Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=alejandravillagomez.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://alejandravillagomez.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.alejandravillagomez.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 07 Mar 2015 17:57:14 GMT Location: http://alejandravillagomez.com/ Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 | clean |
http://alejandravillagomez.com/ | 200 OK Content-Length: 24459 Content-Type: text/html | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/jquery-1.7.min.js | 200 OK Content-Length: 94020 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/jqtransform.js | 200 OK Content-Length: 14084 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/jquery.prettyPhoto.js | 200 OK Content-Length: 34377 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/superfish.js | 200 OK Content-Length: 3800 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ;(function($){ $.fn.superfish = function(op){ var sf = $.fn.superfish, c = sf.c, $arrow = $(['<span class="',c.arrowClass,'"> »</span>'].join('')), over = function(){ var $$ = $(this), menu = getMenu($$); clearTimeout(menu.sfTimer); $$.showSuperfishUl().siblings().hideSuperfishUl(); }, out = function(){ var $$ = $(this), menu = getMenu($$), o = sf.op; cle showSuperfishUl : function(){ var o = sf.op, sh = sf.c.shadowClass+'-off', $ul = this.not('.accorChild').addClass(o.hoverClass) .find('>ul:hidden'); sf.IE7fix.call($ul); o.onBeforeShow.call($ul); $ul.animate(o.animation,o.speed,function(){ sf.IE7fix.call($ul); o.onShow.call($ul); }); return this; } }); })(jQuery); jQuery(function(){ jQuery('.sf-menu').superfish() }) Antivirus reports:
| ||
http://alejandravillagomez.com/skin/frontend/default/theme409/js/jquery.easing.1.3.js | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/jquery.flexslider-min.js | 200 OK Content-Length: 16377 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/easyTooltip.js | 200 OK Content-Length: 1883 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/default/theme409/js/jquery.jcarousel.min.js | 200 OK Content-Length: 15650 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/base/default/js/al-carrousel.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://alejandravillagomez.com/cgi-sys/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: application/javascript | clean |
http://alejandravillagomez.com/skin/frontend/base/default/js/ | 200 OK Content-Length: 629 Content-Type: text/html | clean |
http://alejandravillagomez.com/skin/frontend/base/default/ | 200 OK Content-Length: 531 Content-Type: text/html | clean |
http://alejandravillagomez.com/skin/frontend/base/ | 200 OK Content-Length: 364 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: alejandravillagomez.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 07 Mar 2015 17:57:17 GMT
Pragma: no-cache
Server: nginx/1.6.2
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: frontend=0ee8f53f98f9218672fe60112f49e263; expires=Sun, 08-Mar-2015 03:57:16 GMT; path=/; domain=alejandravillagomez.com; HttpOnly
GET / HTTP/1.1
Host: alejandravillagomez.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 07 Mar 2015 17:57:17 GMT
Pragma: no-cache
Server: nginx/1.6.2
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: frontend=0ee8f53f98f9218672fe60112f49e263; expires=Sun, 08-Mar-2015 03:57:16 GMT; path=/; domain=alejandravillagomez.com; HttpOnly
Second query (visit from search engine):
GET / HTTP/1.1
Host: alejandravillagomez.com
Referer: http://www.google.com/search?q=alejandravillagomez.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: alejandravillagomez.com
Referer: http://www.google.com/search?q=alejandravillagomez.com
Result:
The result is similar to the first query. There are no suspicious redirects found.