Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=404live.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://404live.com/ | 200 OK Content-Length: 31215 Content-Type: text/html | clean |
http://404live.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://404live.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=3.8.3 | 200 OK Content-Length: 33 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/jquery.js?ver=1.0 | 200 OK Content-Length: 57254 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/jquery-ui.js?ver=1.0 | 200 OK Content-Length: 71880 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/fancybox/jquery.fancybox-1.3.0.js?ver=1.0 | 200 OK Content-Length: 27766 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/jquery.easing.js?ver=1.0 | 200 OK Content-Length: 8097 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/jquery.nivo.slider.js?ver=1.0 | 200 OK Content-Length: 15344 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { $.fn.nivoSlider = function(options) { var settings = $.extend({}, $.fn.nivoSlider.defaults, options); return this.each(function() { var vars = { currentSlide: 0, currentImage: '', totalSlides: 0, randAnim: '', running: false, paused: false, stop:false }; var slider = $(this); slider.data('nivo:vars', vars); slider.css('position','relative'); slider.addC directionNavHide:true, controlNav:true, controlNavThumbs:false, controlNavThumbsFromRel:false, controlNavThumbsSearch:'.jpg', controlNavThumbsReplace:'_thumb.jpg', keyboardNav:true, pauseOnHover:true, manualAdvance:false, captionOpacity:0.8, beforeChange: function(){}, afterChange: function(){}, slideshowEnd: function(){} }; $.fn._reverse = [].reverse; })(jQuery); Antivirus reports:
| ||
http://404live.com/wp-content/themes/404live/js/anythingSlider.js?ver=1.0 | 200 OK Content-Length: 11272 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/jquery.validate.js?ver=1.0 | 200 OK Content-Length: 25365 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/jquery.tipsy.js?ver=1.0 | 200 OK Content-Length: 4371 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/browser.js?ver=1.0 | 200 OK Content-Length: 2614 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/themes/404live/js/custom.js?ver=1.0 | 200 OK Content-Length: 4568 Content-Type: application/x-javascript | clean |
http://404live.com/wp-content/plugins/uploadify/js/jquery.uploadify.v2.1.0.js?ver=2.1.0 | 200 OK Content-Length: 12930 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 404live.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 23 Apr 2014 17:53:06 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Set-Cookie: PHPSESSID=oh3vbfd0uce4f3rqkdcenqub95; path=/
X-Pingback: http://404live.com/xmlrpc.php
GET / HTTP/1.1
Host: 404live.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 23 Apr 2014 17:53:06 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Set-Cookie: PHPSESSID=oh3vbfd0uce4f3rqkdcenqub95; path=/
X-Pingback: http://404live.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: 404live.com
Referer: http://www.google.com/search?q=404live.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 404live.com
Referer: http://www.google.com/search?q=404live.com
Result:
The result is similar to the first query. There are no suspicious redirects found.