Scanned pages/files
Request | Server response | Status |
http://www.carainvestasi.com/ | 200 OK Content-Length: 13946 Content-Type: text/html | clean |
http://www.carainvestasi.com/templates/jv_dilo/js/jv.script.js.php | 200 OK Content-Length: 77946 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var MooTools={version:'1.11'};function $defined(obj){return(obj!=undefined);};function $type(obj){if(!$defined(obj))return false;if(obj.htmlElement)return'element';var type=typeof obj;if(type=='object'&&obj.nodeName){switch(obj.nodeType){case 1:return'element';case 3:return(/\S/).test(obj.nodeValue)?'textnode':'whitespace';}} if(type=='object'||type=='function'){switch(obj.constructor){case Array:return'array';case RegExp:return'regexp';case Class:return'class';} if(typeof obj.le { if(!str || typeof str != 'string') return null; return str.replace(/^[\s]+/,'').replace(/[\s]+$/,'').replace(/[\s]{2,}/,' '); } function hide_nocontent(){ var title = $('jv-maincontent'); if (title) { var titlestring = "a" + trim(title.innerHTML); if (titlestring.length <= 15) { $('mdl-content').setStyle('display','none'); } } } window.addEvent('load', function(){ hide_nocontent(); }); Antivirus reports:
| ||
http://www.carainvestasi.com/plugins/content/attachments_refresh.js | 200 OK Content-Length: 1560 Content-Type: application/javascript | clean |
http://www.carainvestasi.com/media/system/js/modal.js | 200 OK Content-Length: 10588 Content-Type: application/javascript | clean |
http://www.carainvestasi.com/plugins/system/jv_zoom/cloudzoom.js | 200 OK Content-Length: 5784 Content-Type: application/javascript | clean |
http://www.carainvestasi.com/modules/mod_jv_cu3er/assets/js/swfobject/swfobject.js | 200 OK Content-Length: 25560 Content-Type: application/javascript | clean |
http://www.carainvestasi.com/templates/jv_dilo/jv_menus/jv_moomenu/jv.moomenu.js | 200 OK Content-Length: 3127 Content-Type: application/javascript | clean |
http://www.carainvestasi.com/investasi.html | 200 OK Content-Length: 26017 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.asuransikendaraan.net <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb"> <head> <base href="http://www.carainvestasi.com/investasi.html" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta n ...[4601 bytes skipped]... | ||
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 149571 Content-Type: application/x-javascript | clean |
http://www.carainvestasi.com/produk-investasi.html | 404 Article #54 not found Content-Length: 1394 Content-Type: text/html | clean |
http://www.carainvestasi.com/index.php | 200 OK Content-Length: 26034 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.asuransikendaraan.net <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb"> <head> <base href="http://www.carainvestasi.com/index.php" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name=" ...[4609 bytes skipped]... | ||
http://www.carainvestasi.com/berita.html | 200 OK Content-Length: 36232 Content-Type: text/html | clean |
http://www.carainvestasi.com/perencanaan-keuangan.html | 200 OK Content-Length: 28048 Content-Type: text/html | clean |
http://www.carainvestasi.com/peluang-usaha-bisnis.html | 200 OK Content-Length: 143990 Content-Type: text/html | clean |
http://www.carainvestasi.com/peluang-usaha-bisnis/binis-pulsa-elektrik.html | 200 OK Content-Length: 144536 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: carainvestasi.com
Result:
GET / HTTP/1.1
Host: carainvestasi.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: carainvestasi.com
Referer: http://www.google.com/search?q=carainvestasi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: carainvestasi.com
Referer: http://www.google.com/search?q=carainvestasi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=carainvestasi.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://carainvestasi.com/
Result: carainvestasi.com is not infected or malware details are not published yet.
Result: carainvestasi.com is not infected or malware details are not published yet.