Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ginnimarcheson.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ginnimarcheson.org/ | 200 OK Content-Length: 3611 Content-Type: text/html | clean |
http://ginnimarcheson.org/history.htm | 200 OK Content-Length: 10841 Content-Type: text/html | clean |
http://ginnimarcheson.org/scholarships.htm | 200 OK Content-Length: 3355 Content-Type: text/html | clean |
http://ginnimarcheson.org/pics.htm | 200 OK Content-Length: 3902 Content-Type: text/html | clean |
http://ginnimarcheson.org/memorials.htm | 200 OK Content-Length: 23498 Content-Type: text/html | clean |
http://ginnimarcheson.org/balloons.htm | 200 OK Content-Length: 4618 Content-Type: text/html | clean |
http://ginnimarcheson.org/index.htm | 200 OK Content-Length: 3580 Content-Type: text/html | clean |
http://ginnimarcheson.org/test404page.js | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://ginnimarcheson.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://ginnimarcheson.org/tribute.html | 200 OK Content-Length: 9899 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
var g = document.aws_multi_728; if (! g) { g = new Date(); g = g.getTime()%10000; document.aws_multi_728 = g; } document.write('<IFRAME src="http://ad.aboutwebservices.com/cgi-bin/ad/102/Y2F0PUJPVFRPTS1HRU5FUkFMJmg9OTAmcz1zcmhzYmFuZC5mcmVlc2VydmVycy5jb20mc3A9NWE5MmYxNDU4NGI4YjVkYyZ3PTcyOA/si1?Rtime='+g+'" width="728" height="90" bgcolor="white" hspace="0" vspace="0" scrolling="no" marginwidth="0" marginheight="0" frameborder="0" allowtransparency="true"></IFRAME>'); Antivirus reports:
| ||
http://ginnimarcheson.org/SRHS%20band.html | 200 OK Content-Length: 13893 Content-Type: text/html | clean |
http://ginnimarcheson.org/2005_season.html | 200 OK Content-Length: 11711 Content-Type: text/html | clean |
http://ginnimarcheson.org/2004_season.html | 200 OK Content-Length: 14161 Content-Type: text/html | clean |
http://ginnimarcheson.org/boosters.html | 200 OK Content-Length: 8958 Content-Type: text/html | clean |
http://ginnimarcheson.org/index.html | 200 OK Content-Length: 3611 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ginnimarcheson.org
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Thu, 28 Aug 2014 01:55:22 GMT
Accept-Ranges: bytes
Age: 0
ETag: "e1b-4e74917755e01"
Server: Apache/2
Content-Length: 3611
Content-Type: text/html
Expires: Thu, 28 Aug 2014 02:55:22 GMT
Last-Modified: Thu, 26 Sep 2013 13:10:19 GMT
...3611 bytes of data.
GET / HTTP/1.1
Host: ginnimarcheson.org
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Thu, 28 Aug 2014 01:55:22 GMT
Accept-Ranges: bytes
Age: 0
ETag: "e1b-4e74917755e01"
Server: Apache/2
Content-Length: 3611
Content-Type: text/html
Expires: Thu, 28 Aug 2014 02:55:22 GMT
Last-Modified: Thu, 26 Sep 2013 13:10:19 GMT
...3611 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ginnimarcheson.org
Referer: http://www.google.com/search?q=ginnimarcheson.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ginnimarcheson.org
Referer: http://www.google.com/search?q=ginnimarcheson.org
Result:
The result is similar to the first query. There are no suspicious redirects found.