Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mwva.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://mwva.com/ | 200 OK Content-Length: 21088 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: d249259.u61.icghosting.com ...[764 bytes skipped]... ;!--[if lt IE 9]> <script src="http://html5shim.googlecode.com/svn/trunk/html5.js"></script> <![endif]--> <!-- Mobile Specific Metas ================================================== --> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <link rel="profile" href="http://gmpg.org/xfn/11" /> <link rel="shortcut icon" href="http://d249259.u61.icghosting.com/wp-content/uploads/2013/10/favicon3.png" type="image/x-icon" /> <!-- <link rel="shortcut icon" href="http://d249259.u61.icghosting.com/wp-content/themes/mwva/images/favicon.ico" type="image/x-icon" /> --> <link rel="pingback" href="http://d249259.u61.icghosting.com/xmlrpc.php" /> <link rel="alternate" type="application/rss+xml" title="Midwest Vascular" href="http://d249259.u61.icghosting.com/feed/" /> <link rel="alternate" ty ...[3043 bytes skipped]... | ||
http://d249259.u61.icghosting.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/plugins/LayerSlider/js/layerslider.kreaturamedia.jquery.js?ver=4.6.0 | 200 OK Content-Length: 48706 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/plugins/LayerSlider/js/jquery-easing-1.3.js?ver=1.3.0 | 200 OK Content-Length: 8152 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/plugins/LayerSlider/js/jquerytransit.js?ver=0.9.9 | 200 OK Content-Length: 6830 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/plugins/LayerSlider/js/layerslider.transitions.js?ver=4.6.0 | 200 OK Content-Length: 21024 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.0.1 | 200 OK Content-Length: 81124 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/bootstrap.min.js?ver=2.3.1 | 200 OK Content-Length: 28631 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/jquery.easing.js?ver=1.3 | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/jquery.fitvids.js?ver=1.0 | 200 OK Content-Length: 3169 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/jquery.viewport.mini.js?ver=1.0 | 200 OK Content-Length: 1203 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/jquery.isotope.min.js?ver=1.5.25 | 200 OK Content-Length: 16033 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/prettyPhoto/jquery.prettyPhoto.js?ver=3.1.5 | 200 OK Content-Length: 22060 Content-Type: application/javascript | clean |
http://d249259.u61.icghosting.com/wp-content/themes/mwva/js/flexslider/jquery.flexslider-min.js?ver=2.1 | 200 OK Content-Length: 16917 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mwva.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 01:38:50 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://d249259.u61.icghosting.com/>; rel=shortlink
X-Pingback: http://d249259.u61.icghosting.com/xmlrpc.php
GET / HTTP/1.1
Host: mwva.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 01:38:50 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://d249259.u61.icghosting.com/>; rel=shortlink
X-Pingback: http://d249259.u61.icghosting.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: mwva.com
Referer: http://www.google.com/search?q=mwva.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mwva.com
Referer: http://www.google.com/search?q=mwva.com
Result:
The result is similar to the first query. There are no suspicious redirects found.