Scanned pages/files
Request | Server response | Status |
http://djberrio.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 03 Mar 2015 14:28:17 GMT Location: http://www.djberrio.com/ Server: ghs Content-Length: 221 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic,p=0.08 X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.djberrio.com/ | 200 OK Content-Length: 181260 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
https://newopenw3.googlecode.com/svn/trunk/jquery.blockUI.min.js?ver=2.60 | 200 OK Content-Length: 9260 Content-Type: text/javascript | clean |
https://newopenw3.googlecode.com/svn/trunk/jquery.placeholder.min.js?ver=2.0.20 | 200 OK Content-Length: 2263 Content-Type: text/javascript | clean |
https://www.blogger.com/static/v1/widgets/2773501920-widgets.js | 200 OK Content-Length: 90097 Content-Type: text/javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12790 Content-Type: application/javascript | clean |
http://djberrio.com/search?max-results=3 | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 03 Mar 2015 14:28:20 GMT Location: http://www.djberrio.com/search?max-results=3 Server: ghs Content-Length: 241 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic,p=0.08 X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.djberrio.com/search?max-results=3 | 200 OK Content-Length: 181568 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
https://www.blogger.com/static/v1/widgets/3512243057-widgets.js | 200 OK Content-Length: 90257 Content-Type: text/javascript | clean |
http://djberrio.com//www.blogger.com/rearrange?blogID=7505827551497777817&widgetType=HTML&widgetId=HTML3&action=editWidget§ionId=sidebar/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 03 Mar 2015 14:28:22 GMT Location: http://www.djberrio.com//www.blogger.com/rearrange?blogID=7505827551497777817&widgetType=HTML&widgetId=HTML3&action=editWidget§ionId=sidebar/ Server: ghs Content-Length: 358 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic,p=0.08 X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.djberrio.com//www.blogger.com/rearrange?blogid=7505827551497777817&widgettype=html&widgetid=html3&action=editwidget§ionid=sidebar/ | 404 Not Found Content-Length: 162758 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com/p/contacta.html | 200 OK Content-Length: 164461 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com//www.blogger.com/rearrange?blogID=7505827551497777817&widgetType=HTML&widgetId=HTML3&action=editWidget§ionId=sidebar/ | 404 Not Found Content-Length: 162759 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com//www.blogger.com/rearrange?blogID=7505827551497777817&widgetType=ContactForm&widgetId=ContactForm1&action=editWidget§ionId=sidebar/ | 404 Not Found Content-Length: 162800 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com/2012/02/sesion-san-valentin-dj-berrio.html | 200 OK Content-Length: 169257 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com/search/label/dj%20berrio | 200 OK Content-Length: 243178 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com/2014/09/sesion-san-miguel-2014.html | 200 OK Content-Length: 168315 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
| ||
http://www.djberrio.com/search/label/2014 | 200 OK Content-Length: 168537 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var postperpage=3; var numshowpage=5; var upPageWord ='<<'; var downPageWord ='>>'; var urlactivepage=location.href; var home_page="/"; Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: djberrio.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 03 Mar 2015 14:28:17 GMT
Location: http://www.djberrio.com/
Server: ghs
Content-Length: 221
Content-Type: text/html; charset=UTF-8
Alternate-Protocol: 80:quic,p=0.08
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
...221 bytes of data.
GET / HTTP/1.1
Host: djberrio.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 03 Mar 2015 14:28:17 GMT
Location: http://www.djberrio.com/
Server: ghs
Content-Length: 221
Content-Type: text/html; charset=UTF-8
Alternate-Protocol: 80:quic,p=0.08
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
...221 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: djberrio.com
Referer: http://www.google.com/search?q=djberrio.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: djberrio.com
Referer: http://www.google.com/search?q=djberrio.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=djberrio.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://djberrio.com/
Result: djberrio.com is not infected or malware details are not published yet.
Result: djberrio.com is not infected or malware details are not published yet.