Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=clubedosdesocupados.ws
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://clubedosdesocupados.ws/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://clubedosdesocupados.ws/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 21 Sep 2014 12:16:24 GMT Location: http://www.clubedosdesocupados.ws/ Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Strict-Transport-Security: max-age=15768000 X-Pingback: http://www.clubedosdesocupados.ws/xmlrpc.php X-Powered-By: PHP/5.4.23 | clean |
http://www.clubedosdesocupados.ws/ | 200 OK Content-Length: 116806 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.revistasvip.com <!DOCTYPE html>
<!--[if lt IE 7]><html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="pt-BR"><![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8" lang="pt-BR"><![endif]--> <!--[if IE 8]><html class="no-js lt-ie9" lang="pt-BR"><![endif]--> <!--[if gt IE 8]><!--><html class="no-js" lang="pt-BR"><!--<![endif]--> <head profile="http://gmpg.org ...[4146 bytes skipped]... | ||
http://www.clubedosdesocupados.ws/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://www.clubedosdesocupados.ws/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.3.2/jquery.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://www.clubedosdesocupados.ws/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.63 | 200 OK Content-Length: 3018 Content-Type: application/x-javascript | clean |
http://syndication.exoclick.com/splash.php?idzone=477585&type=3 | 200 OK Content-Length: 5825 Content-Type: application/x-javascript | clean |
http://www.clubedosdesocupados.ws/flutuante.js | 200 OK Content-Length: 6036 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: www.diariodaputaria.com function messengerWindow() { if (document.readyState == undefined || document.readyState == "complete" || document.readyState == "interactive") { var mybody = document.body; if (mybody) mybody.appendChild(messengerBox()); } else { setTimeout ('messengerWindow();', 1000); } } function messengerBox() { var mydiv = document.createElement("div"); mydiv.setAttribute("id" ...[3889 bytes skipped]... | ||
http://clubedosdesocupados.ws/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sun, 21 Sep 2014 12:16:29 GMT Pragma: no-cache Location: http://www.clubedosdesocupados.ws/test404page.js Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Strict-Transport-Security: max-age=15768000 X-Pingback: http://www.clubedosdesocupados.ws/xmlrpc.php X-Powered-By: PHP/5.4.23 | clean |
http://www.clubedosdesocupados.ws/test404page.js | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sun, 21 Sep 2014 12:16:29 GMT Pragma: no-cache Location: http://www.clubedosdesocupados.ws Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Strict-Transport-Security: max-age=15768000 X-Pingback: http://www.clubedosdesocupados.ws/xmlrpc.php X-Powered-By: PHP/5.4.23 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: clubedosdesocupados.ws
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 21 Sep 2014 12:16:24 GMT
Location: http://www.clubedosdesocupados.ws/
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Strict-Transport-Security: max-age=15768000
X-Pingback: http://www.clubedosdesocupados.ws/xmlrpc.php
X-Powered-By: PHP/5.4.23
...0 bytes of data.
GET / HTTP/1.1
Host: clubedosdesocupados.ws
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 21 Sep 2014 12:16:24 GMT
Location: http://www.clubedosdesocupados.ws/
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Strict-Transport-Security: max-age=15768000
X-Pingback: http://www.clubedosdesocupados.ws/xmlrpc.php
X-Powered-By: PHP/5.4.23
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: clubedosdesocupados.ws
Referer: http://www.google.com/search?q=clubedosdesocupados.ws
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: clubedosdesocupados.ws
Referer: http://www.google.com/search?q=clubedosdesocupados.ws
Result:
The result is similar to the first query. There are no suspicious redirects found.