Scanned pages/files
Request | Server response | Status |
http://triciajoy.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 18 Dec 2015 12:18:09 GMT Location: http://www.triciajoy.com/ Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 CF-RAY: 256acf05a6682acd-WAW Set-Cookie: __cfduid=d418811bc8c789887a0cdecfdf86466c91450441088; expires=Sat, 17-Dec-16 12:18:08 GMT; path=/; domain=.triciajoy.com; HttpOnly | clean |
http://www.triciajoy.com/ | 200 OK Content-Length: 48771 Content-Type: text/html | clean |
http://www.triciajoy.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://www.triciajoy.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.triciajoy.com/wp-content/themes/expose/js/prettyPhoto/js/jquery.prettyPhoto.js?ver=3.6.1 | 200 OK Content-Length: 16851 Content-Type: application/javascript | clean |
http://www.triciajoy.com/wp-content/themes/expose/js/custom.js?ver=3.6.1 | 200 OK Content-Length: 35963 Content-Type: application/javascript | clean |
http://triciajoy.com//platform.twitter.com/widgets.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 18 Dec 2015 12:18:13 GMT Location: http://www.triciajoy.com/platform.twitter.com/widgets.js/ Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 CF-RAY: 256acf1d87ab2ad9-WAW Set-Cookie: __cfduid=d7909d087f87ff204e851668c036c0d4b1450441092; expires=Sat, 17-Dec-16 12:18:12 GMT; path=/; domain=.triciajoy.com; HttpOnly | clean |
http://www.triciajoy.com/platform.twitter.com/widgets.js/ | 404 Not Found Content-Length: 30129 Content-Type: text/html | clean |
http://www.onclicktop.com/a/display.php?r=186213 | 200 OK Content-Length: 828 Content-Type: application/javascript | clean |
http://resources.infolinks.com/js/infolinks_main.js | 200 OK Content-Length: 3082 Content-Type: text/javascript | suspicious |
Suspicious code. Script contains iFrame. ...[2023 bytes skipped]... 2k";f.2n="2z-8";f.p=e.r;f.1e=M("1e")||f.1e;f.1A=M("26")||f.1A;4 J=6.1G("1T");5(J&&J.7){J[0].13(f)}}})()',62,184,'||||var|if|document|length||com|||||||||||||||window|src|for|url|body|1px|indexOf|function|Math|createElement|try|location|||||||||||||||||||||||||||version|js|catch|appendChild|in|return|display|01|break|keek|none|rand|style|substr|async|infolinks|width|hasOwnProperty|match|else|height|infolinks_|il|search|http|from|script|iframe|2Fdyn|console|random|log|message|3D|an|50|defer|html|null|decodeURIComponent|to|2Frouter|getElementsByTagName|split|continue|Date|phone|ipad|iceboot|getTime|opera|_boot|versions|1276|1273|head|01a|iphone|userAgent|1118|kiwibox|1186|navigator|classic|hostname|weight|undefined|ceil|ddw|true|ads|type|href|AdServer|user_sync|predirect|3Fpmuservalue|img|text|push|sv|floor|javascript|3Fuser_id|24UID|charset|static|getuid|06|join|adnxs|366|siteVersions|resources|toLowerCase|usersyncup|05a|UTF ...[193 bytes skipped]... Decoded script: (function(){try{var O=document.createElement("iframe");O.width="1px";O.height="1px";O.style.display="none";O.src="//ads.pubmatic.com/AdServer/js/user_sync.html?predirect=%2F%2Frouter.infolinks.com%2Fdyn%2Fusersync%3Fpmuservalue%3D";if(document.body){document.body.appendChild(O)}}catch(K){console.log(K.message)}try{var Y=document.createElement("img");Y.src="//ib.adnxs.com/getuid?%2F%2Frouter.infolinks.com%2Fdyn%2Fan-usersync%3Fuser_id%3D%24UID";Y.width="1px";Y.height="1px";Y.style.display="none" ...[5563 bytes skipped]... | ||
http://www.triciajoy.com/wp-includes/js/thickbox/thickbox.js?ver=3.1-20121105 | 200 OK Content-Length: 12324 Content-Type: application/javascript | clean |
http://www.triciajoy.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.40.0-2013.08.13 | 200 OK Content-Length: 14625 Content-Type: application/javascript | clean |
http://www.triciajoy.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.2 | 200 OK Content-Length: 8326 Content-Type: application/javascript | clean |
http://www.triciajoy.com/wp-content/plugins/wp-socializer/public/js/wp-socializer-bookmark-js.js?ver=2.4.9.6 | 200 OK Content-Length: 453 Content-Type: application/javascript | clean |
http://triciajoy.com/wp-login.php/?action=register | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 18 Dec 2015 12:18:17 GMT Location: http://www.triciajoy.com/wp-login.php/?action=register Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 CF-RAY: 256acf37d9bb2ad3-WAW Set-Cookie: __cfduid=df6acc41ca2d4fe6eacc501a8966ba3391450441096; expires=Sat, 17-Dec-16 12:18:16 GMT; path=/; domain=.triciajoy.com; HttpOnly | clean |
http://www.triciajoy.com/wp-login.php/?action=register | 200 OK Content-Length: 4440 Content-Type: text/html | clean |
http://www.google.com/recaptcha/api/challenge?k=6Ld-MMYSAAAAANNxa7HPWxu8EZVv5x4x5peP814J | 200 OK Content-Length: 7949 Content-Type: text/javascript | clean |
http://triciajoy.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: public, max-age=14400 Connection: close Date: Fri, 18 Dec 2015 12:18:18 GMT Location: http://www.triciajoy.com/test404page.js Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 Expires: Fri, 18 Dec 2015 16:18:18 GMT CF-Cache-Status: MISS CF-RAY: 256acf3f7a4e2afd-WAW Set-Cookie: __cfduid=df698b4ce990dedf65dcd9882b8bb6ff61450441098; expires=Sat, 17-Dec-16 12:18:18 GMT; path=/; domain=.triciajoy.com; HttpOnly | clean |
http://www.triciajoy.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: public, max-age=14400 Connection: close Date: Fri, 18 Dec 2015 12:18:19 GMT Location: http://www.triciajoy.com/test404page.js/ Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 Expires: Fri, 18 Dec 2015 16:18:19 GMT CF-Cache-Status: MISS CF-RAY: 256acf42a5032ae5-WAW Set-Cookie: __cfduid=da83336c1e8fe53505b8c6069047da6741450441098; expires=Sat, 17-Dec-16 12:18:18 GMT; path=/; domain=.triciajoy.com; HttpOnly | clean |
http://www.triciajoy.com/test404page.js/ | 404 Not Found Content-Length: 30104 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: triciajoy.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 18 Dec 2015 12:18:09 GMT
Location: http://www.triciajoy.com/
Server: cloudflare-nginx
Content-Type: text/html; charset=iso-8859-1
CF-RAY: 256acf05a6682acd-WAW
Set-Cookie: __cfduid=d418811bc8c789887a0cdecfdf86466c91450441088; expires=Sat, 17-Dec-16 12:18:08 GMT; path=/; domain=.triciajoy.com; HttpOnly
GET / HTTP/1.1
Host: triciajoy.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 18 Dec 2015 12:18:09 GMT
Location: http://www.triciajoy.com/
Server: cloudflare-nginx
Content-Type: text/html; charset=iso-8859-1
CF-RAY: 256acf05a6682acd-WAW
Set-Cookie: __cfduid=d418811bc8c789887a0cdecfdf86466c91450441088; expires=Sat, 17-Dec-16 12:18:08 GMT; path=/; domain=.triciajoy.com; HttpOnly
Second query (visit from search engine):
GET / HTTP/1.1
Host: triciajoy.com
Referer: http://www.google.com/search?q=triciajoy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: triciajoy.com
Referer: http://www.google.com/search?q=triciajoy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=triciajoy.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://triciajoy.com/
Result: triciajoy.com is not infected or malware details are not published yet.
Result: triciajoy.com is not infected or malware details are not published yet.