Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=inturism.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://inturism.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://inturism.com/ | 200 OK Content-Length: 41297 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html lang="en-US" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" > <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="viewport" content="width=device-width, initial-scale=1.0" /> <title> ÐнÑÑÑизм</title> <!-- The Columnal Grid (1140px wide base, load first), Type and image presets ...[4133 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
https://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://inturism.com/wp-content/themes/sample/js/jquery.tools.min.js | 200 OK Content-Length: 4496 Content-Type: application/javascript | clean |
http://inturism.com/wp-content/themes/sample/js/pixastic-lib.latest/pixastic.core.js | 200 OK Content-Length: 11689 Content-Type: application/javascript | clean |
http://inturism.com/wp-content/themes/sample/js/pixastic-lib.latest/pixastic.jquery.js | 200 OK Content-Length: 635 Content-Type: application/javascript | clean |
http://inturism.com/wp-content/themes/sample/js/pixastic-lib.latest/actions/glow.js | 200 OK Content-Length: 2184 Content-Type: application/javascript | clean |
http://inturism.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://inturism.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://inturism.com/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15622 Content-Type: application/javascript | clean |
http://inturism.com//mc.yandex.ru/metrika/watch.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sun, 08 Mar 2015 11:46:30 GMT Pragma: no-cache Location: http://inturism.com/mc.yandex.ru/metrika/watch.js/ Server: Apache/2.4.7 (Ubuntu) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=kp71vmi9hqlbdsvjthdtjctaj7; path=/ Set-Cookie: wfvt_603129210=54fc36963a536; expires=Sun, 08-Mar-2015 12:16:30 GMT; Max-Age=1800; path=/; httponly X-Pingback: http://inturism.com/xmlrpc.php X-Powered-By: PHP/5.5.9-1ubuntu4.5 | clean |
http://inturism.com/mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 15904 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html lang="en-US" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" > <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="viewport" content="width=device-width, initial-scale=1.0" /> <title>Page not found | ÐнÑÑÑизм</title> <!-- The Columnal Grid (1140px wide base, load first), Type ...[4166 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://inturism.com//s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sun, 08 Mar 2015 11:46:30 GMT Pragma: no-cache Location: http://inturism.com/s7.addthis.com/js/300/addthis_widget.js/ Server: Apache/2.4.7 (Ubuntu) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=l0ovedktn6svf4f1cnlqkttuk1; path=/ Set-Cookie: wfvt_603129210=54fc3696b3ba4; expires=Sun, 08-Mar-2015 12:16:30 GMT; Max-Age=1800; path=/; httponly X-Pingback: http://inturism.com/xmlrpc.php X-Powered-By: PHP/5.5.9-1ubuntu4.5 | clean |
http://inturism.com/s7.addthis.com/js/300/addthis_widget.js/ | 404 Not Found Content-Length: 15904 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html lang="en-US" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" > <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="viewport" content="width=device-width, initial-scale=1.0" /> <title>Page not found | ÐнÑÑÑизм</title> <!-- The Columnal Grid (1140px wide base, load first), Type ...[4166 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://inturism.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.46.0-2013.11.21 | 200 OK Content-Length: 14798 Content-Type: application/javascript | clean |
http://inturism.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.6 | 200 OK Content-Length: 7691 Content-Type: application/javascript | clean |
http://inturism.com/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 3941 Content-Type: application/javascript | clean |
http://inturism.com/news/ | 200 OK Content-Length: 29266 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <html lang="en-US" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" > <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="viewport" content="width=device-width, initial-scale=1.0" /> <title>ÐовоÑÑи | ÐнÑÑÑизм</title> <!-- The Columnal Grid (1140px wide base, load first), Type ...[4143 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: inturism.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 08 Mar 2015 11:46:27 GMT
Pragma: no-cache
Server: Apache/2.4.7 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=vu3p3uustiu70om8mesm2p0oi6; path=/
Set-Cookie: wfvt_603129210=54fc3693ccc06; expires=Sun, 08-Mar-2015 12:16:27 GMT; Max-Age=1800; path=/; httponly
X-Pingback: http://inturism.com/xmlrpc.php
X-Powered-By: PHP/5.5.9-1ubuntu4.5
GET / HTTP/1.1
Host: inturism.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 08 Mar 2015 11:46:27 GMT
Pragma: no-cache
Server: Apache/2.4.7 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=vu3p3uustiu70om8mesm2p0oi6; path=/
Set-Cookie: wfvt_603129210=54fc3693ccc06; expires=Sun, 08-Mar-2015 12:16:27 GMT; Max-Age=1800; path=/; httponly
X-Pingback: http://inturism.com/xmlrpc.php
X-Powered-By: PHP/5.5.9-1ubuntu4.5
Second query (visit from search engine):
GET / HTTP/1.1
Host: inturism.com
Referer: http://www.google.com/search?q=inturism.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: inturism.com
Referer: http://www.google.com/search?q=inturism.com
Result:
The result is similar to the first query. There are no suspicious redirects found.