: application/javascript | clean |
http://yadroid.com/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.50 | 200 OK Content-Length: 3018 Content-Type: application/javascript | clean |
http://yadroid.com/login/ | 200 OK Content-Length: 15630 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="ru-RU"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="verify-admitad" content="335c712e29" /> <title>ÐвÑоÑизаÑÐ¸Ñ :: Yadroid.com - ÐºÐ°Ñ ...[3974 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://yadroid.com/register/ | 200 OK Content-Length: 16846 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="ru-RU"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="verify-admitad" content="335c712e29" /> <title>РегиÑÑÑаÑÐ¸Ñ :: Yadroid.com - ÐºÐ°Ñ ...[3974 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yadroid.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Mar 2015 17:31:12 GMT
Server: nginx
Content-Length: 88548
Content-Type: text/html; charset=UTF-8
X-Pingback: http://yadroid.com/xmlrpc.php
...88548 bytes of data.
GET / HTTP/1.1
Host: yadroid.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Mar 2015 17:31:12 GMT
Server: nginx
Content-Length: 88548
Content-Type: text/html; charset=UTF-8
X-Pingback: http://yadroid.com/xmlrpc.php
...88548 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: yadroid.com
Referer: http://www.google.com/search?q=yadroid.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yadroid.com
Referer: http://www.google.com/search?q=yadroid.com
Result:
The result is similar to the first query. There are no suspicious redirects found.