Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=harvardcorp.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://harvardcorp.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 13:31:34 GMT Location: http://www.harvardcorp.com/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.harvardcorp.com/ | 200 OK Content-Length: 11665 Content-Type: text/html | clean |
http://www.harvardcorp.com/assets/templates/harvardcorp/js/jquery-1.4.3.min.js | 200 OK Content-Length: 78103 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(E,A){function U(){return false}function ba(){return true}function ja(a,b,d){d[0].type=a;return c.event.handle.apply(b,d)}function Ga(a){var b,d,e=[],f=[],h,k,l,n,s,v,B,D;k=c.data(this,this.nodeType?"events":"__events__");if(typeof k==="function")k=k.events;if(!(a.liveFired===this||!k||!k.live||a.button&&a.type==="click")){if(a.namespace)D=RegExp("(^|\\.)"+a.namespace.split(".").join("\\.(?:.*\\.)?")+"(\\.|$)");a.liveFired=this;var H=k.live.slice(0);for(n=0;n<H.length;n++){k= b],f.body["scroll"+b],f.documentElement["scroll"+b],f.body["offset"+b],f.documentElement["offset"+b]):e===A?parseFloat(c.css(f,d)):this.css(d,typeof e==="string"?e:e+"px") Antivirus reports:
| ||
http://harvardcorp.com/assets/templates/harvardcorp/js/equalheights.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 13:31:37 GMT Location: http://www.harvardcorp.com/assets/templates/harvardcorp/js/equalheights.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.harvardcorp.com/assets/templates/harvardcorp/js/equalheights.js | 200 OK Content-Length: 286 Content-Type: application/x-javascript | clean |
http://harvardcorp.com/assets/templates/harvardcorp/js/scripts.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 13:31:37 GMT Location: http://www.harvardcorp.com/assets/templates/harvardcorp/js/scripts.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.harvardcorp.com/assets/templates/harvardcorp/js/scripts.js | 200 OK Content-Length: 629 Content-Type: application/x-javascript | clean |
http://www.topfloortech.com/insitemetrics/uRMJ/ujutilv2.js | 200 OK Content-Length: 1935 Content-Type: text/html | clean |
http://www.topfloortech.com/test404page.js | 404 Not Found Content-Length: 297 Content-Type: text/html | clean |
http://harvardcorp.com/im_files.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 13:31:40 GMT Location: http://www.harvardcorp.com/im_files.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.harvardcorp.com/im_files.js | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/about-us.html/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/about-us.html/about-us.html/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/about-us.html/about-us.html/about-us.html/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/about-us.html/about-us.html/about-us.html/about-us.html/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
http://www.harvardcorp.com//www.googleadservices.com/pagead/conversion.js/about-us.html/about-us.html/about-us.html/about-us.html/about-us.html/about-us.html/about-us.html/ | 404 Not Found Content-Length: 6719 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: harvardcorp.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 17 Sep 2014 13:31:34 GMT
Location: http://www.harvardcorp.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
GET / HTTP/1.1
Host: harvardcorp.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 17 Sep 2014 13:31:34 GMT
Location: http://www.harvardcorp.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: harvardcorp.com
Referer: http://www.google.com/search?q=harvardcorp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: harvardcorp.com
Referer: http://www.google.com/search?q=harvardcorp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.