Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=canamoz.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://canamoz.com/ | 200 OK Content-Length: 21217 Content-Type: text/html | clean |
http://canamoz.com/fileloads/themes/canamoztwentyfourtenn/jquery.js?ver=3.9.2 | 200 OK Content-Length: 92629 Content-Type: application/javascript | clean |
http://canamoz.com/fileloads/themes/canamoztwentyfourtenn/jquery-migrate-1.1.1.js?ver=3.9.2 | 200 OK Content-Length: 16174 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function( jQuery, window, undefined ) { var warnedAbout = {}; jQuery.migrateWarnings = []; jQuery.migrateMute = true; if ( !jQuery.migrateMute && window.console && console.log ) { console.log("JQMIGRATE: Logging is active"); } if ( jQuery.migrateTrace === undefined ) { jQuery.migrateTrace = true; } jQuery.migrateReset = function() { warnedAbout = {}; jQuery.migrateWarnings.length = 0; }; function migrateWarn( msg) { jQuery.event.add( document, name + "." + jQuery.guid, function() { jQuery.event.trigger( name, null, elem, true ); }); jQuery._data( this, name, jQuery.guid++ ); } return false; }, teardown: function() { if ( this !== document ) { jQuery.event.remove( document, name + "." + jQuery._data( this, name ) ); } return false; } }; } ); })( jQuery, window ); Antivirus reports:
| ||
http://canamoz.com/fileloads/themes/canamoztwentyfourtenn/script.js?ver=3.9.2 | 200 OK Content-Length: 55521 Content-Type: application/javascript | clean |
http://canamoz.com/fileloads/themes/canamoztwentyfourtenn/script.responsive.js?ver=3.9.2 | 200 OK Content-Length: 22702 Content-Type: application/javascript | clean |
http://canamoz.com/wp-includes/js/comment-reply.min.js?ver=3.9.2 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://canamoz.com/about/ | 200 OK Content-Length: 17289 Content-Type: text/html | clean |
http://canamoz.com/about/bord-of-directors/ | 200 OK Content-Length: 17155 Content-Type: text/html | clean |
http://canamoz.com/business-opportunities/ | 200 OK Content-Length: 21864 Content-Type: text/html | clean |
http://canamoz.com/publications/ | 200 OK Content-Length: 15991 Content-Type: text/html | clean |
http://canamoz.com/become-a-member/ | 200 OK Content-Length: 17064 Content-Type: text/html | clean |
http://form.myjotform.com/jsform/42193671629562 | 200 OK Content-Length: 47611 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: www.canamoz.com ...[2341 bytes skipped]... <div>\n <input id=\"input_35\" class=\"form-hidden widget-required form-widget\" type=\"hidden\" name=\"q35_clickTo35\" value=\"\">\n <\/div>\n <script>\n setTimeout(function()\n{\n document.getElementById(\"customFieldFrame_35\").src = \"http:\/\/widgets.jotform.io\/termsConditions\/?termsText=I%20agree%20to%20%7Bterms%20%26amp%3B%20conditions%7D.&termsLink=www.canamoz.com%2Fterms%20and%20conditions&marginLeft=150px&noFollow=No&qid=35&ref=\" + encodeURIComponent(window.location.protocol + \"\/\/\" + window.location.host);\n}, 5);\nvar _JCFClientID = 35\n <\/script>\n <\/div>\n <\/div>\n <\/li>\n <li class=\"form-line\" data-type=\"control_button\" id=\"id_16\">\n <div id=\"cid_16\" class=\"form-input-wide\">\n <div style=\"margin-left:156px\" ...[974 bytes skipped]... | ||
http://canamoz.com/privacy-policy/ | 200 OK Content-Length: 15760 Content-Type: text/html | clean |
http://canamoz.com/contact-us/ | 200 OK Content-Length: 16767 Content-Type: text/html | clean |
http://form.myjotform.com/jsform/42193483533557 | 200 OK Content-Length: 13807 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: canamoz.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 12 Aug 2014 20:44:21 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://canamoz.com/>; rel=shortlink
X-Pingback: http://canamoz.com/xmlrpc.php
X-Powered-By: PHP/5.4.31
GET / HTTP/1.1
Host: canamoz.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 12 Aug 2014 20:44:21 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://canamoz.com/>; rel=shortlink
X-Pingback: http://canamoz.com/xmlrpc.php
X-Powered-By: PHP/5.4.31
Second query (visit from search engine):
GET / HTTP/1.1
Host: canamoz.com
Referer: http://www.google.com/search?q=canamoz.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: canamoz.com
Referer: http://www.google.com/search?q=canamoz.com
Result:
The result is similar to the first query. There are no suspicious redirects found.