Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=carltonfinancialinc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://carltonfinancialinc.com/ | 200 OK Content-Length: 84425 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 122.155.168.105 <!DOCTYPE html> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" prefix="og: http://ogp.me/ns#"> <head> <meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1" /> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/> <title>Carlton Financial Carlton Financial Home</title> <style type="text/css">Avada_3.2.1{color:green;}</style> ...[4167 bytes skipped]... | ||
http://carltonfinancialinc.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=3.8.5 | 200 OK Content-Length: 83792 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-includes/js/comment-reply.min.js?ver=3.8.5 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-content/plugins/sendpress/js/sendpress.signup.js?ver=0.9.8.7 | 200 OK Content-Length: 4168 Content-Type: application/javascript | clean |
http://122.155.168.105/ads/inpage/pub/collect.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://122.155.168.105/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.clickevents.com.my/scripts/collect.js | 200 OK Content-Length: 2920 Content-Type: application/x-javascript | clean |
http://carltonfinancialinc.com/google_analytics_auto.js | 200 OK Content-Length: 430 Content-Type: application/javascript | clean |
http://maps.googleapis.com/maps/api/js?v=3.exp&sensor=false&language=en | 200 OK Content-Length: 4160 Content-Type: text/javascript | clean |
http://carltonfinancialinc.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.7.2 | 200 OK Content-Length: 8913 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-content/themes/Avada/js/modernizr-min.js | 200 OK Content-Length: 13133 Content-Type: application/javascript | clean |
http://carltonfinancialinc.com/wp-content/themes/Avada/js/jquery.carouFredSel-6.2.1-min.js | 200 OK Content-Length: 55187 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: carltonfinancialinc.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3, must-revalidate
Connection: close
Date: Mon, 22 Dec 2014 21:29:29 GMT
Server: nginx/1.6.2
Vary: Accept-Encoding,Cookie
Content-Type: text/html; charset=UTF-8
WP-Super-Cache: Served supercache file from PHP
GET / HTTP/1.1
Host: carltonfinancialinc.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3, must-revalidate
Connection: close
Date: Mon, 22 Dec 2014 21:29:29 GMT
Server: nginx/1.6.2
Vary: Accept-Encoding,Cookie
Content-Type: text/html; charset=UTF-8
WP-Super-Cache: Served supercache file from PHP
Second query (visit from search engine):
GET / HTTP/1.1
Host: carltonfinancialinc.com
Referer: http://www.google.com/search?q=carltonfinancialinc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: carltonfinancialinc.com
Referer: http://www.google.com/search?q=carltonfinancialinc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.