Scanned pages/files
Request | Server response | Status |
http://ferahmedical.com/ | 500 Internal Server Error Content-Length: 17696 Content-Type: text/html | clean |
http://ferahmedical.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/admin/composer/assets/js_composer_front.js?ver=3.9.2 | 200 OK Content-Length: 12437 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/bootstrap.min.js?ver=3.9.2 | 200 OK Content-Length: 22455 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/jquery.easing.1.3.js?ver=3.9.2 | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/jquery.cycle.min.js?ver=3.9.2 | 200 OK Content-Length: 26567 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/jquery.prettyPhoto.js?ver=3.9.2 | 200 OK Content-Length: 23508 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/jquery.validate.min.js?ver=3.9.2 | 200 OK Content-Length: 25307 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/jquery.jplayer.min.js?ver=3.9.2 | 200 OK Content-Length: 42856 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/jquery.preloader.js?ver=3.9.2 | 200 OK Content-Length: 1034 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/camera.js?ver=3.9.2 | 200 OK Content-Length: 68443 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ;(function($){$.fn.camera = function(opts, callback) { var defaults = { alignment : 'center', autoAdvance : true, mobileAutoAdvance : true, barDirection : 'leftToRight', barPosition : 'bottom', cols : 6, easing : 'easeInOutExpo', mobileEasing : '', fx : 'random', mobileFx : '', gridDifference : 250, } else { var camera_thumbs_wrap = wrap; } } })(jQuery); ;(function($){$.fn.cameraPause = function() { var wrap = $(this); var elem = $('.camera_src',wrap); elem.addClass('paused'); } })(jQuery); ;(function($){$.fn.cameraResume = function() { var wrap = $(this); var elem = $('.camera_src',wrap); if(typeof autoAdv === 'undefined' || autoAdv!==true){ elem.removeClass('paused'); } } })(jQuery); Antivirus reports:
| ||
http://ferahmedical.com/wp-content/themes/bulsarah/js/scripts.js?ver=3.9.2 | 200 OK Content-Length: 11533 Content-Type: application/javascript | clean |
http://ferahmedical.com/wp-content/themes/bulsarah/js/responsive.js?ver=3.9.2 | 200 OK Content-Length: 1607 Content-Type: application/javascript | clean |
http://ferahmedical.com/?page_id=12 | 500 Internal Server Error Content-Length: 13048 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ferahmedical.com
Result:
HTTP/1.1 500 Internal Server Error
Connection: close
Date: Fri, 22 Aug 2014 04:17:19 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
Link: <http://ferahmedical.com/>; rel=shortlink
X-Pingback: http://ferahmedical.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: ferahmedical.com
Result:
HTTP/1.1 500 Internal Server Error
Connection: close
Date: Fri, 22 Aug 2014 04:17:19 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
Link: <http://ferahmedical.com/>; rel=shortlink
X-Pingback: http://ferahmedical.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: ferahmedical.com
Referer: http://www.google.com/search?q=ferahmedical.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ferahmedical.com
Referer: http://www.google.com/search?q=ferahmedical.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ferahmedical.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ferahmedical.com/
Result: ferahmedical.com is not infected or malware details are not published yet.
Result: ferahmedical.com is not infected or malware details are not published yet.