Scanned pages/files
Request | Server response | Status |
http://robbacouverture.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 22 Jun 2015 21:04:02 GMT Location: http://www.robbacouverture.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.robbacouverture.com/xmlrpc.php X-Powered-By: PHP/5.4.42 | clean |
http://www.robbacouverture.com/ | 200 OK Content-Length: 41410 Content-Type: text/html | clean |
http://www.robbacouverture.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/fancybox/jquery.fancybox-1.3.4.js?ver=1.4.0 | 200 OK Content-Length: 28243 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/sliders/responsiveslides.js?ver=1.4.0 | 200 OK Content-Length: 9263 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/sliders/jquery.jcarousel.min.js?ver=1.4.0 | 200 OK Content-Length: 15650 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/jquery.isotope.min.js?ver=1.4.0 | 200 OK Content-Length: 15883 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/sliders/mfn-offer-slider.js?ver=1.4.0 | 200 OK Content-Length: 3641 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/mfn-menu.js?ver=1.4.0 | 200 OK Content-Length: 1442 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/portfolio.js?ver=1.4.0 | 200 OK Content-Length: 2441 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/js/scripts.js?ver=1.4.0 | 200 OK Content-Length: 7418 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?ver=3.5.1 | 200 OK Content-Length: 16203 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/themes/caffeine/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=3.5.1 | 200 OK Content-Length: 53302 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/plugins/image-zoom/core/load-scripts.php?c=0&load=106ee4dbee5a9f61eb370fb985e73779&ver=20150622 | 200 OK Content-Length: 10441 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(a,b,c){function Z(c,d,e){var g=b.createElement(c);return d&&(g.id=f+d),e&&(g.style.cssText=e),a(g)}function $(a){var b=y.length,c=(Q+a)%b;return c<0?b+c:c}function _(a,b){return Math.round((/%/.test(a)?(b==="x"?z.width():z.height())/100:1)*parseInt(a,10))}function ba(a){return K.photo||/\.(gif|png|jpe?g|bmp|ico)((#|\?).*)?$/i.test(a)}function bb(){var b;K=a.extend({},a.data(P,e));for(b in K)a.isFunction(K[b])&&b.slice(0,2)!=="on"&&(K[b]=K[b].call(P)); slideshowSpeed: 5000 , slideshowStart: 'Play', slideshowStop : 'Pause', current : 'Image {current} of {total}', scalePhotos : true , previous: 'Previous', next:'Next', close:'Close', maxWidth: 1200, maxHeight : 850, opacity:0.8 , onComplete : function(){ jQuery("#cboxLoadedContent").css({overflow:'hidden'}); }, rel:'group1' }); }); Antivirus reports:
| ||
http://www.robbacouverture.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.39.0-2013.07.31 | 200 OK Content-Length: 14611 Content-Type: application/x-javascript | clean |
http://www.robbacouverture.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.1 | 200 OK Content-Length: 8326 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: robbacouverture.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 22 Jun 2015 21:04:02 GMT
Location: http://www.robbacouverture.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.robbacouverture.com/xmlrpc.php
X-Powered-By: PHP/5.4.42
...0 bytes of data.
GET / HTTP/1.1
Host: robbacouverture.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 22 Jun 2015 21:04:02 GMT
Location: http://www.robbacouverture.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.robbacouverture.com/xmlrpc.php
X-Powered-By: PHP/5.4.42
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: robbacouverture.com
Referer: http://www.google.com/search?q=robbacouverture.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: robbacouverture.com
Referer: http://www.google.com/search?q=robbacouverture.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=robbacouverture.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://robbacouverture.com/
Result: robbacouverture.com is not infected or malware details are not published yet.
Result: robbacouverture.com is not infected or malware details are not published yet.