Scanned pages/files
Request | Server response | Status |
http://easytradecopier.com/ | 200 OK Content-Length: 32782 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) jQuery(document).ready(function($){ $('#slider-home-slider-0.elastic').eislideshow({ easing : 'easeOutExpo', titleeasing : 'easeOutExpo', titlespeed : 1200, autoplay : false, slideshow_interval : 3000, speed : 800, animation : 'sides' }); }); Antivirus reports:
| ||
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.4 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.widget.min.js?ver=1.10.4 | 200 OK Content-Length: 6521 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.mouse.min.js?ver=1.10.4 | 200 OK Content-Length: 2841 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.resizable.min.js?ver=1.10.4 | 200 OK Content-Length: 17409 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.position.min.js?ver=1.10.4 | 200 OK Content-Length: 6360 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.sortable.min.js?ver=1.10.4 | 200 OK Content-Length: 24110 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.draggable.min.js?ver=1.10.4 | 200 OK Content-Length: 18559 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.droppable.min.js?ver=1.10.4 | 200 OK Content-Length: 5984 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.accordion.min.js?ver=1.10.4 | 200 OK Content-Length: 8366 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.slider.min.js?ver=1.10.4 | 200 OK Content-Length: 10244 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.button.min.js?ver=1.10.4 | 200 OK Content-Length: 6873 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/jquery/ui/jquery.ui.tooltip.min.js?ver=1.10.4 | 200 OK Content-Length: 4781 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/underscore.min.js?ver=1.6.0 | 200 OK Content-Length: 14424 Content-Type: application/javascript | clean |
http://easytradecopier.com/wp-includes/js/backbone.min.js?ver=1.1.2 | 200 OK Content-Length: 19253 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: easytradecopier.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 05 Apr 2015 18:57:16 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://easytradecopier.com/>; rel=shortlink
Set-Cookie: PHPSESSID=76d443f0647e9d0ea2c502d5d1566a16; path=/
X-Pingback: http://easytradecopier.com/xmlrpc.php
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: easytradecopier.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 05 Apr 2015 18:57:16 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://easytradecopier.com/>; rel=shortlink
Set-Cookie: PHPSESSID=76d443f0647e9d0ea2c502d5d1566a16; path=/
X-Pingback: http://easytradecopier.com/xmlrpc.php
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: easytradecopier.com
Referer: http://www.google.com/search?q=easytradecopier.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: easytradecopier.com
Referer: http://www.google.com/search?q=easytradecopier.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=easytradecopier.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://easytradecopier.com/
Result: easytradecopier.com is not infected or malware details are not published yet.
Result: easytradecopier.com is not infected or malware details are not published yet.