Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=americanlycetuff.edu.pk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://americanlycetuff.edu.pk/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 15 Sep 2014 11:08:23 GMT Location: http://www.americanlycetuff.edu.pk/ Server: nginx/1.6.1 Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.americanlycetuff.edu.pk/xmlrpc.php | clean |
http://www.americanlycetuff.edu.pk/ | 200 OK Content-Length: 25355 Content-Type: text/html | clean |
http://www.americanlycetuff.edu.pk//ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 15 Sep 2014 11:08:26 GMT Pragma: no-cache Location: http://www.americanlycetuff.edu.pk/ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js/ Server: nginx/1.6.1 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://www.americanlycetuff.edu.pk/xmlrpc.php | clean |
http://www.americanlycetuff.edu.pk/ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js/ | 404 Not Found Content-Length: 23767 Content-Type: text/html | clean |
http://ajax.aspnetcdn.com/ajax/jquery.validate/1.11.1/jquery.validate.min.js | 200 OK Content-Length: 21068 Content-Type: application/x-javascript | clean |
http://www.americanlycetuff.edu.pk/wp-content/themes/americanlycetuff/js/jquery.bxslider.min.js | 200 OK Content-Length: 50593 Content-Type: application/javascript | clean |
http://www.americanlycetuff.edu.pk/wp-content/themes/americanlycetuff/js/menu.js | 200 OK Content-Length: 6618 Content-Type: application/javascript | clean |
http://www.americanlycetuff.edu.pk/wp-content/themes/americanlycetuff/js/jquery.fancybox-1.3.4.pack.js | 200 OK Content-Length: 15624 Content-Type: application/javascript | clean |
http://www.americanlycetuff.edu.pk/wp-content/plugins/g-lock-double-opt-in-manager/js/glock2.min.js | 200 OK Content-Length: 69612 Content-Type: application/javascript | clean |
http://www.americanlycetuff.edu.pk/wp-content/plugins/g-lock-double-opt-in-manager/js/gsom_s.min.js | 200 OK Content-Length: 4054 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function gsom_isEmail(a){return a.match(/\b([_a-z0-9-]+(\.[_a-z0-9-]+)*)@([_a-z0-9-]+(\.[_a-z0-9-]+)*)(\.([a-z]{2,10}))\b/gi)}function gsmoStripSymbols(a){return a.replace(/[\s]+/g,"_").replace(/[^A-Za-z0-9\_]+/g,"").substring(0,20)}function gsomBuildForm(e){e=e||{};var b=e.arr||[],d=e.place||"gsom-fields-list",a=e.makeDivs||false,c=a?"div":"li";if(glock.isDef(b)){for(var f=0;f<b.length;f++){MakeFormFieldListItem({ul:d,label:b[f].label,type:b[f].type,value:b[f].value,name:b[f].name,checked:b[ Antivirus reports:
| ||
http://www.americanlycetuff.edu.pk/wp-content/themes/americanlycetuff/js/jquery.jcarousel.min.js | 200 OK Content-Length: 15643 Content-Type: application/javascript | clean |
http://www.americanlycetuff.edu.pk/about-us/ | 200 OK Content-Length: 27035 Content-Type: text/html | clean |
http://www.americanlycetuff.edu.pk/franchise/ | 200 OK Content-Length: 29840 Content-Type: text/html | clean |
http://www.americanlycetuff.edu.pk/admission/ | 200 OK Content-Length: 26828 Content-Type: text/html | clean |
http://www.americanlycetuff.edu.pk/branches/ | 200 OK Content-Length: 43266 Content-Type: text/html | clean |
http://www.americanlycetuff.edu.pk/matric/ | 200 OK Content-Length: 26169 Content-Type: text/html | clean |
http://www.americanlycetuff.edu.pk/o-level/ | 200 OK Content-Length: 27513 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: americanlycetuff.edu.pk
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 15 Sep 2014 11:08:23 GMT
Location: http://www.americanlycetuff.edu.pk/
Server: nginx/1.6.1
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.americanlycetuff.edu.pk/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: americanlycetuff.edu.pk
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 15 Sep 2014 11:08:23 GMT
Location: http://www.americanlycetuff.edu.pk/
Server: nginx/1.6.1
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.americanlycetuff.edu.pk/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: americanlycetuff.edu.pk
Referer: http://www.google.com/search?q=americanlycetuff.edu.pk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: americanlycetuff.edu.pk
Referer: http://www.google.com/search?q=americanlycetuff.edu.pk
Result:
The result is similar to the first query. There are no suspicious redirects found.