Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=auto.feshev.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://auto.feshev.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://auto.feshev.com/ | 200 OK Content-Length: 16739 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: yachts.feshev.com <!DOCTYPE html><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="bg-bg" lang="bg-bg" dir="ltr" >
<head> <base href="http://auto.feshev.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="keywords" content="FESHEV.com - Import Cars from USA ÐÐ½Ð¾Ñ Ð½Ð° авÑомобили Ð¾Ñ Ð¡ÐЩ , Import Yachts and Accessoaries from USA ÐÐ½Ð¾Ñ Ð½Ð° Ð¯Ñ Ñи Ð ...[4449 bytes skipped]... | ||
http://auto.feshev.com/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://auto.feshev.com/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://auto.feshev.com/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://auto.feshev.com/templates/framelab/js/browserdetect.js | 200 OK Content-Length: 3145 Content-Type: application/javascript | clean |
http://auto.feshev.com/templates/framelab/js/Modernizr.js | 200 OK Content-Length: 12927 Content-Type: application/javascript | clean |
http://auto.feshev.com/templates/framelab/js/ie_suckerfish.js | 200 OK Content-Length: 416 Content-Type: application/javascript | clean |
http://auto.feshev.com/index.php | 200 OK Content-Length: 16739 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: yachts.feshev.com <!DOCTYPE html><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="bg-bg" lang="bg-bg" dir="ltr" >
<head> <base href="http://auto.feshev.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="keywords" content="FESHEV.com - Import Cars from USA ÐÐ½Ð¾Ñ Ð½Ð° авÑомобили Ð¾Ñ Ð¡ÐЩ , Import Yachts and Accessoaries from USA ÐÐ½Ð¾Ñ Ð½Ð° Ð¯Ñ Ñи Ð ...[4449 bytes skipped]... | ||
http://auto.feshev.com/import-cars-from-usa | 200 OK Content-Length: 18471 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: yachts.feshev.com <div class="contact"> <div class="email">Telefon: 666977944</div><br><div class="email">Email: office@office.eu</div></div> <!--end contact--> <div class="dd-object964560789" data-left="0%"></div> <div class="dd-object1431017770" data-left="100%"></div> <div class="animacja"><!--slideshow--> <!-- Begin Slider --> ...[4738 bytes skipped]... | ||
http://auto.feshev.com/import-yachts-and-accessoaries-from-usa | 200 OK Content-Length: 10310 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: images.feshev.com ...[3171 bytes skipped]... hts and Accessoaries from USA</strong></a></h2> <h2><a href="http://yacht.feshev.com"><strong>ÐÐ½Ð¾Ñ Ð½Ð° </strong></a><a href="http://yacht.feshev.com"><strong>Ð¯Ñ Ñи и акÑеÑоаÑи<br /></strong></a></h2> </td> </tr> <tr> <td align="center"><a href="http://yacht.feshev.com"><img src="/images.feshev.com/feshev.com_poster2.jpg" border="0" alt=" " width="300" height="200" /></a> </td> </tr> </tbody> <tbody> <tr> <td style="text-align: center;" align="center"> <h2><a href="http://yacht.feshev.com"><strong>ÐоÑоÑни и веÑÑÐ¾Ñ Ð¾Ð´Ð½Ð¸ ÑÑ Ñи, лодки, колеÑаÑи, двигаÑели и вÑÑкакÑв вид акÑеÑоаÑи за ÑÑÑ .</strong></a></h ...[890 bytes skipped]... | ||
http://auto.feshev.com/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://auto.feshev.com/templates/beez5/javascript/md_stylechanger.js | 200 OK Content-Length: 2104 Content-Type: application/javascript | clean |
http://auto.feshev.com/templates/beez5/javascript/hide.js | 200 OK Content-Length: 8145 Content-Type: application/javascript | clean |
http://auto.feshev.com/import-yachts-and-accessoaries-from-usa/import-yachts-and-accessoaries-from-usa | 200 OK Content-Length: 11656 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: yachts.feshev.com <!DOCTYPE html><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="bg-bg" lang="bg-bg" dir="ltr" >
<head> <base href="http://auto.feshev.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="keywords" content="import, usa, yachts, accessoaries, акÑеÑоаÑи, двигаÑели, колеÑаÑи, вид, ÑÑÑ , за, лодки, вÑÑкакÑв, Ð²Ð½Ð¾Ñ ...[4386 bytes skipped]... | ||
http://auto.feshev.com/hotelfeshevcom/accommodation-in-kiten | 200 OK Content-Length: 10507 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: yachts.feshev.com <!DOCTYPE html><html xmlns="http://www.w3.org/1999/xhtml" xml:lang="bg-bg" lang="bg-bg" dir="ltr" >
<head> <base href="http://auto.feshev.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="keywords" content="accommodation, kiten, fridge, wifi, restaurant, conditioner, киÑен, hotel.feshev.com, наÑÑанÑване, air" /> <meta name="right ...[4496 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: auto.feshev.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Wed, 20 Aug 2014 17:30:17 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 85b88bed42a954a88cc473b2b02d06d3=mqg1ueh8qp3i6sr1sqj3k3uio7; path=/
X-Powered-By: PHP/5.4.4-14+deb7u12
GET / HTTP/1.1
Host: auto.feshev.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Wed, 20 Aug 2014 17:30:17 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 85b88bed42a954a88cc473b2b02d06d3=mqg1ueh8qp3i6sr1sqj3k3uio7; path=/
X-Powered-By: PHP/5.4.4-14+deb7u12
Second query (visit from search engine):
GET / HTTP/1.1
Host: auto.feshev.com
Referer: http://www.google.com/search?q=auto.feshev.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: auto.feshev.com
Referer: http://www.google.com/search?q=auto.feshev.com
Result:
The result is similar to the first query. There are no suspicious redirects found.