Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wlusu.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wlusu.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://wlusu.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 08 Oct 2014 12:30:26 GMT Location: http://www.wlusu.com/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.wlusu.com/ | 200 OK Content-Length: 21678 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: social.wlusu.com ...[1884 bytes skipped]... pace/bannerspace.css?ver=3.6.1' type='text/css' media='all' /> <link rel='stylesheet' id='contact-form-7-css' href='http://www.wlusu.com/wp-content/plugins/contact-form-7/includes/css/styles.css?ver=3.5.2' type='text/css' media='all' /> <link rel='stylesheet' id='wp-polls-css' href='http://www.wltransitions.js?ver%5B0%5D=fcg_jd_gallery_transitions'></script> <script type="text/javascript" src="http://social.wlusu.com/djs/popup.js?1757111196"></script> <script type="text/javascript" src="http://social.wlusu.com/js/socialbar/socialbar.laurier.js"></script> <script type="text/javascript"> (function() { var po = document.createElement('script'); po.type = 'text/javascript'; po.async = true; po.src = 'https://apis.google.com/js/plusone.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(po, s); })( ...[1617 bytes skipped]... | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js?ver=1.4.1 | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://www.wlusu.com/wp-content/plugins/wp-soapbox/porthole.min.js?ver=3.6.1 | 200 OK Content-Length: 5366 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/templates/resources/javascript/global.js?ver=3.6.1 | 200 OK Content-Length: 1203 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/the-events-calendar/resources/jquery.pjax.js?ver=3.6.1 | 200 OK Content-Length: 9445 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/the-events-calendar/resources/events.js?ver=3.6.1 | 200 OK Content-Length: 2536 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/bannerspace/jquery.cycle.all.min.js?ver=3.6.1 | 200 OK Content-Length: 31539 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/nextgen-gallery/js/jquery.cycle.all.min.js?ver=2.9995 | 200 OK Content-Length: 26590 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/nextgen-gallery/js/ngg.slideshow.min.js?ver=1.06 | 200 OK Content-Length: 1791 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/featured-content-gallery/scripts/mootools.v1.11.js?ver=3.6.1 | 200 OK Content-Length: 34840 Content-Type: application/x-javascript | clean |
http://wlusu.com//wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_CA/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 08 Oct 2014 12:30:34 GMT Location: http://www.wlusu.com//wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_CA/?l=en_CA/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.wlusu.com//wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_ca/?l=en_ca/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 08 Oct 2014 12:30:35 GMT Pragma: no-cache Location: http://www.wlusu.com/wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_ca/?l=en_ca/ Server: nginx Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wp_mobiledts_theme=desktop; expires=Mon, 06-Apr-2015 12:30:35 GMT; path=/ X-Pingback: http://www.wlusu.com/xmlrpc.php | clean |
http://www.wlusu.com/wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_ca/?l=en_ca/ | 404 Not Found Content-Length: 19982 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: social.wlusu.com ...[1884 bytes skipped]... /plugins/bannerspace/bannerspace.css?ver=3.6.1' type='text/css' media='all' /> <link rel='stylesheet' id='contact-form-7-css' href='http://www.wlusu.com/wp-content/plugins/contact-form-7/includes/css/styles.css?ver=3.5.2' type='text/css' media='all' /> <link rel='stylesheet' id='wp-polls-css' hretransitions.js?ver%5B0%5D=fcg_jd_gallery_transitions'></script> <script type="text/javascript" src="http://social.wlusu.com/djs/popup.js?828428973"></script> <script type="text/javascript" src="http://social.wlusu.com/js/socialbar/socialbar.laurier.js"></script> <script type="text/javascript"> (function() { var po = document.createElement('script'); po.type = 'text/javascript'; po.async = true; po.src = 'https://apis.google.com/js/plusone.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(po, s); })() ...[1617 bytes skipped]... | ||
http://www.wlusu.com//wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_CA/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 08 Oct 2014 12:30:37 GMT Pragma: no-cache Location: http://www.wlusu.com/wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_CA/ Server: nginx Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wp_mobiledts_theme=desktop; expires=Mon, 06-Apr-2015 12:30:37 GMT; path=/ X-Pingback: http://www.wlusu.com/xmlrpc.php | clean |
http://www.wlusu.com/wlusu.soapboxhq.com/tools/widgets/embed_mode_js?l=en_ca/ | 404 Not Found Content-Length: 19978 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: social.wlusu.com ...[1883 bytes skipped]... t/plugins/bannerspace/bannerspace.css?ver=3.6.1' type='text/css' media='all' /> <link rel='stylesheet' id='contact-form-7-css' href='http://www.wlusu.com/wp-content/plugins/contact-form-7/includes/css/styles.css?ver=3.5.2' type='text/css' media='all' /> <link rel='stylesheet' id='wp-polls-css' hreransitions.js?ver%5B0%5D=fcg_jd_gallery_transitions'></script> <script type="text/javascript" src="http://social.wlusu.com/djs/popup.js?1764334857"></script> <script type="text/javascript" src="http://social.wlusu.com/js/socialbar/socialbar.laurier.js"></script> <script type="text/javascript"> (function() { var po = document.createElement('script'); po.type = 'text/javascript'; po.async = true; po.src = 'https://apis.google.com/js/plusone.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(po, s); })( ...[1618 bytes skipped]... | ||
http://www.wlusu.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.40.0-2013.08.13 | 200 OK Content-Length: 14625 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.2 | 200 OK Content-Length: 8326 Content-Type: application/x-javascript | clean |
http://www.wlusu.com/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 3598 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wlusu.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 08 Oct 2014 12:30:26 GMT
Location: http://www.wlusu.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
GET / HTTP/1.1
Host: wlusu.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 08 Oct 2014 12:30:26 GMT
Location: http://www.wlusu.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: wlusu.com
Referer: http://www.google.com/search?q=wlusu.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wlusu.com
Referer: http://www.google.com/search?q=wlusu.com
Result:
The result is similar to the first query. There are no suspicious redirects found.