Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wp.fromweb2web.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://wp.fromweb2web.com/ | 200 OK Content-Length: 24458 Content-Type: text/html | clean |
http://wp.fromweb2web.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/wp-content/plugins/custom-contact-forms/js/custom-contact-forms-datepicker.js?ver=3.8.4 | 200 OK Content-Length: 124 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/wp-content/plugins/custom-contact-forms/js/jquery.tools.min.js?ver=3.8.4 | 200 OK Content-Length: 46530 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/wp-content/plugins/custom-contact-forms/js/custom-contact-forms.js?ver=3.8.4 | 200 OK Content-Length: 920 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/?page_id=9 | 200 OK Content-Length: 10859 Content-Type: text/html | clean |
http://wp.fromweb2web.com/wp-includes/js/comment-reply.min.js?ver=3.8.4 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://w.sharethis.com/button/buttons.js?ver=3.8.4 | 200 OK Content-Length: 145774 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(typeof(stlib)=="undefined"){var stlib={}}if(!stlib.functions){stlib.functions=[];stlib.functionCount=0}stlib.global={};stlib.global.hash=document.location.href.split("#");stlib.global.hash.shift();stlib.global.hash=stlib.global.hash.join("#");stlib.dynamicOn=true;stlib.debugOn=false;stlib.debug={count:0,messages:[],debug:function(b,a){if(a&&(typeof console)!="undefined"){console.log(b)}stlib.debug.messages.push(b)},show:function(a){for(message in stlib.debug.messages){if((typeof conso Antivirus reports:
| ||
http://wp.fromweb2web.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.3 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/wp-includes/js/jquery/ui/jquery.ui.datepicker.min.js?ver=1.10.3 | 200 OK Content-Length: 35806 Content-Type: application/javascript | clean |
http://wp.fromweb2web.com/?page_id=5 | 200 OK Content-Length: 9896 Content-Type: text/html | clean |
http://wp.fromweb2web.com/wp-login.php?redirect_to=http%3A%2F%2Fwp.fromweb2web.com%2F%3Fpage_id%3D5 | 200 OK Content-Length: 3436 Content-Type: text/html | clean |
http://wp.fromweb2web.com/wp-login.php?action=register | 200 OK Content-Length: 3417 Content-Type: text/html | clean |
http://wp.fromweb2web.com/wp-login.php | 200 OK Content-Length: 3435 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wp.fromweb2web.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 03 Oct 2014 20:24:29 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=be8e8290a7b887d0e66e332ed39767ab; path=/
X-Died: timeout at scan.pm line 1546.
X-Pingback: http://wp.fromweb2web.com/xmlrpc.php
GET / HTTP/1.1
Host: wp.fromweb2web.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 03 Oct 2014 20:24:29 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=be8e8290a7b887d0e66e332ed39767ab; path=/
X-Died: timeout at scan.pm line 1546.
X-Pingback: http://wp.fromweb2web.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: wp.fromweb2web.com
Referer: http://www.google.com/search?q=wp.fromweb2web.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wp.fromweb2web.com
Referer: http://www.google.com/search?q=wp.fromweb2web.com
Result:
The result is similar to the first query. There are no suspicious redirects found.