Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.agedcarechannel.com.au/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.agedcarechannel.com.au Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Date: Sun, 21 Sep 2014 19:21:26 GMT Location: http://vados.biz/go Server: Zeus/4.3 Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
URL: http://vados.biz/go/ (imitation of visitor from search engine) GET /go/ HTTP/1.1 Host: vados.biz Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Connection: close Date: Sun, 21 Sep 2014 19:21:00 GMT Location: http://online-canadapharmacy.com/ Server: nginx/1.4.1 Content-Length: 292 Content-Type: text/html; charset=iso-8859-1 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.agedcarechannel.com.au/ | 200 OK Content-Length: 29879 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) if (document.getElementById("form_plugins_url")) { var plugin_url = document.getElementById("form_plugins_url").value; } else { var plugin_url = ""; } Antivirus reports:
| ||
http://www.agedcarechannel.com.au/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=3.8.4 | 200 OK Content-Length: 33 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/test404page.js | 404 Not found Content-Length: 25920 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) if (document.getElementById("form_plugins_url")) { var plugin_url = document.getElementById("form_plugins_url").value; } else { var plugin_url = ""; } Antivirus reports:
| ||
http://www.agedcarechannel.com.au/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-includes/js/jquery/ | 403 Forbidden Content-Length: 921 Content-Type: text/html | clean |
http://www.agedcarechannel.com.au/a | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Date: Sun, 21 Sep 2014 19:21:40 GMT Pragma: no-cache Location: http://www.agedcarechannel.com.au/home/about-us/ Server: Zeus/4.3 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=8g9n4006s5tcdi0kf5hik8d781; path=/ X-Pingback: http://www.agedcarechannel.com.au/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.agedcarechannel.com.au/home/about-us/ | 200 OK Content-Length: 30646 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) if (document.getElementById("form_plugins_url")) { var plugin_url = document.getElementById("form_plugins_url").value; } else { var plugin_url = ""; } Antivirus reports:
| ||
http://www.agedcarechannel.com.au/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/persist.js?ver=3.8.4 | 200 OK Content-Length: 24995 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/store.js?ver=3.8.4 | 200 OK Content-Length: 5337 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ngg_store.js?ver=3.8.4 | 200 OK Content-Length: 894 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/form-maker/js/main_front_end.js?ver=3.8.4 | 200 OK Content-Length: 56963 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/form-maker/js/calendar.js?ver=3.8.4 | 200 OK Content-Length: 36556 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/form-maker/js/calendar-setup.js?ver=3.8.4 | 200 OK Content-Length: 4919 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/form-maker/js/calendar_function.js?ver=3.8.4 | 200 OK Content-Length: 15039 Content-Type: text/plain | clean |
http://www.agedcarechannel.com.au/wp-content/plugins/form-maker/js/jquery-ui.js?ver=3.8.4 | 200 OK Content-Length: 301367 Content-Type: text/plain | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=agedcarechannel.com.au
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://agedcarechannel.com.au/
Result: agedcarechannel.com.au is not infected or malware details are not published yet.
Result: agedcarechannel.com.au is not infected or malware details are not published yet.