New scan:

Malware Scanner report for 1205808.jjwxc.net--1205808.jjwxc.net

Malicious/Suspicious/Total urls checked
1/0/8
1 page has malicious code. See details below
Blacklists
OK
Suspicious redirects
Found
The website redirects visitors from search engines to the 3rd-party URL:
->http://www.jjwxc.net/oneauthor.php?authorid=1205808


The website "1205808.jjwxc.net--1205808.jjwxc.net" is most probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues. Here is our redirects fixing guide.
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://1205808.jjwxc.net--1205808.jjwxc.net/content/
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Wed, 04 Jun 2014 13:59:36 GMT
Location: http://www.jjwxc.net/oneauthor.php?authorid=1205808
Content-Length: 160
Content-Type: text/html
clean
http://www.jjwxc.net/oneauthor.php?authorid=1205808
200 OK
Content-Length: 13344
Content-Type: text/html
clean
http://w.cnzz.com/c.php?id=30075907
200 OK
Content-Length: 9622
Content-Type: application/javascript
clean
http://static.jjwxc.net/scripts/jquery.blockUI.pack.js
500 timeout
Content-Length: 30
Content-Type: text/plain
clean
http://static.jjwxc.net/test404page.js
500 timeout
Content-Length: 30
Content-Type: text/plain
clean
http://static.jjwxc.net/scripts/jjlogin.js?ver=20140415
200 OK
Content-Length: 10135
Content-Type: application/x-javascript
clean
http://static.jjwxc.net/scripts/main.120724.js?ver=20140523
200 OK
Content-Length: 13161
Content-Type: application/x-javascript
clean
http://js.adm.cnzz.net/js/abase.js
200 OK
Content-Length: 21394
Content-Type: application/x-javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function FixedRealShow(){return document.body?(this.init.apply(this,arguments),void 0):!1}(function(window){function FnRegister(e,t){return w[e]||(w[e]=t)}function parseParams(e){var t=map[e];return t?{id:e||e,af:t.af||!1,did:t.aid||0,slotType:t.stype,isbefore:t.pop||0,htmlcode:t._html||0,width:t._w||0,height:t._h||0,stime:1e3*t.time||5e3,ptime:1e3*t.parktime||0,loadtime:1e3*t.loadtime||0,closePosition:t.cb||0,scroll:t.sc||0,position:t.pos||0,mleft:t._m_left||0,mtop:t._m_top||0,ip:t.ip||"",isifr
... 21805 bytes are skipped ...
1]}},isSeen:function(e){var t=document.getElementById(e)||"";if(t){var o,i=this.getelemlocation(t),n=(document.documentElement.scrollTop+document.body.scrollTop,Math.max(document.body.scrollTop,document.documentElement.scrollTop,0));if(o="BackCompat"==document.compatMode?document.body.clientHeight:document.documentElement.clientHeight,i&&o+n>=i.y)return!0}return!1},addEvents:function(e,t,o){e.addEventListener?e.addEventListener(t,o,!1):e.attachEvent&&e.attachEvent("on"+t,o)}};

Antivirus reports:

Bkav
W32.HfsIframe.911c

Malicious/Suspicious Redirects

RequestServer responseStatus
URL: http://1205808.jjwxc.net--1205808.jjwxc.net/
(imitation of visitor from search engine)


GET / HTTP/1.1
Host: 1205808.jjwxc.net--1205808.jjwxc.net
Referer: http://www.google.com/search?q=redirect+check1
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Wed, 04 Jun 2014 13:59:36 GMT
Location: http://www.jjwxc.net/oneauthor.php?authorid=1205808
Content-Length: 160
Content-Type: text/html
suspicious

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=1205808.jjwxc.net--1205808.jjwxc.net

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://1205808.jjwxc.net--1205808.jjwxc.net/

Result: 1205808.jjwxc.net--1205808.jjwxc.net is not infected or malware details are not published yet.