Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kawhatnow.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kawhatnow.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 08 Jan 2015 20:44:47 GMT
Pragma: no-cache
Location: http://www.kawhatnow.com/
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e2df51a95178096807429946ef6c37bf; path=/
X-Pingback: http://www.kawhatnow.com/xmlrpc.php
X-UA-Compatible: IE=edge,chrome=1
...0 bytes of data.
GET / HTTP/1.1
Host: kawhatnow.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 08 Jan 2015 20:44:47 GMT
Pragma: no-cache
Location: http://www.kawhatnow.com/
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e2df51a95178096807429946ef6c37bf; path=/
X-Pingback: http://www.kawhatnow.com/xmlrpc.php
X-UA-Compatible: IE=edge,chrome=1
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: kawhatnow.com
Referer: http://www.google.com/search?q=kawhatnow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kawhatnow.com
Referer: http://www.google.com/search?q=kawhatnow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://kawhatnow.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 08 Jan 2015 20:44:47 GMT Pragma: no-cache Location: http://www.kawhatnow.com/ Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=e2df51a95178096807429946ef6c37bf; path=/ X-Pingback: http://www.kawhatnow.com/xmlrpc.php X-UA-Compatible: IE=edge,chrome=1 | clean |
http://www.kawhatnow.com/ | 200 OK Content-Length: 45673 Content-Type: text/html | clean |
http://www.kawhatnow.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.9.2/jquery-ui.min.js?ver=4.1 | 200 OK Content-Length: 237734 Content-Type: text/javascript | clean |
http://www.kawhatnow.com/wp-content/plugins/all_in_one_carousel/carousel/js/jquery.ui.touch-punch.min.js?ver=4.1 | 200 OK Content-Length: 1188 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/plugins/all_in_one_carousel/carousel/js/allinone_carousel.js?ver=4.1 | 200 OK Content-Length: 25604 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/plugins/showbiz/showbiz-plugin/fancybox/jquery.fancybox.pack.js?rev=1.4.4&ver=4.1 | 200 OK Content-Length: 22595 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/plugins/showbiz/showbiz-plugin/js/jquery.themepunch.plugins.min.js?rev=1.4.4&ver=4.1 | 200 OK Content-Length: 77389 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/plugins/showbiz/showbiz-plugin/js/jquery.themepunch.showbizpro.min.js?rev=1.4.4&ver=4.1 | 200 OK Content-Length: 27357 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/themes/enfold/js/avia-compat.js?ver=2 | 200 OK Content-Length: 1105 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/themes/enfold/config-layerslider/LayerSlider/static/js/greensock.js?ver=1.11.8 | 200 OK Content-Length: 53010 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/themes/enfold/config-layerslider/LayerSlider/static/js/layerslider.kreaturamedia.jquery.js?ver=5.3.2 | 200 OK Content-Length: 56423 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/themes/enfold/config-layerslider/LayerSlider/static/js/layerslider.transitions.js?ver=5.3.2 | 200 OK Content-Length: 21095 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/themes/enfold/js/avia.js?ver=3 | 200 OK Content-Length: 104871 Content-Type: application/javascript | clean |
http://www.kawhatnow.com/wp-content/themes/enfold/js/shortcodes.js?ver=3 | 200 OK Content-Length: 130255 Content-Type: application/javascript | clean |