Scanned pages/files
Request | Server response | Status |
http://c0nsumerreports.org/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:25 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://www.consumerreports.org/cro/index.htm | 200 OK Content-Length: 159203 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var axel = Math.random() + ""; var a = axel * 10000000000000; document.write('<iframe src="http://3775131.fls.doubleclick.net/activityi;src=3775131;type=invmedia;cat=cvutlljb;ord=' + a + '?" width="1" height="1" frameborder="0" style="display:none"></iframe>'); Antivirus reports:
Hidden iFrame found. size: 1x1 style: hidden src: http://3775131.fls.doubleclick.net/activityi;src=3775131;type=invmedia;cat=cvutlljb;ord=1? <iframe src="http://3775131.fls.doubleclick.net/activityi;src=3775131;type=invmedia;cat=cvutlljb;ord=1?" width="1" height="1" frameborder="0" style="display:none"> Hidden iFrame found. size: 1x1 style: hidden src: http://3775131.fls.doubleclick.net/activityi;src=3775131;type=invmedia;cat=cvutlljb;ord= <iframe src="http://3775131.fls.doubleclick.net/activityi;src=3775131;type=invmedia;cat=cvutlljb;ord=' + a + '?" width="1" height="1" frameborder="0" style="display:none"> | ||
http://www.consumerreports.org/etc/designs/cro/application-resources/scripts/jquery-1.11.0.min.js | 200 OK Content-Length: 96381 Content-Type: application/javascript | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/jquery-migrate-1.2.1.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:31 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://www.consumerreports.org/test404page.js | HTTP/1.1 404 Not Found Cache-Control: max-age=0, private, no-store, no-cache, must-revalidate Connection: close Date: Sat, 20 Sep 2014 17:32:32 GMT Accept-Ranges: bytes Server: Apache Vary: Accept-Encoding,User-Agent Content-Type: text/html; charset=UTF-8 X-PWI-Host-ID: web02 X-PWI-Service-Time: Serviced at unix time t=1411234352287091 in D=2500 microseconds X-PWI-Worker-Name: (null) | clean |
http://c0nsumerreports.org//cdn.optimizely.com/js/69071259.js/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:32 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/jquery.tools.min-1.2.5.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:32 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/jquery.cookie.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:33 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/header/scripts/header.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:33 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/header/scripts/typeahead.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:33 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/shared-resources/scripts/sx-render.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:33 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/oas_analytics.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:34 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/iframeDialog.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:34 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/resources/js/mbox.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:34 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/shared-resources/scripts/forsee-survey/foresee-code.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:35 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/shared-resources/scripts/forsee-survey/oeLauncher.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:35 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/shared-resources/scripts/event-handlers.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:35 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/jquery-ui-1.10.4.min.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:35 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/jquery.descriptionToolTip.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:36 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/recalls/scripts/jquery.zrssfeed.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:36 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/nav/scripts/home-nav-main.js | 500 Server closed connection without sending any data back Content-Length: 105 Content-Type: text/plain | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/magupsell/js/magupsell.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:36 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/shared-resources/scripts/user-info.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:37 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/header/scripts/auto-login.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:37 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/newsletter/scripts/newsletter.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:37 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/news/scripts/first-news-item.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:37 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/flyout/scripts/jquery.poshytip.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:38 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/scripts/bc-mapi.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:38 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://admin.brightcove.com/js/BrightcoveExperiences.js | 200 OK Content-Length: 33142 Content-Type: application/x-javascript | clean |
http://admin.brightcove.com/js/APIModules_all.js | 200 OK Content-Length: 76385 Content-Type: application/x-javascript | clean |
http://c0nsumerreports.org/etc/designs/cro/application-resources/modules/video/scripts/video.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:39 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://preferences.truste.com/webservices/js?domain=consumersunion.org&type=epref | 200 OK Content-Length: 17441 Content-Type: text/javascript | clean |
http://c0nsumerreports.org/etc/designs/cro/resources/js/conversion.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:40 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://c0nsumerreports.org/etc/designs/cro/shared-resources/scripts/s_code.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 20 Sep 2014 17:32:40 GMT Location: http://www.consumerreports.org/cro/index.htm Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://www.googleadservices.com/pagead/conversion.js | 200 OK Content-Length: 9447 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: c0nsumerreports.org
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 20 Sep 2014 17:32:25 GMT
Location: http://www.consumerreports.org/cro/index.htm
Server: Apache-Coyote/1.1
Content-Length: 0
...0 bytes of data.
GET / HTTP/1.1
Host: c0nsumerreports.org
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 20 Sep 2014 17:32:25 GMT
Location: http://www.consumerreports.org/cro/index.htm
Server: Apache-Coyote/1.1
Content-Length: 0
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: c0nsumerreports.org
Referer: http://www.google.com/search?q=c0nsumerreports.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: c0nsumerreports.org
Referer: http://www.google.com/search?q=c0nsumerreports.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=c0nsumerreports.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://c0nsumerreports.org/
Result: c0nsumerreports.org is not infected or malware details are not published yet.
Result: c0nsumerreports.org is not infected or malware details are not published yet.