Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=e-bizreview.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://e-bizreview.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: e-bizreview.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 30 Jan 2015 08:03:27 GMT Location: http://82.118.18.238/?80&source=e-bizreview.com Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html | malicious |
URL: http://82.118.18.238/?80&source=e-bizreview.com (imitation of visitor from search engine) GET /?80&source=e-bizreview.com HTTP/1.1 Host: 82.118.18.238 Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0 Connection: close Date: Fri, 30 Jan 2015 08:02:29 GMT Pragma: no-cache Location: http://myfreedownloadsnow.com/download_direct8080.php?id=2803&name=Flash Player Update Server: nginx Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 21 Jul 1977 07:30:00 GMT Last-Modified: Fri, 30 Jan 2015 08:02:29 GMT X-Powered-By: PHP/5.3.3 | malicious |
URL: http://myfreedownloadsnow.com/download_direct8080.php?id=2803&name=Flash Player Update (imitation of visitor from search engine) GET /download_direct8080.php?id=2803&name=Flash Player Update HTTP/1.1 Host: myfreedownloadsnow.com Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Found Connection: close Date: Fri, 30 Jan 2015 04:57:52 GMT Location: http://www.geranium-download.com/pdownload.php?version=1.1.5.26&campid=3687&instid[appname]=Flash%20Player%20Update%20Downloader&instid[appsetupurl]=http%3A%2F%2Ffastmediadownloads.com%2Fdownload%2FPrompt-Downloader-1554013830.exe&instid[cmdline]=&instid[appimageurl]=http%3A%2F%2Fpromptdownloader.com%2Flogo.png&prefix=Flash%20Player%20Update%20Downloader&instid[interrupted]=http%3A%2F%2Fpromptdownloader.com%2F%3Fcancel&ti1=1554013830&instid[thankyoupage]=http%3A%2F%2Fpromptdownloader.com%2F%3Fsuccess Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=utf-8 Set-Cookie: affid=2803; expires=Sat, 30-Jan-2016 04:57:51 GMT; path=/ Set-Cookie: httpref=http%3A%2F%2Fwww.google.com%2Furl%3Fsa%3Dt%26rct%3Dj%26q%3De-bizreview.com%26source%3Dweb%26cd%3D1%26ved%3D0CDEQFjAG%26url%3Dhttp%3A%252F%252Fe-bizreview.com%252F%26ei%3DwC7yT5qCJbCCkQKtnwE%26usg%3DAFQjCNGEeYp3D7uuNLAJxMIVliLyQ9O_Pg; expires=Sat, 30-Jan-2016 04:57:51 GMT; path=/ Set-Cookie: trackaffid=2803; expires=Sat, 30-Jan-2016 04:57:52 GMT; path=/ Set-Cookie: trackhttpref=http%3A%2F%2Fwww.google.com%2Furl%3Fsa%3Dt%26rct%3Dj%26q%3De-bizreview.com%26source%3Dweb%26cd%3D1%26ved%3D0CDEQFjAG%26url%3Dhttp%3A%252F%252Fe-bizreview.com%252F%26ei%3DwC7yT5qCJbCCkQKtnwE%26usg%3DAFQjCNGEeYp3D7uuNLAJxMIVliLyQ9O_Pg; expires=Sat, 30-Jan-2016 04:57:52 GMT; path=/ X-Powered-By: PHP/5.3.3 | malicious |
URL: http://www.geranium-download.com/pdownload.php?version=1.1.5.26&campid=3687&instid[appname]=Flash%20Player%20Update%20Downloader&instid[appsetupurl]=http%3A%2F%2Ffastmediadownloads.com%2Fdownload%2FPrompt-Downloader-1554013830.exe&instid[cmdline]=&instid[appimageurl]=http%3A%2F%2Fpromptdownloader.com%2Flogo.png&prefix=Flash%20Player%20Update%20Downloader&instid[interrupted]=http%3A%2F%2Fpromptdownloader.com%2F%3Fcancel&ti1=1554013830&instid[thankyoupage]=http%3A%2F%2Fpromptdownloader.com%2F%3Fsuccess (imitation of visitor from search engine) GET /pdownload.php?version=1.1.5.26&campid=3687&instid[appname]=Flash%20Player%20Update%20Downloader&instid[appsetupurl]=http%3A%2F%2Ffastmediadownloads.com%2Fdownload%2FPrompt-Downloader-1554013830.exe&instid[cmdline]=&instid[appimageurl]=http%3A%2F%2Fpromptdownloader.com%2Flogo.png&prefix=Flash%20Player%20Update%20Downloader&instid[interrupted]=http%3A%2F%2Fpromptdownloader.com%2F%3Fcancel&ti1=1554013830&instid[thankyoupage]=http%3A%2F%2Fpromptdownloader.com%2F%3Fsuccess HTTP/1.1 Host: www.geranium-download.com Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Found Connection: Close Date: Fri, 30 Jan 2015 08:03:29 GMT Location: http://www.april3-dmdd-download.com/tdownload.php?s1=fa3be437c4026a3020d9f0b36d47916b93a7dabd&t1=1422605189&version=1.1.5.26&campid=3687&instid[appname]=Flash%20Player%20Update%20Downloader&instid[appsetupurl]=http%3A%2F%2Ffastmediadownloads.com%2Fdownload%2FPrompt-Downloader-1554013830.exe&instid[cmdline]=&instid[appimageurl]=http%3A%2F%2Fpromptdownloader.com%2Flogo.png&prefix=Flash%20Player%20Update%20Downloader&instid[interrupted]=http%3A%2F%2Fpromptdownloader.com%2F%3Fcancel&ti1=1554013830&instid[thankyoupage]=http%3A%2F%2Fpromptdownloader.com%2F%3Fsuccess Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3 | malicious |
Scanned pages/files
Request | Server response | Status |
http://e-bizreview.com/ | 200 OK Content-Length: 113487 Content-Type: text/html | clean |
http://e-bizreview.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?rev=4.3.8&ver=3.9.3 | 200 OK Content-Length: 85185 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?rev=4.3.8&ver=3.9.3 | 200 OK Content-Length: 101288 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/plugins/oiopub-direct/js.php?type=banner&align=center&zone=2 | 200 OK Content-Length: 527 Content-Type: application/javascript | clean |
http://forms.aweber.com/form/15/126809915.js | 200 OK Content-Length: 6828 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: e-bizreview.com ...[724 bytes skipped]... eight:normal;font-size:inherit;font-family:inherit;}#af-form-126809915 .af-body{background-repeat:no-repeat;background-position:inherit;background-image:none;color:#000000;font-size:12px;font-family:, serif;}#af-form-126809915 .af-quirksMode{padding-right:15px;padding-left:15px;}#af-form-126809915 .af-standards .af-element{padding-right:15px;padding-left:15px;}#af-form-126809915 .buttonContainer input.submit{background-image:url(\"http://e-bizreview.com/wp-content/uploads/2012/12/id-love-updates-button.png\");color:#000000;text-decoration:none;font-style:normal;font-weight:normal;font-size:inherit;font-family:inherit;}#af-form-126809915 .buttonContainer input.submit{width:auto;}#af-form-126809915 .buttonContainer{text-align:center;}#af-form-126809915 button,#af-form-126809915 input,#af-form-126809915 submit,#af-form-126809915 textarea,#af-form-126809915 select,#af-form-126809915 label,#af-form-126809915 optgroup,#af-form-1268099 ...[2488 bytes skipped]... Decoded script: ...[710 bytes skipped]... weight:normal;font-size:inherit;font-family:inherit;}#af-form-126809915 .af-body{background-repeat:no-repeat;background-position:inherit;background-image:none;color:#000000;font-size:12px;font-family:, serif;}#af-form-126809915 .af-quirksMode{padding-right:15px;padding-left:15px;}#af-form-126809915 .af-standards .af-element{padding-right:15px;padding-left:15px;}#af-form-126809915 .buttonContainer input.submit{background-image:url("http://e-bizreview.com/wp-content/uploads/2012/12/id-love-updates-button.png");color:#000000;text-decoration:none;font-style:normal;font-weight:normal;font-size:inherit;font-family:inherit;}#af-form-126809915 .buttonContainer input.submit{width:auto;}#af-form-126809915 .buttonContainer{text-align:center;}#af-form-126809915 button,#af-form-126809915 input,#af-form-126809915 submit,#af-form-126809915 textarea,#af-form-126809915 select,#af-form-126809915 label,#af-form-126809915 optgroup,#af-form-12680991 ...[4214 bytes skipped]... | ||
http://e-bizreview.com/wp-content/plugins/oiopub-direct/js.php?type=banner&align=center&zone=12 | 200 OK Content-Length: 425 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.9 | 200 OK Content-Length: 9630 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/themes/Newspaper/js/external.js?ver=3.9.2 | 200 OK Content-Length: 135277 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/themes/Newspaper/js/site.js?ver=3.9.2 | 200 OK Content-Length: 47788 Content-Type: application/javascript | clean |
http://e-bizreview.com/wp-content/plugins/js_composer/assets/js/js_composer_front.js?ver=4.2.2 | 200 OK Content-Length: 23760 Content-Type: application/javascript | clean |
http://e-bizreview.com/category/reviews/ | 200 OK Content-Length: 145196 Content-Type: text/html | clean |
http://connect.facebook.net/en_US/all.js | 200 OK Content-Length: 161854 Content-Type: application/x-javascript | clean |