Scanned pages/files
Request | Server response | Status |
http://infotrever.com/ | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:20 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.infotriever.com/ | 200 OK Content-Length: 20670 Content-Type: text/html | clean |
http://www.infotriever.com/wp-includes/js/jquery/jquery.js?ver=1.3.2 | 200 OK Content-Length: 57276 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-includes/js/comment-reply.js?ver=20090102 | 200 OK Content-Length: 786 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/plugins/logo-slideshow/scripts/image-slideshow.js | 200 OK Content-Length: 3435 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/themes/infotriever/library/scripts/hoverIntent.js | 200 OK Content-Length: 1272 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/themes/infotriever/library/scripts/superfish.js | 200 OK Content-Length: 2566 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/themes/infotriever/library/scripts/supersubs.js | 200 OK Content-Length: 893 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/themes/infotriever/library/scripts/thematic-dropdowns.js | 200 OK Content-Length: 983 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/themes/infotriever/js/mootoolsT.js | 200 OK Content-Length: 74404 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var MooTools={version:'1.11'};function $defined(obj){return(obj!=undefined);};function $type(obj){if(!$defined(obj))return false;if(obj.htmlElement)return'element';var type=typeof obj;if(type=='object'&&obj.nodeName){switch(obj.nodeType){case 1:return'element';case 3:return(/\S/).test(obj.nodeValue)?'textnode':'whitespace';}} if(type=='object'||type=='function'){switch(obj.constructor){case Array:return'array';case RegExp:return'regexp';case Class:return'class';} if(typeof obj.le Antivirus reports:
| ||
http://www.infotriever.com/wp-content/themes/infotriever/js/mod_tabarts.js | 200 OK Content-Length: 6207 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-includes/js/jquery/jquery.form.js?ver=2.02m | 200 OK Content-Length: 8429 Content-Type: application/javascript | clean |
http://www.infotriever.com/wp-content/plugins/contact-form-7/scripts.js?ver=2.1.1 | 200 OK Content-Length: 4724 Content-Type: application/javascript | clean |
http://infotrever.com/?page_id=215 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:29 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.infotriever.com/test404page.js | 404 Not Found Content-Length: 1816 Content-Type: text/html | clean |
http://infotrever.com/?page_id=62 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:30 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=117 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:30 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=122 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:31 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=83 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:31 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=65 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:31 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=69 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:32 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=340 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:32 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=134 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:32 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=111 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:33 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=109 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:33 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=95 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:33 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
http://infotrever.com/?page_id=86 | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 19:28:33 GMT Server: nginx/1.4.1 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: infotrever.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 09 Jun 2014 19:28:20 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=iso-8859-1
GET / HTTP/1.1
Host: infotrever.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 09 Jun 2014 19:28:20 GMT
Server: nginx/1.4.1
Content-Type: text/html; charset=iso-8859-1
Second query (visit from search engine):
GET / HTTP/1.1
Host: infotrever.com
Referer: http://www.google.com/search?q=infotrever.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: infotrever.com
Referer: http://www.google.com/search?q=infotrever.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=infotrever.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://infotrever.com/
Result: infotrever.com is not infected or malware details are not published yet.
Result: infotrever.com is not infected or malware details are not published yet.