Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nelliadycc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://nelliadycc.com/ | 200 OK Content-Length: 14210 Content-Type: text/html | clean |
http://nelliadycc.com/static/jquery/jquery-1.6.min.js | 200 OK Content-Length: 91378 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(a,b){function cw(a){return f.isWindow(a)?a:a.nodeType===9?a.defaultView||a.parentWindow:!1}function ct(a){if(!ch[a]){var b=f("<"+a+">").appendTo("body"),d=b.css("display");b.remove();if(d==="none"||d===""){ci||(ci=c.createElement("iframe"),ci.frameBorder=ci.width=ci.height=0),c.body.appendChild(ci);if(!cj||!ci.createElement)cj=(ci.contentWindow||ci.contentDocument).document,cj.write("<!doctype><html><body></body></html>");b=cj.createElement(a),cj.bod Antivirus reports:
| ||
http://nelliadycc.com/static/jquery/jquery-ui-1.8.12.custom.min.js | 200 OK Content-Length: 210608 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(c,j){function k(a){return!c(a).parents().andSelf().filter(function(){return c.curCSS(this,"visibility")==="hidden"||c.expr.filters.hidden(this)}).length}c.ui=c.ui||{};if(!c.ui.version){c.extend(c.ui,{version:"1.8.12",keyCode:{ALT:18,BACKSPACE:8,CAPS_LOCK:20,COMMA:188,COMMAND:91,COMMAND_LEFT:91,COMMAND_RIGHT:93,CONTROL:17,DELETE:46,DOWN:40,END:35,ENTER:13,ESCAPE:27,HOME:36,INSERT:45,LEFT:37,MENU:93,NUMPAD_ADD:107,NUMPAD_DECIMAL:110,NUMPAD_DIVIDE:111,NUMPAD_ENTER:108,NUMPAD_MULTIPLY:106, Antivirus reports:
| ||
http://nelliadycc.com/static/jquery/carousel.js | 200 OK Content-Length: 5435 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) jQuery.fn.carousel = function() { var element = $(this[0]); var args = arguments[0] || {}; var duration = args.duration; var direction = args.direction; var easing = args.easing; var imgSize; var imgWidth; var imgHeight; var auto = true; element.find("ul").append($("<li>")).find("li:last").append($(element.find("li:first").html())); imgSize = element.find("li").size(); var t = new Image(); t.src = elemen Antivirus reports:
| ||
http://nelliadycc.com/static/jquery/mbGallery.js | 200 OK Content-Length: 20609 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($){ $.mbGallery ={ name:"mb.gallery", author:"Matteo Bicocchi", version:"2.0.2", defaults:{ containment:"body", cssURL:"", skin:"white", overlayBackground:"#333", exifData:false, galleryTitle:"My Gallery", imageSelector: ".imgFull", thumbnailSelector: ".imgThumb", titleSelector: ".photoName", descSelector: ".photoDescription", minWidth: 0, Antivirus reports:
| ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21412 Content-Type: text/javascript | clean |
http://connect.facebook.net/en_US/all.js | 200 OK Content-Length: 163644 Content-Type: application/x-javascript | clean |
http://nelliadycc.com/index.php | 200 OK Content-Length: 14210 Content-Type: text/html | clean |
http://nelliadycc.com/news.php | 200 OK Content-Length: 8035 Content-Type: text/html | clean |
http://nelliadycc.com/photos.php | 200 OK Content-Length: 8069 Content-Type: text/html | clean |
http://nelliadycc.com/videos.php | 200 OK Content-Length: 7277 Content-Type: text/html | clean |
http://nelliadycc.com/index.php?login=true | 200 OK Content-Length: 14210 Content-Type: text/html | clean |
http://nelliadycc.com/test404page.js | 404 Not Found Content-Length: 395 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nelliadycc.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 29 Sep 2014 19:54:30 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e8qlchjtcm0cludp2pao464610; path=/
GET / HTTP/1.1
Host: nelliadycc.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 29 Sep 2014 19:54:30 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e8qlchjtcm0cludp2pao464610; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: nelliadycc.com
Referer: http://www.google.com/search?q=nelliadycc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nelliadycc.com
Referer: http://www.google.com/search?q=nelliadycc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.