Scanned pages/files
Request | Server response | Status |
http://www.primaryecp.com/ | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/ Content-Type: text/html | clean |
https://www.primaryecp.com/ | HTTP/1.1 302 Found Date: Thu, 21 Aug 2014 20:46:26 GMT Location: http://www.primaryecp.com/Home.aspx Server: Microsoft-IIS/7.5 Content-Length: 0 X-Powered-By: ASP.NET X-Redirected-By: nUrlRewriter | clean |
http://www.primaryecp.com/home.aspx | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/home.aspx Content-Type: text/html | clean |
https://www.primaryecp.com/home.aspx | 200 OK Content-Length: 49059 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) Sys.CultureInfo.prototype._getAbbrMonthIndex = function(value) { if (!this._upperAbbrMonths) { this._upperAbbrMonths = this._toUpperArray(this.dateTimeFormat.AbbreviatedMonthNames); } return Array.indexOf(this._upperAbbrMonths, this._toUpper(value)); }; var __wpmExportWarning='This Web Part Page has been personalized. As a result, one or more Web Part properties may contain confidential information. Make sure the properties contain information that is safe Antivirus reports:
| ||
https://www.primaryecp.com/../App_Themes/PrimaryECP/builder.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/test404page.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/test404page.js Content-Type: text/html | clean |
https://www.primaryecp.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/effects.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/effects.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/effects.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/slider_002.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/slider_002.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/slider_002.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/menu.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/menu.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/menu.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/jquery-1.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/jquery-1.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/jquery-1.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/cycle-fade-effect.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/cycle-fade-effect.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/cycle-fade-effect.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/slider.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/slider.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/slider.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/../App_Themes/PrimaryECP/SpryMenuBar.js | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/../App_Themes/PrimaryECP/SpryMenuBar.js Content-Type: text/html | clean |
https://www.primaryecp.com/../app_themes/primaryecp/sprymenubar.js | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.primaryecp.com/WebResource.axd?d=5KEIqkagJp6Y4iuevH9eFv_XyzVXzwiqUZhsHT3wNJ330kNVdIeztN1S1u7mEzZH9sJTIOnjwCuyk_v99bHmQ9sxPm01&t=635305361256861852 | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/WebResource.axd?d=5KEIqkagJp6Y4iuevH9eFv_XyzVXzwiqUZhsHT3wNJ330kNVdIeztN1S1u7mEzZH9sJTIOnjwCuyk_v99bHmQ9sxPm01&t=635305361256861852 Content-Type: text/html | clean |
https://www.primaryecp.com/webresource.axd?d=5keiqkagjp6y4iuevh9efv_xyzvxzwiquzhsht3wnj330knvdieztn1s1u7mezzh9sjtionjwcuyk_v99bhmq9sxpm01&t=635305361256861852 | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:38 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/webresource.axd Server: Microsoft-IIS/7.5 Content-Length: 180 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=YmVRY4m9zwEkAAAAZWQ3M2IwNTUtNzE1ZC00M2FmLWJlM2UtMGNiZDVjMDBmOTc00; expires=Thu, 21-Aug-2014 21:46:39 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
https://www.primaryecp.com/static/errorpage.aspx?aspxerrorpath=/webresource.axd | 200 OK Content-Length: 1266 Content-Type: text/html | clean |
http://www.primaryecp.com/WebResource.axd?d=wxAiKK32d6axhEHSMbHSJHvo71X40uuwRpTs94l5gnEuasC2UWEhiwO35V-aqItLuntbeCuUPICGFmoro48oboTCTZsJKnhtLHYT96shDFkLJKIZ0&t=635432554843777407 | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/WebResource.axd?d=wxAiKK32d6axhEHSMbHSJHvo71X40uuwRpTs94l5gnEuasC2UWEhiwO35V-aqItLuntbeCuUPICGFmoro48oboTCTZsJKnhtLHYT96shDFkLJKIZ0&t=635432554843777407 Content-Type: text/html | clean |
https://www.primaryecp.com/webresource.axd?d=wxaikk32d6axhehsmbhsjhvo71x40uuwrpts94l5gneuasc2uwehiwo35v-aqitluntbecuupicgfmoro48obotctzsjknhtlhyt96shdfkljkiz0&t=635432554843777407 | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:40 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/webresource.axd Server: Microsoft-IIS/7.5 Content-Length: 180 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=gv5bZIm9zwEkAAAAMDc3YWRjZGItNTVmYy00MGFjLThkNzQtMDkzOTgxNjJmMzdj0; expires=Thu, 21-Aug-2014 21:46:40 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://www.primaryecp.com/ScriptResource.axd?d=rEnaWIIoihNU8u-5zT4_xJAAZI4tNkRCQTjRSsxP5UvtL7gfuS1LYnZqZF2QPFvaCFY9VvWyaq5vsdtI5soSha8O5YHttCCJTyQawCn-j4YbDmiWA8tSVTm58EWtqKQezfZqCMajRg_A2M-RtW3wNI3GF9Q1&t=2e2045e2 | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/ScriptResource.axd?d=rEnaWIIoihNU8u-5zT4_xJAAZI4tNkRCQTjRSsxP5UvtL7gfuS1LYnZqZF2QPFvaCFY9VvWyaq5vsdtI5soSha8O5YHttCCJTyQawCn-j4YbDmiWA8tSVTm58EWtqKQezfZqCMajRg_A2M-RtW3wNI3GF9Q1&t=2e2045e2 Content-Type: text/html | clean |
https://www.primaryecp.com/scriptresource.axd?d=renawiioihnu8u-5zt4_xjaazi4tnkrcqtjrssxp5uvtl7gfus1lynzqzf2qpfvacfy9vvwyaq5vsdti5sosha8o5yhttccjtyqawcn-j4ybdmiwa8tsvtm58ewtqkqezfzqcmajrg_a2m-rtw3wni3gf9q1&t=2e2045e2 | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:41 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/scriptresource.axd Server: Microsoft-IIS/7.5 Content-Length: 183 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=HHr7ZIm9zwEkAAAANTk5ZjQyYTgtMTNhMS00YzMxLTljYjctYzQxNDA0YzI0Njc50; expires=Thu, 21-Aug-2014 21:46:41 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
https://www.primaryecp.com/static/errorpage.aspx?aspxerrorpath=/scriptresource.axd | 200 OK Content-Length: 1269 Content-Type: text/html | clean |
http://www.primaryecp.com/ScriptResource.axd?d=03GpLP8VaVjl26MeaQAEdrMYFm6PbHuIAvCCaUl900neC0CBdX_dp573PyI336VPzKfHtrcRher3F2jZT_JJF7c2IrxMJ_MVDg0axGfb8KzhF1iZBdKphRe9NNjdTGfj8gb-DrrqvC1cxp-Vgm3j0jMOTtdiA1PVFV_nEaBklLz0riez0&t=2e2045e2 | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/ScriptResource.axd?d=03GpLP8VaVjl26MeaQAEdrMYFm6PbHuIAvCCaUl900neC0CBdX_dp573PyI336VPzKfHtrcRher3F2jZT_JJF7c2IrxMJ_MVDg0axGfb8KzhF1iZBdKphRe9NNjdTGfj8gb-DrrqvC1cxp-Vgm3j0jMOTtdiA1PVFV_nEaBklLz0riez0&t=2e2045e2 Content-Type: text/html | clean |
https://www.primaryecp.com/scriptresource.axd?d=03gplp8vavjl26meaqaedrmyfm6pbhuiavccaul900nec0cbdx_dp573pyi336vpzkfhtrcrher3f2jzt_jjf7c2irxmj_mvdg0axgfb8kzhf1izbdkphre9nnjdtgfj8gb-drrqvc1cxp-vgm3j0jmottdia1pvfv_neabkllz0riez0&t=2e2045e2 | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:42 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/scriptresource.axd Server: Microsoft-IIS/7.5 Content-Length: 183 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=-NUKZom9zwEkAAAAODVkZDAxOGUtMjBhOC00OTAyLTgxNWEtYjY0OTk3YTQ2MTYy0; expires=Thu, 21-Aug-2014 21:46:43 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://www.primaryecp.com/ScriptResource.axd?d=MiIcA6H-yIkENcZAIfBaQqmMKKHa0O5_6vduI-BY4edMTpPv5viNla35UmPo5YVEIViTmpzkpxxZ9uEaQXT4tXExs4SIpXzB4Epb6OEO1f5TVvQKQbLesSTTpM_GFRxW3lXh0g2&t=6fd2091f | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/ScriptResource.axd?d=MiIcA6H-yIkENcZAIfBaQqmMKKHa0O5_6vduI-BY4edMTpPv5viNla35UmPo5YVEIViTmpzkpxxZ9uEaQXT4tXExs4SIpXzB4Epb6OEO1f5TVvQKQbLesSTTpM_GFRxW3lXh0g2&t=6fd2091f Content-Type: text/html | clean |
https://www.primaryecp.com/scriptresource.axd?d=miica6h-yikenczaifbaqqmmkkha0o5_6vdui-by4edmtppv5vinla35umpo5yveivitmpzkpxxz9ueaqxt4txexs4sipxzb4epb6oeo1f5tvvqkqblessttpm_gfrxw3lxh0g2&t=6fd2091f | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:43 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/scriptresource.axd Server: Microsoft-IIS/7.5 Content-Length: 183 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=ThSvZom9zwEkAAAAYjAzNzJmYzEtMDVmNy00YzU2LTk3NjMtMzhmNWNhY2RlMThl0; expires=Thu, 21-Aug-2014 21:46:44 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://www.primaryecp.com/ScriptResource.axd?d=o5g6YHHFI-dBtiVuN9PhuI2eNOqI4HNPjWuBTYDPj5gshLF3iTb_yZJypr-4Z7CQ2Juffg_G_WmNnEs-uZjHJIeQcD5H1OC9dp2i4veoMBh_LpkCBqSyj-LeOMQt82NhSj6QPA2&t=6fd2091f | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/ScriptResource.axd?d=o5g6YHHFI-dBtiVuN9PhuI2eNOqI4HNPjWuBTYDPj5gshLF3iTb_yZJypr-4Z7CQ2Juffg_G_WmNnEs-uZjHJIeQcD5H1OC9dp2i4veoMBh_LpkCBqSyj-LeOMQt82NhSj6QPA2&t=6fd2091f Content-Type: text/html | clean |
https://www.primaryecp.com/scriptresource.axd?d=o5g6yhhfi-dbtivun9phui2enoqi4hnpjwubtydpj5gshlf3itb_yzjypr-4z7cq2juffg_g_wmnnes-uzjhjieqcd5h1oc9dp2i4veombh_lpkcbqsyj-leomqt82nhsj6qpa2&t=6fd2091f | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:45 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/scriptresource.axd Server: Microsoft-IIS/7.5 Content-Length: 183 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=pFJTZ4m9zwEkAAAAYmZhOGZhOGItZjViMy00OTEzLWI0MmEtYmFmNWI4NGZjZDAw0; expires=Thu, 21-Aug-2014 21:46:45 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://www.primaryecp.com/ScriptResource.axd?d=-OS1uFeo3CsYjG4JcqRIv9PN8-NoTlLzu1GtQqHa3ViPXAUgDT1K9Ic_MdzbI9LA2Qni783JEm5fuxLT4st5LE8vjqX0FXDjhN2FFZ7DuRImk5WVuIEcUgWnN_5HQ7bF5e0CIA2&t=6fd2091f | HTTP/1.1 302 Object Moved Cache-Control: private Connection: close Location: https://www.primaryecp.com/ScriptResource.axd?d=-OS1uFeo3CsYjG4JcqRIv9PN8-NoTlLzu1GtQqHa3ViPXAUgDT1K9Ic_MdzbI9LA2Qni783JEm5fuxLT4st5LE8vjqX0FXDjhN2FFZ7DuRImk5WVuIEcUgWnN_5HQ7bF5e0CIA2&t=6fd2091f Content-Type: text/html | clean |
https://www.primaryecp.com/scriptresource.axd?d=-os1ufeo3csyjg4jcqriv9pn8-notllzu1gtqqha3vipxaugdt1k9ic_mdzbi9la2qni783jem5fuxlt4st5le8vjqx0fxdjhn2ffz7durimk5wvuiecugwnn_5hq7bf5e0cia2&t=6fd2091f | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 21 Aug 2014 20:46:46 GMT Location: /static/ErrorPage.aspx?aspxerrorpath=/scriptresource.axd Server: Microsoft-IIS/7.5 Content-Length: 183 Content-Type: text/html; charset=utf-8 Set-Cookie: .ASPXANONYMOUS=Ps7yZ4m9zwEkAAAAM2QwMzUzOWYtZTU0YS00NmRhLWExYzItNTY4ZWRlMDc4MjE20; expires=Thu, 21-Aug-2014 21:46:46 GMT; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: primaryecp.com
Result:
GET / HTTP/1.1
Host: primaryecp.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: primaryecp.com
Referer: http://www.google.com/search?q=primaryecp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: primaryecp.com
Referer: http://www.google.com/search?q=primaryecp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=primaryecp.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://primaryecp.com/
Result: primaryecp.com is not infected or malware details are not published yet.
Result: primaryecp.com is not infected or malware details are not published yet.