Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=weddingdaymagic.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: antunovic.org
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 27 Dec 2014 04:33:10 GMT
Location: http://www.antunovic.it
Server: nginx
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
X-Powered-By: PleskLin
...0 bytes of data.
GET / HTTP/1.1
Host: antunovic.org
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 27 Dec 2014 04:33:10 GMT
Location: http://www.antunovic.it
Server: nginx
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html
X-Powered-By: PleskLin
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: antunovic.org
Referer: http://www.google.com/search?q=antunovic.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: antunovic.org
Referer: http://www.google.com/search?q=antunovic.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://weddingdaymagic.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 27 Dec 2014 04:00:24 GMT Location: http://www.jpmagic.co.uk Server: Apache/2.4.9 (Unix) Content-Length: 314 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://www.jpmagic.co.uk/ | 200 OK Content-Length: 32852 Content-Type: text/html | clean |
http://www.jpmagic.co.uk/wp-content/themes/agriculture/js/modernizr.custom.all.min.js?ver=2.5.2 | 200 OK Content-Length: 15713 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/themes/agriculture/js/respond.min.js?ver=1.1.0 | 200 OK Content-Length: 4170 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/themes/agriculture/js/jquery.easing.min.js?ver=1.3.0 | 200 OK Content-Length: 3768 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/LayerSlider/js/layerslider.kreaturamedia.jquery.js?ver=4.6.0 | 200 OK Content-Length: 48706 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/LayerSlider/js/jquery-easing-1.3.js?ver=1.3.0 | 200 OK Content-Length: 8152 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/LayerSlider/js/jquerytransit.js?ver=0.9.9 | 200 OK Content-Length: 6830 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/LayerSlider/js/layerslider.transitions.js?ver=4.6.0 | 200 OK Content-Length: 21024 Content-Type: text/javascript | clean |
https://maps.google.com/maps/api/js?sensor=false&ver=4.1 | 200 OK Content-Length: 4333 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/contact-form-builder/js/if_gmap_front_end.js?ver=4.1 | 200 OK Content-Length: 6188 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/contact-form-builder/js/cfm_main_front_end.js?ver=1.0.16 | 200 OK Content-Length: 4055 Content-Type: text/javascript | clean |
http://www.jpmagic.co.uk/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.1 | 200 OK Content-Length: 83792 Content-Type: text/javascript | clean |
http://122.155.168.105/ads/inpage/pub/collect.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |