Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=comohacermagiablanca.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://comohacermagiablanca.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://comohacermagiablanca.com/ | 200 OK Content-Length: 91813 Content-Type: text/html | clean |
http://comohacermagiablanca.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://comohacermagiablanca.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://comohacermagiablanca.com/wp-content/themes/flexibility3/js/superfish.js?ver=3.8.4 | 200 OK Content-Length: 3090 Content-Type: application/javascript | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 145774 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(typeof(stlib)=="undefined"){var stlib={}}if(!stlib.functions){stlib.functions=[];stlib.functionCount=0}stlib.global={};stlib.global.hash=document.location.href.split("#");stlib.global.hash.shift();stlib.global.hash=stlib.global.hash.join("#");stlib.dynamicOn=true;stlib.debugOn=false;stlib.debug={count:0,messages:[],debug:function(b,a){if(a&&(typeof console)!="undefined"){console.log(b)}stlib.debug.messages.push(b)},show:function(a){for(message in stlib.debug.messages){if((typeof conso Antivirus reports:
| ||
http://comohacermagiablanca.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 20 Sep 2014 10:17:37 GMT Pragma: no-cache Location: http://comohacermagiablanca.com Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://comohacermagiablanca.com/xmlrpc.php | clean |
http://comohacermagiablanca.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 20 Sep 2014 10:17:37 GMT Pragma: no-cache Location: http://comohacermagiablanca.com Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://comohacermagiablanca.com/xmlrpc.php | clean |
http://forms.aweber.com/form/68/1894041668.js | 200 OK Content-Length: 13692 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: comohacermagiablanca.com ...[1211 bytes skipped]... adding-bottom:15px;padding-top:15px;background-repeat:no-repeat;background-position:inherit;background-image:none;color:#000000;font-size:11px;font-family:Verdana, sans-serif;}#af-form-1894041668 .af-quirksMode{padding-right:15px;padding-left:15px;}#af-form-1894041668 .af-standards .af-element{padding-right:15px;padding-left:15px;}#af-form-1894041668 .buttonContainer input.submit{background-color:#910000;background-image:url(\"http://comohacermagiablanca.com/images/botondesc.png\");color:#FFFFFF;text-decoration:none;font-style:normal;font-weight:normal;font-size:14px;font-family:Verdana, sans-serif;}#af-form-1894041668 .buttonContainer input.submit{width:auto;}#af-form-1894041668 .buttonContainer{text-align:right;}#af-form-1894041668 button,#af-form-1894041668 input,#af-form-1894041668 submit,#af-form-1894041668 textarea,#af-form-189404166rm><script type=\"text/javascript\"> <!-- (function() { var IE = /*@ ...[2044 bytes skipped]... | ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21412 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: comohacermagiablanca.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 20 Sep 2014 10:17:32 GMT
Server: nginx/1.6.2
Content-Type: text/html; charset=UTF-8
X-Pingback: http://comohacermagiablanca.com/xmlrpc.php
GET / HTTP/1.1
Host: comohacermagiablanca.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 20 Sep 2014 10:17:32 GMT
Server: nginx/1.6.2
Content-Type: text/html; charset=UTF-8
X-Pingback: http://comohacermagiablanca.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: comohacermagiablanca.com
Referer: http://www.google.com/search?q=comohacermagiablanca.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: comohacermagiablanca.com
Referer: http://www.google.com/search?q=comohacermagiablanca.com
Result:
The result is similar to the first query. There are no suspicious redirects found.