Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=epiphanyremyhair.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://epiphanyremyhair.com/ | 200 OK Content-Length: 15524 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: earnmoneydo.com <a href="http://docuphotography.com/ge-money-bank-loan/">ge money bank loan</a> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" prefix="og: http://ogp.me/ns#"> <meta http-equiv="Content-Script-Type" content="text/javascript" /> <meta name="robots" content="index, follow" /> <m ...[4500 bytes skipped]... | ||
http://epiphanyremyhair.com/wp-content/themes/epiphany/js/jquery-1.5.1.min.js | 200 OK Content-Length: 85260 Content-Type: application/javascript | clean |
http://epiphanyremyhair.com/wp-content/themes/epiphany/js/cufon-yui.js | 200 OK Content-Length: 41261 Content-Type: application/javascript | clean |
http://epiphanyremyhair.com/wp-content/themes/epiphany/js/Lucida_Sans_400-Lucida_Sans_600.font.js | 200 OK Content-Length: 65820 Content-Type: application/javascript | clean |
http://epiphanyremyhair.com/wp-content/themes/epiphany/s/Segan_300.font.js | 404 Not Found Content-Length: 13973 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: earnmoneydo.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" prefix="og: http://ogp.me/ns#"> <meta http-equiv="Content-Script-Type" content="text/javascript" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="" /> <head http-equiv="Content-Type" content="text/html" c ...[4500 bytes skipped]... | ||
http://epiphanyremyhair.com/wp-content/themes/epiphany/js/dropdown.js | 200 OK Content-Length: 381 Content-Type: application/javascript | clean |
http://epiphanyremyhair.com/wp-content/themes/epiphany/js/jquery.cycle.all.min.js | 200 OK Content-Length: 23729 Content-Type: application/javascript | clean |
http://earnmoneydo.com/tds/?wordpress_theme&keyword=Pagenotfound Epiphany Remy Hair &from=http://epiphanyremyhair.com/wp-content/themes/epiphany/s/Segan_300.font.js&inreferer= | 404 Not Found Content-Length: 2340 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: epiphanyremyhair.com ...[1642 bytes skipped]... but what if its https:// or other protocol? SERVER_PORT_SECURE doesn't seem to be used SERVER_PORT logic would break if they use alternate ports --> <h1>404 Not Found</h1> <p>The server can not find the requested page:</p> <blockquote> earnmoneydo.com/tds/?wordpress_theme&keyword=Pagenotfound%20%20Epiphany%20Remy%20Hair%20&from=http://epiphanyremyhair.com/wp-content/themes/epiphany/s/Segan_300.font.js&inreferer= (port 80) </blockquote> <p> Please forward this error screen to earnmoneydo.com's <a href="mailto:postmaster@nocmonitoring.org?subject=Error message [404] 404 Not Found for earnmoneydo.com/tds/?wordpress_theme&keyword=Pagenotfound%20%20Epiphany%20Remy%20Hair%20&from=http://epiphanyremyhair.com/wp-content/themes/epiphany/s/Segan_300.font.js&inrefere ...[203 bytes skipped]... | ||
http://earnmoneydo.com/test404page.js | 404 Not Found Content-Length: 2018 Content-Type: text/html | clean |
http://earnmoneydo.com/tds/?wordpress_theme&keyword=Epiphany Remy Hair Just another WordPress site &from=http://epiphanyremyhair.com/&inreferer= | 404 Not Found Content-Length: 2284 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: epiphanyremyhair.com ...[1660 bytes skipped]... https:// or other protocol? SERVER_PORT_SECURE doesn't seem to be used SERVER_PORT logic would break if they use alternate ports --> <h1>404 Not Found</h1> <p>The server can not find the requested page:</p> <blockquote> earnmoneydo.com/tds/?wordpress_theme&keyword=Epiphany%20Remy%20Hair%20Just%20another%20WordPress%20site%20&from=http://epiphanyremyhair.com/&inreferer= (port 80) </blockquote> <p> Please forward this error screen to earnmoneydo.com's <a href="mailto:postmaster@nocmonitoring.org?subject=Error message [404] 404 Not Found for earnmoneydo.com/tds/?wordpress_theme&keyword=Epiphany%20Remy%20Hair%20Just%20another%20WordPress%20site%20&from=http://epiphanyremyhair.com/&inreferer= port 80 on Tuesday, 03-Mar-2015 15:05:22 CST"> WebMaster< ...[129 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: epiphanyremyhair.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Mar 2015 21:05:14 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=o89fti9upsm9upsfirk821ggk3; path=/
X-Pingback: http://epiphanyremyhair.com/xmlrpc.php
GET / HTTP/1.1
Host: epiphanyremyhair.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Mar 2015 21:05:14 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=o89fti9upsm9upsfirk821ggk3; path=/
X-Pingback: http://epiphanyremyhair.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: epiphanyremyhair.com
Referer: http://www.google.com/search?q=epiphanyremyhair.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: epiphanyremyhair.com
Referer: http://www.google.com/search?q=epiphanyremyhair.com
Result:
The result is similar to the first query. There are no suspicious redirects found.