Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kmarathon.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kmarathon.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 14 Jan 2015 08:16:06 GMT
Location: http://letsgoforward.com/
Server: Apache
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
...233 bytes of data.
GET / HTTP/1.1
Host: kmarathon.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 14 Jan 2015 08:16:06 GMT
Location: http://letsgoforward.com/
Server: Apache
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
...233 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: kmarathon.com
Referer: http://www.google.com/search?q=kmarathon.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kmarathon.com
Referer: http://www.google.com/search?q=kmarathon.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://kmarathon.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 14 Jan 2015 08:16:06 GMT Location: http://letsgoforward.com/ Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://letsgoforward.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 14 Jan 2015 08:16:06 GMT Pragma: no-cache Location: http://www.letsgoforward.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=6b4861dade48327776beae3be09faf09; path=/ X-Pingback: http://www.letsgoforward.com/xmlrpc.php | clean |
http://www.letsgoforward.com/ | 200 OK Content-Length: 55186 Content-Type: text/html | clean |
http://www.letsgoforward.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/mailchimp/js/scrollTo.js?ver=1.4.1 | 200 OK Content-Length: 2262 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-includes/js/jquery/jquery.form.min.js?ver=3.37.0 | 200 OK Content-Length: 14720 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/mailchimp/js/mailchimp.js?ver=1.4.1 | 200 OK Content-Length: 994 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.4 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/mailchimp//js/datepicker.js?ver=3.9.3 | 200 OK Content-Length: 75876 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/pe_flare_lightbox/js/pe.flare/jquery.pixelentity.flare.min.js?ver=1379846177 | 200 OK Content-Length: 36056 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/pe_flare_lightbox/js/jquery.pixelentity.wp.flare.js?ver=1379846177 | 200 OK Content-Length: 1490 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?rev=4.3.8&ver=3.9.3 | 200 OK Content-Length: 85185 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?rev=4.3.8&ver=3.9.3 | 200 OK Content-Length: 101288 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/simply-instagram/js/simply-instagram-jquery.prettyPhoto.js?ver=3.1.4 | 200 OK Content-Length: 24692 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-content/plugins/yikes-inc-easy-mailchimp-extender/js/prototype.js | 200 OK Content-Length: 163312 Content-Type: application/javascript | clean |
http://www.letsgoforward.com/wp-includes/js/thickbox/thickbox.js?ver=3.1-20121105 | 200 OK Content-Length: 12018 Content-Type: application/javascript | clean |