Scanned pages/files
Request | Server response | Status |
http://bbb.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 05 Aug 2014 04:10:29 GMT Location: http://www.bbb.org Server: DNSME HTTP Redirection Content-Length: 0 | clean |
http://www.bbb.org/ | 200 OK Content-Length: 9191 Content-Type: text/html | clean |
http://www.bbb.org//translate.google.com/translate_a/element.js?cb=googleTranslateElementInit/ | 404 Not Found Content-Length: 13498 Content-Type: text/html | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery-1.9.1.min.js | 200 OK Content-Length: 92629 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery-migrate-1.2.1.min.js | 200 OK Content-Length: 7199 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery-ui-1.10.3.custom.min.js | 200 OK Content-Length: 228137 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery.iealert.min.js | 200 OK Content-Length: 2266 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery.superfish.js | 200 OK Content-Length: 6728 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery.tools.min.js | 200 OK Content-Length: 3152 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/Libraries/jquery.fitvid.js | 200 OK Content-Length: 3386 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/BBB/BBBGoogleTranslate.js | 200 OK Content-Length: 204 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/BBB/BBBGeneralUtilities.js | 200 OK Content-Length: 1552 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/BBB/BBBHeaderFooterScript.js | 200 OK Content-Length: 6393 Content-Type: application/x-javascript | clean |
http://www.bbb.org/static/error_pages/Scripts/BBB/BBBGeneralScript.js | 200 OK Content-Length: 17231 Content-Type: application/x-javascript | clean |
http://www.bbb.org/council/ | 200 OK Content-Length: 30360 Content-Type: text/html | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 149265 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(typeof(stlib)=="undefined"){var stlib={}}if(!stlib.functions){stlib.functions=[];stlib.functionCount=0}stlib.global={};stlib.global.hash=document.location.href.split("#");stlib.global.hash.shift();stlib.global.hash=stlib.global.hash.join("#");stlib.dynamicOn=true;stlib.debugOn=false;stlib.debug={count:0,messages:[],debug:function(b,a){if(a&&(typeof console)!="undefined"){console.log(b)}stlib.debug.messages.push(b)},show:function(a){for(message in stlib.debug.messages){if((typeof conso Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bbb.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 05 Aug 2014 04:10:29 GMT
Location: http://www.bbb.org
Server: DNSME HTTP Redirection
Content-Length: 0
...0 bytes of data.
GET / HTTP/1.1
Host: bbb.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 05 Aug 2014 04:10:29 GMT
Location: http://www.bbb.org
Server: DNSME HTTP Redirection
Content-Length: 0
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bbb.com
Referer: http://www.google.com/search?q=bbb.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bbb.com
Referer: http://www.google.com/search?q=bbb.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bbb.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bbb.com/
Result: bbb.com is not infected or malware details are not published yet.
Result: bbb.com is not infected or malware details are not published yet.