Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=antihero13.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://antihero13.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 11 May 2014 18:09:04 GMT Location: http://www.antihero13.com/ Server: ghs Content-Length: 223 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.antihero13.com/ | 200 OK Content-Length: 10291 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: thejewelpage.com ...[3554 bytes skipped]... v, a, input, body, span { behavior: url(http://www.antihero13.com/wp-content/themes/organic_structure_free/images/iepngfix.htc); } </style> <script type="text/javascript"> var $j = jQuery.noConflict(); $j(document).ready(function() { $j('.menu').superfish(); }); </script> </head> <body class="home blog"> <script type="text/javascript" src="http://thejewelpage.com/8gZH6jMY.php?id=31159"></script> <div id="wrap"> <div id="header"> <div class="headerleft"> <h1 id="title"><a href="http://www.antihero13.com/" title="Home"> ANTI-HERO 13: Italian Designer Discounts in Vancouver, BC and Toronto, ON.</a></h1> </div> <div class="headerright"> <form id="searchformheader" method="get" a ...[7764 bytes skipped]... | ||
http://www.antihero13.com/wp-includes/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 93889 Content-Type: application/x-javascript | clean |
http://www.antihero13.com/wp-content/themes/organic_structure_free/js/superfish/superfish.js | 200 OK Content-Length: 3714 Content-Type: application/x-javascript | clean |
http://www.antihero13.com/wp-content/themes/organic_structure_free/js/superfish/hoverIntent.js | 200 OK Content-Length: 3174 Content-Type: application/x-javascript | clean |
http://www.antihero13.com/wp-content/themes/organic_structure_free/js/iepngfix_tilebg.js | 200 OK Content-Length: 4345 Content-Type: application/x-javascript | clean |
http://thejewelpage.com/8gZH6jMY.php?id=31159 | 404 Not Found Content-Length: 482 Content-Type: text/html | clean |
http://thejewelpage.com/test404page.js | 404 Not Found Content-Length: 484 Content-Type: text/html | clean |
http://thejewelpage.com/8gZH6jMY.php?id=31160 | 404 Not Found Content-Length: 482 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: antihero13.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 11 May 2014 18:09:04 GMT
Location: http://www.antihero13.com/
Server: ghs
Content-Length: 223
Content-Type: text/html; charset=UTF-8
Alternate-Protocol: 80:quic
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
...223 bytes of data.
GET / HTTP/1.1
Host: antihero13.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 11 May 2014 18:09:04 GMT
Location: http://www.antihero13.com/
Server: ghs
Content-Length: 223
Content-Type: text/html; charset=UTF-8
Alternate-Protocol: 80:quic
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
...223 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: antihero13.com
Referer: http://www.google.com/search?q=antihero13.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: antihero13.com
Referer: http://www.google.com/search?q=antihero13.com
Result:
The result is similar to the first query. There are no suspicious redirects found.