Scanned pages/files
Request | Server response | Status |
http://www.76lubricants.com/ | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/ | clean |
http://www.phillips66lubricants.com/ | 200 OK Content-Length: 27855 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var axel = Math.random() + ""; var a = axel * 10000000000000; document.write('<iframe src="http://1871937.fls.doubleclick.net/activityi;src=1871937;type=conoc826;cat=conoc205;ord=' + a + '?" width="1" height="1" frameborder="0" style="display:none"></iframe>'); Antivirus reports:
Hidden iFrame found. size: 1x1 style: hidden src: http://1871937.fls.doubleclick.net/activityi;src=1871937;type=conoc826;cat=conoc205;ord=1? <iframe src="http://1871937.fls.doubleclick.net/activityi;src=1871937;type=conoc826;cat=conoc205;ord=1?" width="1" height="1" frameborder="0" style="display:none"> Hidden iFrame found. size: 1x1 style: hidden src: http://1871937.fls.doubleclick.net/activityi;src=1871937;type=conoc826;cat=conoc205;ord= <iframe src="http://1871937.fls.doubleclick.net/activityi;src=1871937;type=conoc826;cat=conoc205;ord=' + a + '?" width="1" height="1" frameborder="0" style="display:none"> | ||
http://www.phillips66lubricants.com/js/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/jqModal.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/jqModal.js | clean |
http://www.phillips66lubricants.com/js/jqmodal.js | 200 OK Content-Length: 4423 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/BubbleTooltips.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/BubbleTooltips.js | clean |
http://www.phillips66lubricants.com/bubbletooltips.js | 200 OK Content-Length: 2829 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/swfobject.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.76lubricants.com/test404page.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/test404page.js | clean |
http://www.phillips66lubricants.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://www.76lubricants.com/js/gatag.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/gatag.js | clean |
http://www.phillips66lubricants.com/js/gatag.js | 200 OK Content-Length: 2572 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/jquery.hoverIntent.minified.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/jquery.hoverIntent.minified.js | clean |
http://www.phillips66lubricants.com/js/jquery.hoverintent.minified.js | 200 OK Content-Length: 1464 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/browser.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/browser.js | clean |
http://www.phillips66lubricants.com/js/browser.js | 200 OK Content-Length: 2857 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/jquery.cycle.all.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/jquery.cycle.all.js | clean |
http://www.phillips66lubricants.com/js/jquery.cycle.all.js | 200 OK Content-Length: 51308 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/global.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/global.js | clean |
http://www.phillips66lubricants.com/js/global.js | 200 OK Content-Length: 12205 Content-Type: application/x-javascript | clean |
http://www.76lubricants.com/js/global_new.js | HTTP/1.1 302 Found Connection: close Location: http://www.phillips66lubricants.com/js/global_new.js | clean |
http://www.phillips66lubricants.com/js/global_new.js | 200 OK Content-Length: 2411 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 76lubricants.com
Result:
GET / HTTP/1.1
Host: 76lubricants.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 76lubricants.com
Referer: http://www.google.com/search?q=76lubricants.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 76lubricants.com
Referer: http://www.google.com/search?q=76lubricants.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=76lubricants.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://76lubricants.com/
Result: 76lubricants.com is not infected or malware details are not published yet.
Result: 76lubricants.com is not infected or malware details are not published yet.