Scanned pages/files
Request | Server response | Status |
http://canalblog.es/ | 200 OK Content-Length: 75217 Content-Type: text/html | suspicious |
Suspicious code found <script type='text/javascript' src='http://canalblog.es/wp-content/plugins/contact-form-7/jquery.form.js?ver=2.52'></script> <script type='text/javascript' src='http://canalblog.es/wp-content/plugins/contact-form-7/scripts.js?ver=2.4.5'></script> <!--Plugin WP Missed Schedule 2011.0424.3333 Active--><script src='http://mkw.socialkeywords.es/microbranding/canalblog/mac.js' type='text/javascript'></script><!-- Todoblogs.com Analytics --> var _rsCI = "es-todoblogs"; trac.record().post().do_sample(); </script> <noscript> <div> <img src="//secure-uk.imrworldwide.com/cgi-bin/m?ci=es-todoblogs&cg=0&cc=1&ts=noscript" width="1" height="1" alt="" /> </div> </noscript> <!-- END Nielsen Online SiteCensus V6.0 --><script src='http://ads17041.hotwords.es/show.jsp?id=17041></script> | ||
http://canalblog.es/wp-includes/js/l10n.js?ver=20101110 | 200 OK Content-Length: 308 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-includes/js/jquery/jquery.js?ver=1.4.4 | 200 OK Content-Length: 78620 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/plugins/SYNC-wp-nivo-slider/js/jquery.nivo.slider.js?ver=1.9 | 200 OK Content-Length: 15234 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/plugins/voila/mediaplayer/swfobject.js?ver=3.1.3 | 200 OK Content-Length: 6892 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/themes/todoblogs-com/js/simpleslider/sync.simpleslider.js?ver=3.1.3 | 200 OK Content-Length: 568 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/plugins/jquery-colorbox/js/jquery.colorbox-min.js?ver=1.3.19 | 200 OK Content-Length: 9514 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/plugins/jquery-colorbox/js/jquery-colorbox-wrapper-min.js?ver=4.4.1 | 200 OK Content-Length: 7650 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/themes/todoblogs-com/js/superfish/hoverIntent.js | 200 OK Content-Length: 1272 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/themes/todoblogs-com/js/superfish/superfish.js | 200 OK Content-Length: 2566 Content-Type: application/x-javascript | clean |
http://canalblog.es/wp-content/themes/todoblogs-com/js/superfish/supersubs.js | 200 OK Content-Length: 893 Content-Type: application/x-javascript | clean |
http://s7.addthis.com/js/250/addthis_widget.js?pub=xa-4a65e1d93cd75e94 | 200 OK Content-Length: 6844 Content-Type: text/javascript | clean |
http://canalblog.es/contactar | 200 OK Content-Length: 53722 Content-Type: text/html | suspicious |
Suspicious code found <script type='text/javascript' src='http://canalblog.es/wp-content/plugins/contact-form-7/jquery.form.js?ver=2.52'></script> <script type='text/javascript' src='http://canalblog.es/wp-content/plugins/contact-form-7/scripts.js?ver=2.4.5'></script> <!--Plugin WP Missed Schedule 2011.0424.3333 Active--><script src='http://mkw.socialkeywords.es/microbranding/canalblog/mac.js' type='text/javascript'></script><!-- Todoblogs.com Analytics --> var trac = nol_t(pvar); trac.record().post(); </script> <noscript> <div> <img src="//secure-uk.imrworldwide.com/cgi-bin/m?ci=es-todoblogs&cg=0&cc=1&ts=noscript" width="1" height="1" alt="" /> </div> </noscript> <!-- END Nielsen Online SiteCensus V6.0 --> <script src='http://ads17041.hotwords.es/show.jsp?id=17041></script> | ||
http://canalblog.es/wp-includes/js/comment-reply.js?ver=20090102 | 200 OK Content-Length: 786 Content-Type: application/x-javascript | clean |
http://canalblog.es/feed/ | 200 OK Content-Length: 32830 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: canalblog.es
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=1767, public, must-revalidate, proxy-revalidate, public, must-revalidate, proxy-revalidate
Connection: close
Date: Sat, 14 Jun 2014 22:31:10 GMT
Pragma: public
Accept-Ranges: bytes
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/1.0.0-fips mod_bwlimited/1.4 mod_fcgid/2.3.6
Vary: Accept-Encoding,Cookie
Content-Length: 75217
Content-Type: text/html; charset=UTF-8
Expires: Sat, 14 Jun 2014 23:00:38 GMT
Last-Modified: Sat, 14 Jun 2014 22:00:38 GMT
X-Pingback: http://canalblog.es/xmlrpc.php
X-Powered-By: W3 Total Cache/0.9.2.3
...75217 bytes of data.
GET / HTTP/1.1
Host: canalblog.es
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=1767, public, must-revalidate, proxy-revalidate, public, must-revalidate, proxy-revalidate
Connection: close
Date: Sat, 14 Jun 2014 22:31:10 GMT
Pragma: public
Accept-Ranges: bytes
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/1.0.0-fips mod_bwlimited/1.4 mod_fcgid/2.3.6
Vary: Accept-Encoding,Cookie
Content-Length: 75217
Content-Type: text/html; charset=UTF-8
Expires: Sat, 14 Jun 2014 23:00:38 GMT
Last-Modified: Sat, 14 Jun 2014 22:00:38 GMT
X-Pingback: http://canalblog.es/xmlrpc.php
X-Powered-By: W3 Total Cache/0.9.2.3
...75217 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: canalblog.es
Referer: http://www.google.com/search?q=canalblog.es
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: canalblog.es
Referer: http://www.google.com/search?q=canalblog.es
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=canalblog.es
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://canalblog.es/
Result: canalblog.es is not infected or malware details are not published yet.
Result: canalblog.es is not infected or malware details are not published yet.