Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=floridapathologylab.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lakeledeng.dodocat.com
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Sat, 20 Dec 2014 17:24:28 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=euc-kr
Expires: 0
Last-Modified: Sat, 20 Dec 2014 17:24:28 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=4b95dbf085efe290082195ecc7211970; path=/
Set-Cookie: f33d2ed86bd82d4c22123c9da444d8ab=MTQxOTA5NjI2OA%3D%3D; expires=Sun, 20-Dec-2015 17:24:28 GMT; path=/
Set-Cookie: 96b28b766b7e0699aa91c9ff3d890663=deleted; expires=Fri, 20-Dec-2013 17:24:27 GMT; path=/
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Sun, 21-Dec-2014 17:24:28 GMT; path=/
X-Powered-By: PHP/5.2.8
GET / HTTP/1.1
Host: lakeledeng.dodocat.com
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Sat, 20 Dec 2014 17:24:28 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=euc-kr
Expires: 0
Last-Modified: Sat, 20 Dec 2014 17:24:28 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=4b95dbf085efe290082195ecc7211970; path=/
Set-Cookie: f33d2ed86bd82d4c22123c9da444d8ab=MTQxOTA5NjI2OA%3D%3D; expires=Sun, 20-Dec-2015 17:24:28 GMT; path=/
Set-Cookie: 96b28b766b7e0699aa91c9ff3d890663=deleted; expires=Fri, 20-Dec-2013 17:24:27 GMT; path=/
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Sun, 21-Dec-2014 17:24:28 GMT; path=/
X-Powered-By: PHP/5.2.8
Second query (visit from search engine):
GET / HTTP/1.1
Host: lakeledeng.dodocat.com
Referer: http://www.google.com/search?q=lakeledeng.dodocat.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lakeledeng.dodocat.com
Referer: http://www.google.com/search?q=lakeledeng.dodocat.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://floridapathologylab.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 26 Dec 2014 21:10:25 GMT Location: http://www.flhosplab.com/ Server: Apache Content-Length: 0 Content-Type: text/html Set-Cookie: pdb-wp_session=63b49f99aa3ed27751891c11f33ef8b2%7C%7C1419630025%7C%7C1419629665; expires=Fri, 26-Dec-2014 21:40:25 GMT; path=/ X-Powered-By: PHP/5.3.15 | malicious |
http://www.flhosplab.com/ | 200 OK Content-Length: 41161 Content-Type: text/html | malicious |
Page code contains blacklisted domain: phoenix-credit.com <!doctype html>
<!--[if lt IE 7 ]><html class="ie ie6" lang="en-US" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 7 ]><html class="ie ie7" lang="en-US" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8 ]><html class="ie ie8" lang="en-US" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9 ]><html class="ie ie9" lang="en-US" prefix="og: http:// ...[4367 bytes skipped]... Hidden iFrame found. size: 0x0 src: http://google.com <iframe src="http://google.com" width=0 height=0 style="hidden" frameborder=0 marginheight=0 marginwidth=0 scrolling=no> Malicious iFrame found. size: 0x0 src: http://phoenix-credit.com/wp-content/cache.php This URL is marked by Google as suspicious <iframe src="http://phoenix-credit.com/wp-content/cache.php" width=0 height=0 style="hidden" frameborder=0 marginheight=0 marginwidth=0 scrolling=no> | ||
http://www.flhosplab.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/themes/abanix/lib/shortcodes-ultimate//js/jplayer/jquery.jplayer.min.js?ver=1 | 200 OK Content-Length: 43764 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/themes/abanix/lib/shortcodes-ultimate//js/init.js?ver=1 | 200 OK Content-Length: 1450 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.0.1 | 200 OK Content-Length: 83872 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.4 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-includes/js/jquery/ui/jquery.ui.datepicker.min.js?ver=1.10.4 | 200 OK Content-Length: 35806 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.9.3 | 200 OK Content-Length: 9658 Content-Type: application/javascript | clean |
http://floridapathologylab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockUI.min.js?ver=2.60/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 26 Dec 2014 21:10:38 GMT Location: http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockUI.min.js?ver=2.60/ Server: Apache Content-Length: 0 Content-Type: text/html Set-Cookie: pdb-wp_session=e52439d4584180e0f9741930c7ccdb8c%7C%7C1419630039%7C%7C1419629679; expires=Fri, 26-Dec-2014 21:40:39 GMT; path=/ X-Powered-By: PHP/5.3.15 | malicious |
http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockui.min.js?ver=2.60/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 26 Dec 2014 21:10:39 GMT Pragma: no-cache Location: http://www.flhosplab.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: pdb-wp_session=e8331ab9bbe21f36992cf0d9d5948145%7C%7C1419630040%7C%7C1419629680; expires=Fri, 26-Dec-2014 21:40:40 GMT; path=/ Set-Cookie: wfvt_889589566=549dced024b67; expires=Fri, 26-Dec-2014 21:40:40 GMT; path=/; httponly X-Pingback: http://www.flhosplab.com/xmlrpc.php X-Powered-By: PHP/5.3.15 | clean |
http://www.flhosplab.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 26 Dec 2014 21:10:41 GMT Pragma: no-cache Location: http://www.flhosplab.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: pdb-wp_session=2b5012a46803603252a3c011d16feb6e%7C%7C1419630042%7C%7C1419629682; expires=Fri, 26-Dec-2014 21:40:42 GMT; path=/ Set-Cookie: wfvt_889589566=549dced22df8c; expires=Fri, 26-Dec-2014 21:40:42 GMT; path=/; httponly X-Pingback: http://www.flhosplab.com/xmlrpc.php X-Powered-By: PHP/5.3.15 | clean |
http://floridapathologylab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/frontend/woocommerce.min.js?ver=2.1.12/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 26 Dec 2014 21:10:42 GMT Location: http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/frontend/woocommerce.min.js?ver=2.1.12/ Server: Apache Content-Length: 0 Content-Type: text/html Set-Cookie: pdb-wp_session=7947b6e6886269697dba1221c2929b91%7C%7C1419630043%7C%7C1419629683; expires=Fri, 26-Dec-2014 21:40:43 GMT; path=/ X-Powered-By: PHP/5.3.15 | malicious |
http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/frontend/woocommerce.min.js?ver=2.1.12/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 26 Dec 2014 21:10:44 GMT Pragma: no-cache Location: http://www.flhosplab.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: pdb-wp_session=3c2bd603435a886ba0269d0e98ffcce9%7C%7C1419630044%7C%7C1419629684; expires=Fri, 26-Dec-2014 21:40:44 GMT; path=/ Set-Cookie: wfvt_889589566=549dced47dcc4; expires=Fri, 26-Dec-2014 21:40:44 GMT; path=/; httponly X-Pingback: http://www.flhosplab.com/xmlrpc.php X-Powered-By: PHP/5.3.15 | clean |
http://floridapathologylab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/jquery-cookie/jquery.cookie.min.js?ver=1.3.1/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 26 Dec 2014 21:10:45 GMT Location: http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/jquery-cookie/jquery.cookie.min.js?ver=1.3.1/ Server: Apache Content-Length: 0 Content-Type: text/html Set-Cookie: pdb-wp_session=e97c4867a9ecda1bed74fd7d32b86269%7C%7C1419630045%7C%7C1419629685; expires=Fri, 26-Dec-2014 21:40:45 GMT; path=/ X-Powered-By: PHP/5.3.15 | malicious |
http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/jquery-cookie/jquery.cookie.min.js?ver=1.3.1/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 26 Dec 2014 21:10:46 GMT Pragma: no-cache Location: http://www.flhosplab.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: pdb-wp_session=38268ca793d7c79c8763fa075341d603%7C%7C1419630046%7C%7C1419629686; expires=Fri, 26-Dec-2014 21:40:46 GMT; path=/ Set-Cookie: wfvt_889589566=549dced6efb26; expires=Fri, 26-Dec-2014 21:40:46 GMT; path=/; httponly X-Pingback: http://www.flhosplab.com/xmlrpc.php X-Powered-By: PHP/5.3.15 | clean |
http://floridapathologylab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/frontend/cart-fragments.min.js?ver=2.1.12/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 26 Dec 2014 21:10:47 GMT Location: http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/frontend/cart-fragments.min.js?ver=2.1.12/ Server: Apache Content-Length: 0 Content-Type: text/html Set-Cookie: pdb-wp_session=5eab80bc22852b98d0ace0c1d9ed3f7a%7C%7C1419630047%7C%7C1419629687; expires=Fri, 26-Dec-2014 21:40:47 GMT; path=/ X-Powered-By: PHP/5.3.15 | malicious |
http://www.flhosplab.com//www.flhosplab.com/wp-content/plugins/woocommerce/assets/js/frontend/cart-fragments.min.js?ver=2.1.12/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 26 Dec 2014 21:10:48 GMT Pragma: no-cache Location: http://www.flhosplab.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: pdb-wp_session=6fc222a801e4293d43e455275c112711%7C%7C1419630049%7C%7C1419629689; expires=Fri, 26-Dec-2014 21:40:49 GMT; path=/ Set-Cookie: wfvt_889589566=549dced94a824; expires=Fri, 26-Dec-2014 21:40:49 GMT; path=/; httponly X-Pingback: http://www.flhosplab.com/xmlrpc.php X-Powered-By: PHP/5.3.15 | clean |
http://www.flhosplab.com/wp-content/themes/abanix/javascripts/app.js?ver=1.2.3 | 200 OK Content-Length: 1863 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/themes/abanix/javascripts/jquery.prettyPhoto.js?ver=1.2.3 | 200 OK Content-Length: 25298 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/themes/abanix/javascripts/jquery.mobilemenu.js?ver=1.2.3 | 200 OK Content-Length: 1858 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/themes/abanix/javascripts/jquery.fitvids.js?ver=1.2.3 | 200 OK Content-Length: 1441 Content-Type: application/javascript | clean |
http://www.flhosplab.com/wp-content/themes/abanix/javascripts/jquery.easing.1.3.js?ver=1.2.3 | 200 OK Content-Length: 8301 Content-Type: application/javascript | clean |