Scanned pages/files
Request | Server response | Status |
http://faz.ujed.mx/ | 200 OK Content-Length: 11609 Content-Type: text/html | clean |
http://faz.ujed.mx/pop-closeup.js | 200 OK Content-Length: 1872 Content-Type: application/javascript | clean |
http://faz.ujed.mx/javascripts.js | 200 OK Content-Length: 8433 Content-Type: application/javascript | clean |
http://faz.ujed.mx/menu_horz.js | 200 OK Content-Length: 1194 Content-Type: application/javascript | clean |
http://faz.ujed.mx/header.js | 200 OK Content-Length: 2590 Content-Type: application/javascript | clean |
http://faz.ujed.mx/search.js | 200 OK Content-Length: 1650 Content-Type: application/javascript | clean |
http://faz.ujed.mx/menu.js | 200 OK Content-Length: 3307 Content-Type: application/javascript | clean |
http://faz.ujed.mx/sidebar.js | 200 OK Content-Length: 2384 Content-Type: application/javascript | clean |
http://faz.ujed.mx/menu_footer.js | 200 OK Content-Length: 1133 Content-Type: application/javascript | clean |
http://faz.ujed.mx/copyright.js | 200 OK Content-Length: 255 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
document.write('©Copyright 2014 '); document.write('<a href="index.html" target="_top">FAZ-UJED</a> '); document.write('Derechos Reservados<br>'); Antivirus reports:
| ||
http://faz.ujed.mx/copyright-allwebco.js | 200 OK Content-Length: 348 Content-Type: application/javascript | clean |
http://faz.ujed.mx/contacto.htm | 200 OK Content-Length: 9276 Content-Type: text/html | clean |
http://faz.ujed.mx/contact.js | 200 OK Content-Length: 609 Content-Type: application/javascript | clean |
http://faz.ujed.mx/Posgrado/index.html | 200 OK Content-Length: 4240 Content-Type: text/html | clean |
http://faz.ujed.mx/Posgrado/javascripts.js | 200 OK Content-Length: 79 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: faz.ujed.mx
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 03:05:21 GMT
Accept-Ranges: bytes
ETag: "c13e0-2d59-503f86a132280"
Server: Apache/2.2.12 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 11609
Content-Type: text/html
Last-Modified: Fri, 26 Sep 2014 14:05:49 GMT
...11609 bytes of data.
GET / HTTP/1.1
Host: faz.ujed.mx
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 03:05:21 GMT
Accept-Ranges: bytes
ETag: "c13e0-2d59-503f86a132280"
Server: Apache/2.2.12 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 11609
Content-Type: text/html
Last-Modified: Fri, 26 Sep 2014 14:05:49 GMT
...11609 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: faz.ujed.mx
Referer: http://www.google.com/search?q=faz.ujed.mx
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: faz.ujed.mx
Referer: http://www.google.com/search?q=faz.ujed.mx
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=faz.ujed.mx
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://faz.ujed.mx/
Result: faz.ujed.mx is not infected or malware details are not published yet.
Result: faz.ujed.mx is not infected or malware details are not published yet.