See: https://www.virustotal.com/nl/url/9a1c8c9250049c7a2cf6919ec4b3a003edc3cb2bee5af23abe1063f51b87152e/analysis/1420585805/
List of blacklisted external links: 90
Blacklisted domains/hosts: wXw.bcrcc.com
wXw.bcbridges.org
Wordpress Version 3.8 for: htxp://www.bcrcc.com/wp-includes/js/wp-ajax-response.js
RevSlider version: 4.6.5
Is site no longer vulnerable to SoakSoak?
Code going to includes/api/adzone.php?zoneID=3
Code hick-up: wxw.bcrcc.com/wp-content/themes/Builder/lib/builder-core/js/html5.js benign
[nothing detected] (script) wxw.bcrcc.com/wp-content/themes/Builder/lib/builder-core/js/html5.js
status: (referer=wxw.bcrcc.com/)saved 2000 bytes 5752c10a20a4f86d934f3acd7c4fa54cdf1269bd
info: [decodingLevel=0] found JavaScript
suspicious:
PHISH-ing via /plugins/wp_pro_ad_system/templates/js/load_wp_pro_ads.js ???
Site has AdRotate adware: http://www.sophos.com/en-us/threat-center/threat-analyses/adware-and-puas/AdRotate.aspx
→ http://jsunpack.jeek.org/?report=4cdb0671bba2c62fd12040ab0b686b78398830dd
Above link for security research only, open link inside a browser with NoScript extension active and inside a VM/sandbox.
Experienced avast! Web Shield does not flag site, Bitdefender’s TrafficLight does however.
polonus (volunteer website security analyst and website error-hunter)