Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nowyoumove.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nowyoumove.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Fri, 26 Dec 2014 06:00:24 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Expires: Fri, 26 Dec 2014 07:00:24 GMT
Set-Cookie: wordpress_9d4b99d7ffdfda662290f128e28d8492=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_9d4b99d7ffdfda662290f128e28d8492=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_9d4b99d7ffdfda662290f128e28d8492=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; httponly
X-Pingback: http://nowyoumove.com/xmlrpc.php
GET / HTTP/1.1
Host: nowyoumove.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Fri, 26 Dec 2014 06:00:24 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Expires: Fri, 26 Dec 2014 07:00:24 GMT
Set-Cookie: wordpress_9d4b99d7ffdfda662290f128e28d8492=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_9d4b99d7ffdfda662290f128e28d8492=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_9d4b99d7ffdfda662290f128e28d8492=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; httponly
X-Pingback: http://nowyoumove.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: nowyoumove.com
Referer: http://www.google.com/search?q=nowyoumove.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nowyoumove.com
Referer: http://www.google.com/search?q=nowyoumove.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nowyoumove.com/ | 200 OK Content-Length: 39332 Content-Type: text/html | clean |
http://nowyoumove.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/x-javascript | clean |
http://nowyoumove.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://nowyoumove.com/wp-content/themes/catch-box/js/jquery.cycle.all.js?ver=4.0.1 | 200 OK Content-Length: 52194 Content-Type: application/x-javascript | clean |
http://nowyoumove.com/wp-content/themes/catch-box/js/cycle_setup.js?ver=1.0 | 200 OK Content-Length: 935 Content-Type: application/x-javascript | clean |
http://nowyoumove.com/wp-content/themes/catch-box/js/html5.js?ver=4.0.1 | 200 OK Content-Length: 2000 Content-Type: application/x-javascript | clean |
http://nowyoumove.com/category/tech/ | 200 OK Content-Length: 21462 Content-Type: text/html | clean |
http://nowyoumove.com/category/review/ | 200 OK Content-Length: 18515 Content-Type: text/html | clean |
http://nowyoumove.com/category/politics/ | 200 OK Content-Length: 13639 Content-Type: text/html | clean |
http://nowyoumove.com/category/travel/ | 200 OK Content-Length: 13625 Content-Type: text/html | clean |
http://nowyoumove.com/category/social/ | 200 OK Content-Length: 18814 Content-Type: text/html | clean |
http://nowyoumove.com/category/sports/ | 200 OK Content-Length: 16039 Content-Type: text/html | clean |
http://nowyoumove.com/category/health/ | 200 OK Content-Length: 18692 Content-Type: text/html | clean |
http://nowyoumove.com/about-us/ | 200 OK Content-Length: 16039 Content-Type: text/html | clean |
http://nowyoumove.com/wp-content/plugins/akismet/_inc/form.js?ver=3.0.2 | 200 OK Content-Length: 700 Content-Type: application/x-javascript | clean |