Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=todoesnegociable.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: todoesnegociable.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 26 Jul 2014 21:03:40 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=293g77lolh0m3ksolu7po9j5s2; path=/
Set-Cookie: wassup=YjhjODdlZTQ0NTM4NzgzYmEyZDIzNTA4MzcwNTliMTk6OjE0MDY0MTEzMjE6Ojo6NzguMTU4LjExLjIyNjo6Y2wtNzgtMTU4LTExLTIyNi5mYXN0bGluay5sdDo6; expires=Sat, 26-Jul-2014 21:53:41 GMT; path=/
X-Pingback: http://TodoEsNegociable.com/xmlrpc.php
GET / HTTP/1.1
Host: todoesnegociable.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 26 Jul 2014 21:03:40 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=293g77lolh0m3ksolu7po9j5s2; path=/
Set-Cookie: wassup=YjhjODdlZTQ0NTM4NzgzYmEyZDIzNTA4MzcwNTliMTk6OjE0MDY0MTEzMjE6Ojo6NzguMTU4LjExLjIyNjo6Y2wtNzgtMTU4LTExLTIyNi5mYXN0bGluay5sdDo6; expires=Sat, 26-Jul-2014 21:53:41 GMT; path=/
X-Pingback: http://TodoEsNegociable.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: todoesnegociable.com
Referer: http://www.google.com/search?q=todoesnegociable.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: todoesnegociable.com
Referer: http://www.google.com/search?q=todoesnegociable.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://todoesnegociable.com/ | 200 OK Content-Length: 135910 Content-Type: text/html | clean |
http://TodoEsNegociable.com/wp-includes/js/prototype.js?ver=1.6.1 | 200 OK Content-Length: 139854 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-includes/js/scriptaculous/wp-scriptaculous.js?ver=1.8.3 | 200 OK Content-Length: 2943 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-includes/js/scriptaculous/effects.js?ver=1.8.3 | 200 OK Content-Length: 38471 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-content/plugins/lightbox-2/lightbox-resize.js?ver=1.8 | 200 OK Content-Length: 21887 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-includes/js/jquery/jquery.js?ver=1.7.2 | 200 OK Content-Length: 94861 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-content/plugins/wp-survey-and-quiz-tool/js/site.js?ver=3.4.1 | 200 OK Content-Length: 487 Content-Type: application/x-javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21244 Content-Type: text/javascript | clean |
http://ads.smowtion.com/ad.js | 200 OK Content-Length: 840 Content-Type: text/javascript | clean |
http://widgets.amung.us/classic.js | 200 OK Content-Length: 9043 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-content/plugins/wp-cumulus/swfobject.js | 200 OK Content-Length: 6088 Content-Type: application/x-javascript | clean |
http://widgets.twimg.com/j/2/widget.js | 200 OK Content-Length: 1489 Content-Type: application/javascript | clean |
http://TodoEsNegociable.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.js?ver=3.09 | 200 OK Content-Length: 14238 Content-Type: application/x-javascript | clean |
http://TodoEsNegociable.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.2 | 200 OK Content-Length: 6630 Content-Type: application/x-javascript | clean |
http://cdn.wibiya.com/Toolbars/dir_0416/Toolbar_416164/Loader_416164.js?ver=3.4.1 | 403 Forbidden Content-Length: 338 Content-Type: text/html | clean |