Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=chicagolandinvestments.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: chicagolandinvestments.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 10 Jan 2015 07:55:32 GMT
Pragma: no-cache
Server: nginx/1.4.4
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=bfvvvdc4e9urietqh78nc4grt7; path=/
X-Pingback: http://www.domainrealtyonline.com/xmlrpc.php
X-Powered-By: PHP/5.4.22
GET / HTTP/1.1
Host: chicagolandinvestments.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 10 Jan 2015 07:55:32 GMT
Pragma: no-cache
Server: nginx/1.4.4
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=bfvvvdc4e9urietqh78nc4grt7; path=/
X-Pingback: http://www.domainrealtyonline.com/xmlrpc.php
X-Powered-By: PHP/5.4.22
Second query (visit from search engine):
GET / HTTP/1.1
Host: chicagolandinvestments.com
Referer: http://www.google.com/search?q=chicagolandinvestments.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: chicagolandinvestments.com
Referer: http://www.google.com/search?q=chicagolandinvestments.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://chicagolandinvestments.com/ | 200 OK Content-Length: 56598 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.3.2/jquery.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://www.domainrealtyonline.com/wp-content/themes/awavrunek/js/cufon-yui.js | 200 OK Content-Length: 18264 Content-Type: application/x-javascript | clean |
http://www.domainrealtyonline.com/wp-content/themes/awavrunek/js/Lato_700.font.js | 200 OK Content-Length: 29494 Content-Type: application/x-javascript | clean |
http://www.domainrealtyonline.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/x-javascript | clean |
http://www.domainrealtyonline.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
https://aj109.infusionsoft.com/app/webTracking/getTrackingCode?trackingId=8249b36baa118a89389339701cdd3580 | 200 OK Content-Length: 3758 Content-Type: text/plain | clean |
http://aj109.infusionsoft.com/test404page.js | HTTP/1.1 302 Found Connection: Keep-Alive Location: https://aj109.infusionsoft.com/test404page.js Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
https://aj109.infusionsoft.com/test404page.js | HTTP/1.1 302 Found Date: Sat, 10 Jan 2015 07:55:41 GMT Location: https://signin.infusionsoft.com?service=https%3A%2F%2Faj109.infusionsoft.com%2Fj_spring_cas_security_check Server: Apache-Coyote/1.1 Content-Length: 0 Content-Type: text/javascript;charset=UTF-8 Expires: Sat, 10 Jan 2015 19:55:42 GMT Set-Cookie: JSESSIONID=B9AC33E3811F8145235C5F3AB60F2789; Path=/; Secure; HttpOnly Set-Cookie: app-lb=3858956298.20480.0000; path=/ X-Cnection: close | clean |
https://signin.infusionsoft.com?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/ | HTTP/1.1 302 Found Date: Sat, 10 Jan 2015 07:55:43 GMT Location: https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/ Content-Length: 0 Content-Type: text/html;charset=UTF-8 Set-Cookie: app-lb=168296458.20480.0000; path=/ Set-Cookie: TS1b1025=81810f7be865ebf741024ef1c1153b2cb4d14fced9842f1054b0daff431c454977a70f4c; Path=/; Secure; HTTPOnly Set-Cookie: TS1b1025_28=a6ba7af105c129181fcdea5da3701091b4d14fced9842f1000000000000000000054b0daffb4d14fced9842f10; Path=/; Secure; HTTPOnly X-Cnection: close X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN | clean |
https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/ | 200 OK Content-Length: 16730 Content-Type: text/html | clean |
https://signin.infusionsoft.com/js/jquery-1.11.0/jquery-1.11.0.min.js;jsessionid=20B72A37ED27E426B12E10CC88BDFCC6 | 200 OK Content-Length: 96381 Content-Type: text/javascript | clean |
http://aj109.infusionsoft.com/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=20B72A37ED27E426B12E10CC88BDFCC6 | HTTP/1.1 302 Found Connection: Keep-Alive Location: https://aj109.infusionsoft.com/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=20B72A37ED27E426B12E10CC88BDFCC6 Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
https://aj109.infusionsoft.com/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=20b72a37ed27e426b12e10cc88bdfcc6 | HTTP/1.1 302 Found Date: Sat, 10 Jan 2015 07:55:47 GMT Location: https://signin.infusionsoft.com?service=https%3A%2F%2Faj109.infusionsoft.com%2Fj_spring_cas_security_check Server: Apache-Coyote/1.1 Content-Length: 0 Expires: Sat, 10 Jan 2015 19:55:48 GMT Set-Cookie: JSESSIONID=CA664EAC74A32C4B5CCAA7783507327D; Path=/; Secure; HttpOnly Set-Cookie: app-lb=3858956298.20480.0000; path=/ X-Cnection: close | clean |
http://signin.infusionsoft.com?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/test404page.js | HTTP/1.1 302 Found Connection: Keep-Alive Location: https://signin.infusionsoft.com/?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/test404page.js Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
https://signin.infusionsoft.com/?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/test404page.js | HTTP/1.1 302 Found Date: Sat, 10 Jan 2015 07:55:49 GMT Location: https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/test404page.js Content-Length: 0 Content-Type: text/html;charset=UTF-8 Set-Cookie: app-lb=168296458.20480.0000; path=/ Set-Cookie: TS1b1025=fa35a5ab645a1795c82cfca91cf943aa011a6f0ff984156f54b0db05431c454977a70f4c; Path=/; Secure; HTTPOnly Set-Cookie: TS1b1025_28=d45a49f5d330a51b217063d251b02001011a6f0ff984156f00000000000000000054b0db05011a6f0ff984156f; Path=/; Secure; HTTPOnly X-Cnection: close X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN | clean |
https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/test404page.js | 200 OK Content-Length: 16744 Content-Type: text/html | clean |
https://signin.infusionsoft.com/js/jquery-1.11.0/jquery-1.11.0.min.js;jsessionid=154DAFB9763E7EF158213C0F4C1B6324 | 200 OK Content-Length: 96381 Content-Type: text/javascript | clean |
http://signin.infusionsoft.com?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=154DAFB9763E7EF158213C0F4C1B6324 | HTTP/1.1 302 Found Connection: Keep-Alive Location: https://signin.infusionsoft.com/?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=154DAFB9763E7EF158213C0F4C1B6324 Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
https://signin.infusionsoft.com/?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=154dafb9763e7ef158213c0f4c1b6324 | HTTP/1.1 302 Found Date: Sat, 10 Jan 2015 07:55:53 GMT Location: https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=154dafb9763e7ef158213c0f4c1b6324 Content-Length: 0 Content-Type: text/html;charset=UTF-8 Set-Cookie: app-lb=336068618.20480.0000; path=/ Set-Cookie: TS1b1025=1f09edf54b4e27758153293521e31fbe25dadd998447ad3054b0db09431c454980507999; Path=/; Secure; HTTPOnly Set-Cookie: TS1b1025_28=4e8651005bb374a12d2fc8f57d72b48625dadd998447ad3000000000000000000054b0db0925dadd998447ad30; Path=/; Secure; HTTPOnly X-Cnection: close X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN | clean |
https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=154dafb9763e7ef158213c0f4c1b6324 | 200 OK Content-Length: 16813 Content-Type: text/html | clean |
https://signin.infusionsoft.com/js/jquery-1.11.0/jquery-1.11.0.min.js;jsessionid=BA9589CD38CFD9AC09AC66F6B99640C5 | 200 OK Content-Length: 96381 Content-Type: text/javascript | clean |
http://signin.infusionsoft.com?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=BA9589CD38CFD9AC09AC66F6B99640C5 | HTTP/1.1 302 Found Connection: Keep-Alive Location: https://signin.infusionsoft.com/?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=BA9589CD38CFD9AC09AC66F6B99640C5 Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
https://signin.infusionsoft.com/?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=ba9589cd38cfd9ac09ac66f6b99640c5 | HTTP/1.1 302 Found Date: Sat, 10 Jan 2015 07:55:57 GMT Location: https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=ba9589cd38cfd9ac09ac66f6b99640c5 Content-Length: 0 Content-Type: text/html;charset=UTF-8 Set-Cookie: app-lb=336068618.20480.0000; path=/ Set-Cookie: TS1b1025=f763aee164f2bf6ec236c824b2a977e3ea30c930ba3f2f2954b0db0d431c454980507999; Path=/; Secure; HTTPOnly Set-Cookie: TS1b1025_28=c93ae25baff80db0abde1837ea592034ea30c930ba3f2f2900000000000000000054b0db0dea30c930ba3f2f29; Path=/; Secure; HTTPOnly X-Cnection: close X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN | clean |
https://signin.infusionsoft.com/login?service=https%3a%2f%2faj109.infusionsoft.com%2fj_spring_cas_security_check/bootstrap-3.2.0-dist/js/bootstrap.min.js;jsessionid=ba9589cd38cfd9ac09ac66f6b99640c5 | 200 OK Content-Length: 16814 Content-Type: text/html | clean |
https://signin.infusionsoft.com/js/jquery-1.11.0/jquery-1.11.0.min.js;jsessionid=2BF160DBBD4F0E54E6601042059D8E14 | 200 OK Content-Length: 96381 Content-Type: text/javascript | clean |