Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=manboobsauthority.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://manboobsauthority.com/ | 200 OK Content-Length: 25199 Content-Type: text/html | clean |
http://aitdru.59.com1.ru/LwCn7yxW.php?id=9296155 | 200 OK Content-Length: 6483 Content-Type: text/html | clean |
http://aitdru.59.com1.ru/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sun, 11 May 2014 15:54:14 GMT Location: http://aitd.ru/404.html Server: nginx Content-Type: text/html; charset=iso-8859-1 | clean |
http://aitd.ru/404.html | 200 OK Content-Length: 3466 Content-Type: text/html | clean |
http://aitd.ru/index1.html | 200 OK Content-Length: 6889 Content-Type: text/html | clean |
http://aitd.ru//mc.yandex.ru/metrika/watch.js/ | HTTP/1.1 302 Found Connection: close Date: Sun, 11 May 2014 15:54:15 GMT Location: http://aitd.ru/404.html Server: nginx Content-Type: text/html; charset=iso-8859-1 | clean |
http://aitd.ru/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sun, 11 May 2014 15:54:15 GMT Location: http://aitd.ru/404.html Server: nginx Content-Type: text/html; charset=iso-8859-1 | clean |
http://aitdru.59.com1.ru/index1.html | 200 OK Content-Length: 6889 Content-Type: text/html | clean |
http://aitdru.59.com1.ru//mc.yandex.ru/metrika/watch.js/ | HTTP/1.1 302 Found Connection: close Date: Sun, 11 May 2014 15:54:15 GMT Location: http://aitd.ru/404.html Server: nginx Content-Type: text/html; charset=iso-8859-1 | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://manboobsauthority.com/wp-content/themes/globalpress/assets/js/jquery.innerfade.js | 200 OK Content-Length: 4838 Content-Type: application/javascript | clean |
http://manboobsauthority.com/wp-content/themes/globalpress/assets/js/jquery.functions.js | 200 OK Content-Length: 554 Content-Type: application/javascript | clean |
http://manboobsauthority.com/wp-content/themes/globalpress/assets/js/functions.js | 200 OK Content-Length: 446 Content-Type: application/javascript | clean |
http://forms.aweber.com/form/66/591053566.js | 200 OK Content-Length: 6903 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: manboobsauthority.com ...[508 bytes skipped]... :#FFFAD6;border-color:#030303;border-width:2px;border-style:solid;}#af-form-591053566 .af-body label.previewLabel{display:block;float:none;text-align:left;width:auto;color:#FFFFFF;text-decoration:none;font-style:normal;font-weight:bold;font-size:12px;font-family:Verdana, sans-serif;}#af-form-591053566 .af-body{padding-bottom:50px;padding-top:210px;background-repeat:no-repeat;background-position:top center;background-image:url(\"http://manboobsauthority.com/wp-content/uploads/2012/06/OPTIN-Box2.png\");color:#000000;font-size:11px;font-family:Verdana, sans-serif;}#af-form-591053566 .af-quirksMode{padding-right:20px;padding-left:20px;}#af-form-591053566 .af-standards .af-element{padding-right:20px;padding-left:20px;}#af-form-591053566 .buttonContainer input.submit{background-image:url(\"http://forms.aweber.com/images/auto/gradient/button/d91.png\");background-position:top left;background-repeat:repeat-x;background-color:#bd7900;bor ...[5825 bytes skipped]... Decoded script: ...[494 bytes skipped]... r:#FFFAD6;border-color:#030303;border-width:2px;border-style:solid;}#af-form-591053566 .af-body label.previewLabel{display:block;float:none;text-align:left;width:auto;color:#FFFFFF;text-decoration:none;font-style:normal;font-weight:bold;font-size:12px;font-family:Verdana, sans-serif;}#af-form-591053566 .af-body{padding-bottom:50px;padding-top:210px;background-repeat:no-repeat;background-position:top center;background-image:url("http://manboobsauthority.com/wp-content/uploads/2012/06/OPTIN-Box2.png");color:#000000;font-size:11px;font-family:Verdana, sans-serif;}#af-form-591053566 .af-quirksMode{padding-right:20px;padding-left:20px;}#af-form-591053566 .af-standards .af-element{padding-right:20px;padding-left:20px;}#af-form-591053566 .buttonContainer input.submit{background-image:url("http://forms.aweber.com/images/auto/gradient/button/d91.png");background-position:top left;background-repeat:repeat-x;background-color:#bd7900;border ...[4513 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: manboobsauthority.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 11 May 2014 15:54:13 GMT
Server: nginx/1.6.0
Vary: Cookie,User-Agent,Accept-Encoding
Content-Length: 25199
Content-Type: text/html; charset=UTF-8
Last-Modified: Sun, 11 May 2014 15:54:13 GMT
X-Pingback: http://manboobsauthority.com/xmlrpc.php
X-Powered-By: W3 Total Cache/0.9.2.4
...25199 bytes of data.
GET / HTTP/1.1
Host: manboobsauthority.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 11 May 2014 15:54:13 GMT
Server: nginx/1.6.0
Vary: Cookie,User-Agent,Accept-Encoding
Content-Length: 25199
Content-Type: text/html; charset=UTF-8
Last-Modified: Sun, 11 May 2014 15:54:13 GMT
X-Pingback: http://manboobsauthority.com/xmlrpc.php
X-Powered-By: W3 Total Cache/0.9.2.4
...25199 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: manboobsauthority.com
Referer: http://www.google.com/search?q=manboobsauthority.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: manboobsauthority.com
Referer: http://www.google.com/search?q=manboobsauthority.com
Result:
The result is similar to the first query. There are no suspicious redirects found.