Scanned pages/files
Request | Server response | Status |
http://www.bbmgr.org/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=172800 Connection: close Date: Sun, 06 Jul 2014 15:42:34 GMT Location: http://bbmgr.org/ Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4 Content-Length: 225 Content-Type: text/html; charset=iso-8859-1 Expires: Tue, 08 Jul 2014 15:42:34 GMT | clean |
http://bbmgr.org/ | 200 OK Content-Length: 87582 Content-Type: text/html | clean |
http://bbmgr.org/wp-content/themes/Starkers/media/scripts/modernizr-1.6.min.js?ver=1.0 | 200 OK Content-Length: 9563 Content-Type: application/javascript | clean |
http://bbmgr.org/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://bbmgr.org/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://bbmgr.org/wp-content/plugins/countdown-timer/js/webtoolkit.sprintf.js?ver=3.0.5 | 200 OK Content-Length: 2148 Content-Type: application/javascript | clean |
http://a.adtpix.com/px/?id=10500 | 200 OK Content-Length: 405 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<script src="http://ads.yahoo.com/pixel?id=2107694&t=1"></script>'); document.write('<img height="1" width="1" style="border-style:none;" alt="" src="http://googleads.g.doubleclick.net/pagead/viewthroughconversion/1032687336/?label=m6vOCKjE5QMQ6J227AM&guid=ON&script=0"/>'); document.write('<script src="http://ib.adnxs.com/seg?add=458128&t=1" type="text/javascript"></script> '); Antivirus reports:
| ||
http://www.google-analytics.com/ga.js | 200 OK Content-Length: 40219 Content-Type: text/javascript | clean |
http://bbmgr.org/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/javascript | clean |
http://bbmgr.org/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.7.2 | 200 OK Content-Length: 8913 Content-Type: application/javascript | clean |
http://bbmgr.org/wp-content/plugins/countdown-timer/js/fergcorp_countdownTimer_java.js?ver=3.0.5 | 200 OK Content-Length: 4826 Content-Type: application/javascript | clean |
http://bbmgr.org/wp-content/plugins/wp-cycle/jquery.cycle.all.min.js?ver=2.9999.5 | 200 OK Content-Length: 33607 Content-Type: application/javascript | clean |
http://www.bbmgr.org/test404page.js | 404 Not Found Content-Length: 5728 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bbmgr.org
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=172800
Connection: close
Date: Sun, 06 Jul 2014 15:42:35 GMT
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4
Content-Type: text/html
Expires: Tue, 08 Jul 2014 15:42:35 GMT
X-Powered-By: PHP/5.4.25
GET / HTTP/1.1
Host: bbmgr.org
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=172800
Connection: close
Date: Sun, 06 Jul 2014 15:42:35 GMT
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4
Content-Type: text/html
Expires: Tue, 08 Jul 2014 15:42:35 GMT
X-Powered-By: PHP/5.4.25
Second query (visit from search engine):
GET / HTTP/1.1
Host: bbmgr.org
Referer: http://www.google.com/search?q=bbmgr.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bbmgr.org
Referer: http://www.google.com/search?q=bbmgr.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bbmgr.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bbmgr.org/
Result: bbmgr.org is not infected or malware details are not published yet.
Result: bbmgr.org is not infected or malware details are not published yet.