bagaznik.ru - URL scan, 22 Aug 2026
MalwareAnalyzer by Cyble scanned bagaznik.ru and returned a unknown verdict (score -6). The page resolved to 87.236.16.8 on Beget Ltd in RU. 3 domains and 2 IPs were contacted. The request followed 3 redirects before landing. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -6) · Confidence 12%
- Scanned URL:
http://avtokit116.ru/!upload/files/33925556928.pdf - Domain: bagaznik.ru · IP: 87.236.16.8 · AS198610 · RU
- Server: nginx-reuseport/1.21.1
- Page title: Ошибка 404
- HTTP status: 404 · text/html; charset=utf-8
- TLS issuer: C=US, O=Let's Encrypt, CN=YR2 · valid to Oct 14 06: · subject CN=bagaznik.ru
- Scan tier: standard · observed 2026-08-22 17:30:16 UTC
Redirect chain
http://avtokit116.ru/!upload/files/33925556928.pdfhttp://bagaznik.ru/!upload/files/33925556928.pdfhttps://bagaznik.ru/!upload/files/33925556928.pdfhttps://bagaznik.ru/!upload/files/33925556928.pdf/
Antivirus & YARA (0 of 48 engines)
No engine flagged this page's content.
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
- Cross-host redirect chain
Detected technologies
- Nginx
- PHP
Contacted infrastructure
- 87.236.16.8 - AS198610 Beget Ltd (Russian Federation)
- 95.163.244.136 - AS197695 Domain names registrar REG.RU, Ltd (Russian Federation)
Observed indicators
- bagaznik.ru
- fonts.googleapis.com
- www.diafan.ru
- 87.236.16.8
- 95.163.244.136
- https://bagaznik.ru/!upload/files/33925556928.pdf/
- https://fonts.googleapis.com/css?family=Open+Sans:400italic,400,700&subset=latin,cyrillic
- https://bagaznik.ru/
- https://bagaznik.ru/custom/my/img/logo404.png
- https://bagaznik.ru/search/
- https://www.diafan.ru/img/error404/loupe.png
Questions about bagaznik.ru
- Is bagaznik.ru safe?
- The scan of bagaznik.ru on 22 Aug 2026 reached no verdict either way (score -6). Too little was captured to judge it, which is an unknown rather than a pass.
- How was bagaznik.ru checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of bagaznik.ru
Scanned on MalwareAnalyzer by Cyble · Open interactive scan