Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=files.cv.lv
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://files.cv.lv/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://files.cv.lv/ | 200 OK Content-Length: 76053 Content-Type: text/html | malicious |
Page code contains blacklisted domain: www.cv.lv ...[3309 bytes skipped]... s: <span>+371 67356110</span><br /> Fakss: <span> +371 67356113</span> </div> </div><p style="padding-top: 15px; font-size: 11px; line-height: 30px; text-align: center;">Visi mÅ«su grupas darba sludinÄjumu portÄli: <a href="http://www.monster.fi" target="_blank">Somija</a> | <a href="http://www.cv.ee" target="_blank">Igaunija</a> | <a href="http://www.cv.lv" target="_blank">Latvija</a> | <a href="http://www.cvonline.lt" target="_blank" >Lietuva</a> | <a href="http://www.jobs.cz" target="_blank">Äehija</a> | <a href="http://www.profesia.sk" target="_blank">SlovÄkija</a> | <a href="http://poslovi.infostud.com" target="_blank">Serbija</a> | <a href="http://www.monster.hu" target="_blank">UngÄrija</a> | <a href="http://www.posao.ba" target="_blank">Bosnija un Herc ...[409 bytes skipped]... Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv//files.cv.lv/js/default.php/lati/files.cv.lv/1410947085/ | 404 Not Found Content-Length: 3629 Content-Type: text/html | malicious |
Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv//files.cv.lv/js/external.php/lati/files.cv.lv/1410947085/ | 404 Not Found Content-Length: 3629 Content-Type: text/html | malicious |
Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv//files.cv.lv/js/crossframe.js/ | 404 Not Found Content-Length: 3629 Content-Type: text/html | malicious |
Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv//files.cv.lv/ | 404 Not Found Content-Length: 3629 Content-Type: text/html | malicious |
Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv/index.php/ | 200 OK Content-Length: 77349 Content-Type: text/html | malicious |
Page code contains blacklisted domain: www.cv.lv ...[3151 bytes skipped]... s: <span>+371 67356110</span><br /> Fakss: <span> +371 67356113</span> </div> </div><p style="padding-top: 15px; font-size: 11px; line-height: 30px; text-align: center;">Visi mÅ«su grupas darba sludinÄjumu portÄli: <a href="http://www.monster.fi" target="_blank">Somija</a> | <a href="http://www.cv.ee" target="_blank">Igaunija</a> | <a href="http://www.cv.lv" target="_blank">Latvija</a> | <a href="http://www.cvonline.lt" target="_blank" >Lietuva</a> | <a href="http://www.jobs.cz" target="_blank">Äehija</a> | <a href="http://www.profesia.sk" target="_blank">SlovÄkija</a> | <a href="http://poslovi.infostud.com" target="_blank">Serbija</a> | <a href="http://www.monster.hu" target="_blank">UngÄrija</a> | <a href="http://www.posao.ba" target="_blank">Bosnija un Herc ...[589 bytes skipped]... Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv/cont_img/text_img/sliding-banner-script.js | 200 OK Content-Length: 1737 Content-Type: application/x-javascript | clean |
http://files.cv.lv/cont_img/text_img/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/x-javascript | clean |
http://files.cv.lv/cont_img/text_img/jquery.simpledialog.0.1.min.js | 200 OK Content-Length: 4933 Content-Type: application/x-javascript | clean |
http://files.cv.lv/cont_img/text_img/jquery.placeholder.min.js | 200 OK Content-Length: 2161 Content-Type: application/x-javascript | clean |
http://static1.nagi.ee/b/fl.js | 200 OK Content-Length: 6362 Content-Type: application/x-javascript | clean |
http://files.cv.lv/par-mums/ | 200 OK Content-Length: 26320 Content-Type: text/html | malicious |
Page code contains blacklisted domain: cv.lv ...[490 bytes skipped]... ll" /> <meta http-equiv="content-language" content="lv"/> <meta http-equiv="Robots" content="index,follow"/> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/> <meta http-equiv="copyright" content="CV-Online 1996 - 2013. Visas tiesÄ«bas aizsargÄtas."/> <meta http-equiv="X-UA-Compatible" content="IE=edge" /> <link rel="stylesheet" type="text/css" href="//files.cv.lv/css/style.css/1410947085"/> <link rel="shortcut icon" href="/favicon.ico"/> <link rel="icon" href="/favicon.ico"/> <!--[if IE]><link rel="stylesheet" type="text/css" href="//files.cv.lv/css/ie_only.css/1410947085"/><![endif]--> <!--[if IE 6]><link rel="stylesheet" type="text/css" href="//files.cv.lv/css/ie6_only.css/1410947085"/><![endif]--> <!--[if IE 7]><link rel="stylesheet" type="text/css" href="/ ...[3343 bytes skipped]... Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21394 Content-Type: text/javascript | clean |
http://files.cv.lv/darba-devejs/sazinieties-ar-mums | 200 OK Content-Length: 5687 Content-Type: text/html | malicious |
Page code contains blacklisted domain: cv.lv ...[1008 bytes skipped]... /> <meta http-equiv="content-language" content="lv"/> <meta http-equiv="Robots" content="index,follow"/> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/> <meta http-equiv="copyright" content="CV-Online 1996 - 2013. Visas tiesÄ«bas ir aizsargÄtas."/> <meta http-equiv="X-UA-Compatible" content="IE=edge" /> <link rel="stylesheet" type="text/css" href="//files.cv.lv/css/style.css/1410947085"/> <link rel="shortcut icon" href="/favicon.ico"/> <link rel="icon" href="/favicon.ico"/> <!--[if IE]><link rel="stylesheet" type="text/css" href="//files.cv.lv/css/ie_only.css/1410947085"/><![endif]--> <!--[if IE 6]><link rel="stylesheet" type="text/css" href="//files.cv.lv/css/ie6_only.css/1410947085"/><![endif]--> <!--[if IE 7]><link rel="stylesheet" type="text/css" href="// ...[3068 bytes skipped]... Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> | ||
http://files.cv.lv/darba-devejs/support@cv.lv | 200 OK Content-Length: 38015 Content-Type: text/html | malicious |
Page code contains blacklisted domain: cv.lv ...[879 bytes skipped]... /> <meta http-equiv="content-language" content="lv"/> <meta http-equiv="Robots" content="index,follow"/> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/> <meta http-equiv="copyright" content="CV-Online 1996 - 2013. Visas tiesÄ«bas ir aizsargÄtas."/> <meta http-equiv="X-UA-Compatible" content="IE=edge" /> <link rel="stylesheet" type="text/css" href="//files.cv.lv/css/style.css/1410947085"/> <link rel="shortcut icon" href="/favicon.ico"/> <link rel="icon" href="/favicon.ico"/> <!--[if IE]><link rel="stylesheet" type="text/css" href="//files.cv.lv/css/ie_only.css/1410947085"/><![endif]--> <!--[if IE 6]><link rel="stylesheet" type="text/css" href="//files.cv.lv/css/ie6_only.css/1410947085"/><![endif]--> <!--[if IE 7]><link rel="stylesheet" type="text/css" href="/ ...[2862 bytes skipped]... Malicious iFrame found. size: 1x1 src: http://files.cv.ee/static/stat.php/cvlv This URL is marked by Yandex as suspicious <iframe src ="http://files.cv.ee/static/stat.php/cvlv" width="1" height="1" frameborder="0" style="margin: 0px; padding: 0px;"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: files.cv.lv
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 18 Sep 2014 08:28:22 GMT
Pragma: no-cache
Via: 1.0 mantel.nagi.ee (squid/3.0.STABLE15)
Server: Apache
Vary: Accept-Encoding
Content-Language: lv
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Thu, 18 Sep 2014 08:28:22 GMT
P3P: CP="CAO PSA OUR"
ServerAddr: 90.190.106.190
ServerName: jope.nagi.ee
Set-Cookie: SESSID=8fmivo87ua6g4pqk0go1ojngp7; path=/
Set-Cookie: SESSID_new=8fmivo87ua6g4pqk0go1ojngp7; path=/
Set-Cookie: cookielang=lati; expires=Fri, 18-Sep-2015 08:28:22 GMT; path=/
X-Cache: MISS from mantel.nagi.ee
X-Cache-Lookup: MISS from mantel.nagi.ee:8080
X-Powered-By: PHP/5.3.8
GET / HTTP/1.1
Host: files.cv.lv
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 18 Sep 2014 08:28:22 GMT
Pragma: no-cache
Via: 1.0 mantel.nagi.ee (squid/3.0.STABLE15)
Server: Apache
Vary: Accept-Encoding
Content-Language: lv
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Thu, 18 Sep 2014 08:28:22 GMT
P3P: CP="CAO PSA OUR"
ServerAddr: 90.190.106.190
ServerName: jope.nagi.ee
Set-Cookie: SESSID=8fmivo87ua6g4pqk0go1ojngp7; path=/
Set-Cookie: SESSID_new=8fmivo87ua6g4pqk0go1ojngp7; path=/
Set-Cookie: cookielang=lati; expires=Fri, 18-Sep-2015 08:28:22 GMT; path=/
X-Cache: MISS from mantel.nagi.ee
X-Cache-Lookup: MISS from mantel.nagi.ee:8080
X-Powered-By: PHP/5.3.8
Second query (visit from search engine):
GET / HTTP/1.1
Host: files.cv.lv
Referer: http://www.google.com/search?q=files.cv.lv
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: files.cv.lv
Referer: http://www.google.com/search?q=files.cv.lv
Result:
The result is similar to the first query. There are no suspicious redirects found.