Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=thenightexchange.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 6c1c6.net.guge180.com
Result:
GET / HTTP/1.1
Host: 6c1c6.net.guge180.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 6c1c6.net.guge180.com
Referer: http://www.google.com/search?q=6c1c6.net.guge180.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 6c1c6.net.guge180.com
Referer: http://www.google.com/search?q=6c1c6.net.guge180.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://thenightexchange.com/ | HTTP/1.1 301 Moved Permanently Date: Fri, 26 Dec 2014 12:51:33 GMT Location: http://www.nightexchange.com Server: squid/2.6.STABLE21 Content-Length: 0 | malicious |
http://www.nightexchange.com/ | 200 OK Content-Length: 77909 Content-Type: text/html | malicious |
Page code contains blacklisted domain: phoenix-credit.com @media (min-width:700px) and (max-width: 1000px){ #bold_chat{ float:none !important; text-align:center; } #whitebox .left{float:left;} #whitebox .right{float:right;} #phonebox .phonenumber{ font-size:40px !important; } #phonebox #localnum{ font-size:20px !important; } .citycol{ width:49%; padding-bottom:20px; } .promo{ padding-left:280px; margin-top: 0px ...[4205 bytes skipped]... Hidden iFrame found. size: 0x0 src: http://google.com <iframe src="http://google.com" width=0 height=0 style="hidden" frameborder=0 marginheight=0 marginwidth=0 scrolling=no> Malicious iFrame found. size: 0x0 src: http://phoenix-credit.com/wp-content/cache.php This URL is marked by Google as suspicious <iframe src="http://phoenix-credit.com/wp-content/cache.php" width=0 height=0 style="hidden" frameborder=0 marginheight=0 marginwidth=0 scrolling=no> | ||
http://www.nightexchange.com/wp-content/themes/salient/js/jquery.colorbox-min.js | 200 OK Content-Length: 11095 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.8.1 | 200 OK Content-Length: 9630 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/superfish.js?ver=1.4.8 | 200 OK Content-Length: 6985 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/imagesLoaded.min.js?ver=3.1.1 | 200 OK Content-Length: 6758 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/easing.js?ver=1.3 | 200 OK Content-Length: 8305 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/respond.js?ver=1.1 | 200 OK Content-Length: 4870 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/swipe.min.js?ver=1.6 | 200 OK Content-Length: 9357 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/nicescroll.js?ver=3.5.4 | 200 OK Content-Length: 58097 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/sticky.js?ver=1.0 | 200 OK Content-Length: 5565 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/prettyPhoto.js?ver=3.1.5 | 200 OK Content-Length: 35749 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/wpbakery/js_composer/assets/lib/flexslider/jquery.flexslider-min.js?ver=3.7.3 | 200 OK Content-Length: 16917 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/wpbakery/js_composer/assets/lib/isotope/jquery.isotope.min.js?ver=3.7.3 | 200 OK Content-Length: 16033 Content-Type: application/javascript | clean |
http://www.nightexchange.com/wp-content/themes/salient/js/carouFredSel.min.js?ver=6.2 | 200 OK Content-Length: 95338 Content-Type: application/javascript | clean |