Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tr-agentstvo-navigator.062.ua
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tr-agentstvo-navigator.062.ua/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tr-agentstvo-navigator.062.ua/ | 200 OK Content-Length: 31598 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 062.ua ...[299 bytes skipped]... name="google-site-verification" content="cVCJcRo-CKacXFuJQoPidCVYdamynHJ9mGv7nAr96b4" /> <meta name='yandex-verification' content='56a51efbba9dbdcc' /> <link rel="shortcut icon" href="/favicon.ico" type="image/x-icon" /> <link id="page_favicon" href="/favicon.ico" rel="icon" type="image/x-icon" /> <title>ТÑенинговое агенÑÑÑво ÐавигаÑÐ¾Ñ â 062.ua</title> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta name="keywords" content="ТÑенинговое агенÑÑÑво ÐавигаÑоÑ" /> <meta name="description" content="ТÑÐµÐ½Ð¸Ð½Ð³Ð¾Ð²Ð°Ñ ÐºÐ¾Ð¼Ð¿Ð°Ð½Ð¸Ñ ÐавигаÑÐ¾Ñ â ÑÑÑÑкÑÑÑное подÑазделение кадÑовой компании ÐÐÐÐÐÐТÐР®, лидеÑа на ÑÑнке" /> <link href="http://062.ua/styleshe ...[35331 bytes skipped]... | ||
http://062.ua/javascripts/frontend/jquery-1.4.4.min.js | 200 OK Content-Length: 78601 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/jquery.tools.min.js | 200 OK Content-Length: 46538 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/jquery-ui-1.8.16.custom.min.js | 200 OK Content-Length: 201456 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/json2.js | 200 OK Content-Length: 17382 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/ZForms-jquery-3.0.4-min.js | 200 OK Content-Length: 124140 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/jquery.autocomplete.js | 200 OK Content-Length: 21881 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/jquery.bgiframe.min.js | 200 OK Content-Length: 1951 Content-Type: application/javascript | clean |
http://062.ua/javascripts/global.functions.js | 200 OK Content-Length: 13610 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/rounded-corners.js | 200 OK Content-Length: 42965 Content-Type: application/javascript | clean |
http://062.ua/javascripts/fancybox/jquery.fancybox-1.3.4.pack.js | 200 OK Content-Length: 15624 Content-Type: application/javascript | clean |
http://062.ua/javascripts/frontend/application.js?v7 | 200 OK Content-Length: 110052 Content-Type: application/javascript | clean |
http://tr-agentstvo-navigator.062.ua/forum/clientscript/vbulletin_md5.js?v=405 | 200 OK Content-Length: 9661 Content-Type: application/javascript | clean |
http://maps.google.com/maps?file=api&v=2&hl=ru&key=ABQIAAAAFgnOMNiFh4YP4Tb3oZOOFxTAipYenTyHeEG4wQYQ5wk3MQfqQxQIugzyQiQU6lgfBaqUN4C3JfMvuw | 200 OK Content-Length: 4829 Content-Type: text/javascript | clean |
http://062.ua/javascripts/frontend/maps_contact.js | 200 OK Content-Length: 4791 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tr-agentstvo-navigator.062.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 06 Apr 2014 11:31:43 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
Expires: Sun, 06 Apr 2014 00:00:00 GMT
Last-Modified: Sun, 06 Apr 2014 11:31:43 GMT
Set-Cookie: PHPSESSID=0l12dtba9oevimvt56k4vm5il0; path=/; domain=.062.ua
Set-Cookie: PHPSESSID=a2hglroa3aguoeatqpu4d0jj67; path=/; domain=.062.ua
Set-Cookie: company_id=20290d7390351043ce7e0ea61f375610
X-Powered-By: PleskLin
GET / HTTP/1.1
Host: tr-agentstvo-navigator.062.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 06 Apr 2014 11:31:43 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
Expires: Sun, 06 Apr 2014 00:00:00 GMT
Last-Modified: Sun, 06 Apr 2014 11:31:43 GMT
Set-Cookie: PHPSESSID=0l12dtba9oevimvt56k4vm5il0; path=/; domain=.062.ua
Set-Cookie: PHPSESSID=a2hglroa3aguoeatqpu4d0jj67; path=/; domain=.062.ua
Set-Cookie: company_id=20290d7390351043ce7e0ea61f375610
X-Powered-By: PleskLin
Second query (visit from search engine):
GET / HTTP/1.1
Host: tr-agentstvo-navigator.062.ua
Referer: http://www.google.com/search?q=tr-agentstvo-navigator.062.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tr-agentstvo-navigator.062.ua
Referer: http://www.google.com/search?q=tr-agentstvo-navigator.062.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.