Scanned pages/files
Request | Server response | Status |
http://the-berkeley-foundation-charitable-trust.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache Date: Mon, 08 Sep 2014 01:21:31 GMT Pragma: no-cache Location: http://www.the-berkeley-foundation-charitable-trust.com/ Server: Microsoft-IIS/6.0 Content-Length: 211 Content-Type: text/html | clean |
http://www.the-berkeley-foundation-charitable-trust.com/ | HTTP/1.1 302 Redirect Date: Mon, 08 Sep 2014 01:21:30 GMT Location: http://www.berkeleygroup.co.uk/about-berkeley/the-berkeley-foundation Server: Microsoft-IIS/7.5 Content-Length: 192 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET X-UA-Compatible: IE=EmulateIE9 | clean |
http://www.berkeleygroup.co.uk/about-berkeley/the-berkeley-foundation | HTTP/1.1 301 Moved Permanently Date: Mon, 08 Sep 2014 01:21:30 GMT Location: http://www.berkeleygroup.co.uk/berkeley-foundation Server: Microsoft-IIS/7.5 Content-Type: text/html; charset=UTF-8 Set-Cookie: CFID=1409216; HttpOnly;expires=Wed, 31-Aug-2044 01:21:30 GMT;path=/ Set-Cookie: CFTOKEN=ba6065303d1360b0-3C83653B-D740-93FF-CED08E426E3A6718; HttpOnly;expires=Wed, 31-Aug-2044 01:21:30 GMT;path=/ Set-Cookie: JSESSIONID=da30e67ba649c1f987d47a5f474b4485e645;path=/; HttpOnly Set-Cookie: CFGLOBALS=urltoken%3DCFID%23%3D1409216%26CFTOKEN%23%3Dba6065303d1360b0%2D3C83653B%2DD740%2D93FF%2DCED08E426E3A6718%26jsessionid%23%3Dda30e67ba649c1f987d47a5f474b4485e645%23lastvisit%3D%7Bts%20%272014%2D09%2D08%2002%3A21%3A30%27%7D%23timecreated%3D%7Bts%20%272014%2D09%2D08%2002%3A21%3A30%27%7D%23hitcount%3D2%23cftoken%3Dba6065303d1360b0%2D3C83653B%2DD740%2D93FF%2DCED08E426E3A6718%23cfid%3D1409216%23; HttpOnly;expires=Wed, 31-Aug-2044 01:21:30 GMT;path=/ X-UA-Compatible: IE=EmulateIE9 | clean |
http://www.berkeleygroup.co.uk/berkeley-foundation | HTTP/1.1 301 Moved Permanently Date: Mon, 08 Sep 2014 01:21:30 GMT Location: http://www.berkeleygroup.co.uk/about-berkeley-group/berkeley-foundation Server: Microsoft-IIS/7.5 Content-Type: text/html; charset=UTF-8 Set-Cookie: CFID=1409217; HttpOnly;expires=Wed, 31-Aug-2044 01:21:30 GMT;path=/ Set-Cookie: CFTOKEN=c82479b59327a6c1-3C836B59-A0AE-D947-0680EBD62728B9C6; HttpOnly;expires=Wed, 31-Aug-2044 01:21:30 GMT;path=/ Set-Cookie: JSESSIONID=da30fae30856323b514943482a7c55635e31;path=/; HttpOnly Set-Cookie: CFGLOBALS=urltoken%3DCFID%23%3D1409217%26CFTOKEN%23%3Dc82479b59327a6c1%2D3C836B59%2DA0AE%2DD947%2D0680EBD62728B9C6%26jsessionid%23%3Dda30fae30856323b514943482a7c55635e31%23lastvisit%3D%7Bts%20%272014%2D09%2D08%2002%3A21%3A30%27%7D%23timecreated%3D%7Bts%20%272014%2D09%2D08%2002%3A21%3A30%27%7D%23hitcount%3D2%23cftoken%3Dc82479b59327a6c1%2D3C836B59%2DA0AE%2DD947%2D0680EBD62728B9C6%23cfid%3D1409217%23; HttpOnly;expires=Wed, 31-Aug-2044 01:21:30 GMT;path=/ X-UA-Compatible: IE=EmulateIE9 | clean |
http://www.berkeleygroup.co.uk/about-berkeley-group/berkeley-foundation | 200 OK Content-Length: 30563 Content-Type: text/html | clean |
http://www.berkeleygroup.co.uk//use.typekit.net/rdc6tvl.js/ | 404 Not Found Content-Length: 23057 Content-Type: text/html | clean |
http://www.berkeleygroup.co.uk/assets/js/modernizr-2.6.2.min.js | 200 OK Content-Length: 15414 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/jquery.min.js | 200 OK Content-Length: 92631 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/jquery-ui.min.js | 200 OK Content-Length: 235150 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/mmenu/jquery.mmenu.min.all.js | 200 OK Content-Length: 19944 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/hammer.min.js | 200 OK Content-Length: 13007 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/jquery.facebox.min.js | 200 OK Content-Length: 4684 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/krpano.min.js | 200 OK Content-Length: 92315 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/mediaelement-and-player.min.js | 200 OK Content-Length: 73112 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/bootstrap.min.js | 200 OK Content-Length: 28631 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/masonry.min.js | 200 OK Content-Length: 24682 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/imagesloaded.pkgd.min.js | 200 OK Content-Length: 6569 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/plugins.min.js | 200 OK Content-Length: 7045 Content-Type: application/x-javascript | clean |
http://www.berkeleygroup.co.uk/assets/js/PluginDetect_Flash.js | 200 OK Content-Length: 14396 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var PluginDetect={version:"0.8.6",name:"PluginDetect",openTag:"<",isDefined:function(b){return typeof b!="undefined"},isArray:function(b){return(/array/i).test(Object.prototype.toString.call(b))},isFunc:function(b){return typeof b=="function"},isString:function(b){return typeof b=="string"},isNum:function(b){return typeof b=="number"},isStrNum:function(b){return(typeof b=="string"&&(/\d/).test(b))},getNumRegx:/[\d][\d\.\_,\-]*/,splitNumRegx:/[\.\_,\-]/g,getNum:function(b,c){var d=this Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: the-berkeley-foundation-charitable-trust.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Date: Mon, 08 Sep 2014 01:21:31 GMT
Pragma: no-cache
Location: http://www.the-berkeley-foundation-charitable-trust.com/
Server: Microsoft-IIS/6.0
Content-Length: 211
Content-Type: text/html
...211 bytes of data.
GET / HTTP/1.1
Host: the-berkeley-foundation-charitable-trust.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache
Date: Mon, 08 Sep 2014 01:21:31 GMT
Pragma: no-cache
Location: http://www.the-berkeley-foundation-charitable-trust.com/
Server: Microsoft-IIS/6.0
Content-Length: 211
Content-Type: text/html
...211 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: the-berkeley-foundation-charitable-trust.com
Referer: http://www.google.com/search?q=the-berkeley-foundation-charitable-trust.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: the-berkeley-foundation-charitable-trust.com
Referer: http://www.google.com/search?q=the-berkeley-foundation-charitable-trust.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=the-berkeley-foundation-charitable-trust.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://the-berkeley-foundation-charitable-trust.com/
Result: the-berkeley-foundation-charitable-trust.com is not infected or malware details are not published yet.
Result: the-berkeley-foundation-charitable-trust.com is not infected or malware details are not published yet.