Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gavinwedell.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gavinwedell.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Thu, 25 Dec 2014 20:44:45 GMT
Location: http://betterbusinesslearning.com
Server: Apache
Vary: Accept-Encoding
Content-Length: 217
Content-Type: text/html; charset=iso-8859-1
...217 bytes of data.
GET / HTTP/1.1
Host: gavinwedell.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Thu, 25 Dec 2014 20:44:45 GMT
Location: http://betterbusinesslearning.com
Server: Apache
Vary: Accept-Encoding
Content-Length: 217
Content-Type: text/html; charset=iso-8859-1
...217 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: gavinwedell.com
Referer: http://www.google.com/search?q=gavinwedell.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gavinwedell.com
Referer: http://www.google.com/search?q=gavinwedell.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gavinwedell.com/ | HTTP/1.1 302 Found Connection: close Date: Thu, 25 Dec 2014 20:44:45 GMT Location: http://betterbusinesslearning.com Server: Apache Vary: Accept-Encoding Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://betterbusinesslearning.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 25 Dec 2014 20:45:22 GMT Pragma: no-cache Location: http://changeactivation.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=f9a87e734c88c6c2c940a98b7f62351e; path=/ X-Powered-By: PHP/5.3.29 | clean |
http://changeactivation.com/ | 200 OK Content-Length: 66442 Content-Type: text/html | clean |
http://changeactivation.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/plugins/q2w3-fixed-widget/js/q2w3-fixed-widget.min.js?ver=4.0.6 | 200 OK Content-Length: 2455 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?ver=4.1 | 200 OK Content-Length: 17128 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.1 | 200 OK Content-Length: 56013 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/plugins/wp-jackbox/jackbox/js/jackbox-scripts.min.js?ver=4.1 | 200 OK Content-Length: 1629 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/plugins/optin-monster/assets/js/api.js?ver=2.1.3 | 200 OK Content-Length: 66800 Content-Type: application/javascript | clean |
http://www.clickevents.com.my/scripts/collect.js | 200 OK Content-Length: 2920 Content-Type: application/x-javascript | clean |
http://gavinwedell.com//s7.addthis.com/js/300/addthis_widget.js/ | 404 Not Found Content-Length: 44 Content-Type: text/html | clean |
http://gavinwedell.com/test404page.js | 404 Not Found Content-Length: 44 Content-Type: text/html | clean |
http://forms.aweber.com/form/25/551545925.js | 200 OK Content-Length: 15737 Content-Type: application/x-javascript | clean |
http://changeactivation.com/wp-content/themes/lespaul/assets/js/imagesloaded/jquery.imagesloaded.min.js?ver=2.2.5 | 200 OK Content-Length: 6949 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/themes/lespaul/assets/js/prettyphoto/jquery.prettyPhoto.js?ver=2.2.5 | 200 OK Content-Length: 22060 Content-Type: application/javascript | clean |
http://changeactivation.com/wp-content/themes/lespaul/assets/js/scripts.js?ver=2.2.5 | 200 OK Content-Length: 13134 Content-Type: application/javascript | clean |