Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=windowscreenutah.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://windowscreenutah.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 19:04:28 GMT Location: http://www.windowscreenutah.com/ Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: spammer_blocker=not_a_spammer; expires=Sat, 24-Jan-2015 19:04:27 GMT Set-Cookie: wfvt_3018705459=549c5fbc52b93; expires=Thu, 25-Dec-2014 19:34:28 GMT; path=/; httponly X-Pingback: http://www.windowscreenutah.com/xmlrpc.php | clean |
http://www.windowscreenutah.com/ | 200 OK Content-Length: 30565 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: howclearisyourview.com ...[2212 bytes skipped]... //ajax.googleapname="fc_email" id="fc_email" /><label for="fc_name">E-Mail*</label></p> <p><textarea cols="10" id="fc_text" name="fc_text" rows="10"></textarea></p> <p style="display:none;"><input type="hidden" name="fc_send_email" value= "1" /></p> <p style="display:none;"><input type="hidden" name="fc_user_email" value="Info@howclearisyourview.com" /></p> <p style="display:none;"><input type="hidden" name="fc_user_subject" value="Clearview Window Screen Request" /></p> <p><input type="submit" value="Send E-Mail" tabindex="5" id="fc_submit" class="btn_b" name="fc_submit" /></p> </form> </div>& ...[1517 bytes skipped]... | ||
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12798 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.1/jquery.min.js?ver=4.1 | 200 OK Content-Length: 70843 Content-Type: text/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/js/main.js | 200 OK Content-Length: 14869 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/js/cufon.js | 200 OK Content-Length: 18258 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/js/cufon/custom.font.bold.basic.js | 200 OK Content-Length: 22055 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/js/cufon/custom.font.semibold.basic.js | 200 OK Content-Length: 21949 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/js/cufon.config.js | 200 OK Content-Length: 1265 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/js/prettyPhoto/js/jquery.prettyPhoto.js | 200 OK Content-Length: 21810 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/themes/clearview/sliders/scripts/slider_freshcubes.js | 200 OK Content-Length: 6195 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/plugins/open-in-new-window-plugin/open_in_new_window.js | 200 OK Content-Length: 2507 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-includes/js/comment-reply.min.js?ver=4.1 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://www.windowscreenutah.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=4.0.3 | 200 OK Content-Length: 9658 Content-Type: application/javascript | clean |
http://windowscreenutah.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 25 Dec 2014 19:04:38 GMT Pragma: no-cache Location: http://www.windowscreenutah.com/test404page.js Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: spammer_blocker=not_a_spammer; expires=Sat, 24-Jan-2015 19:04:38 GMT Set-Cookie: wfvt_3018705459=549c5fc6b0d6c; expires=Thu, 25-Dec-2014 19:34:38 GMT; path=/; httponly X-Pingback: http://www.windowscreenutah.com/xmlrpc.php | clean |
http://www.windowscreenutah.com/test404page.js | 404 Not Found Content-Length: 15234 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: howclearisyourview.com ...[2390 bytes skipped]... ut type="text" name="fc_email" id="fc_email" /><label for="fc_name">E-Mail*</label></p> <p><textarea cols="10" id="fc_text" name="fc_text" rows="10"></textarea></p> <p style="display:none;"><input type="hidden" name="fc_send_email" value= "1" /></p> <p style="display:none;"><input type="hidden" name="fc_user_email" value="Info@howclearisyourview.com" /></p> <p style="display:none;"><input type="hidden" name="fc_user_subject" value="Clearview Window Screen Request" /></p> <p><input type="submit" value="Send E-Mail" tabindex="5" id="fc_submit" class="btn_b" name="fc_submit" /></p> </form> </div>& ...[1378 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: windowscreenutah.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 19:04:28 GMT
Location: http://www.windowscreenutah.com/
Server: nginx/1.6.2
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: spammer_blocker=not_a_spammer; expires=Sat, 24-Jan-2015 19:04:27 GMT
Set-Cookie: wfvt_3018705459=549c5fbc52b93; expires=Thu, 25-Dec-2014 19:34:28 GMT; path=/; httponly
X-Pingback: http://www.windowscreenutah.com/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: windowscreenutah.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 19:04:28 GMT
Location: http://www.windowscreenutah.com/
Server: nginx/1.6.2
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: spammer_blocker=not_a_spammer; expires=Sat, 24-Jan-2015 19:04:27 GMT
Set-Cookie: wfvt_3018705459=549c5fbc52b93; expires=Thu, 25-Dec-2014 19:34:28 GMT; path=/; httponly
X-Pingback: http://www.windowscreenutah.com/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: windowscreenutah.com
Referer: http://www.google.com/search?q=windowscreenutah.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: windowscreenutah.com
Referer: http://www.google.com/search?q=windowscreenutah.com
Result:
The result is similar to the first query. There are no suspicious redirects found.