I don’t understand … if the site has a hole in the mailservers, that’s bad, I’ll ask to have it tightened. Why would that have my website blocked as malware?
There are no other sites that report my site has any issues whatsoever. When I go t spamcannibal, I get this:
spam source, anonymous/un-named IP
see:
198.55.110.6
My site is not on quadranet. Why does it say “see” and show another IP?
http://198.55.110.6/ has an unconfigured webserver and has no relation to mine. I see now, somehow SpamCannibal has erroneously grouped my IP in with this other server on quadranet. I read that they will penalize whole subblocks within an IP to make things easier if they see “enough” spam.
I don’t care about spamcannibal because my server is dedicated and does not send any email except to me.
How do I get this false positive removed with Avast?
Thank you Milos, is there any site scan I can look at showing I had black hole exploit on my server? I have not removed any malware or had any reports of it, I am looking at more scanners now and nothing finds anything, can you tell me which site is reporting I had an exploit?
Hello,
the URL I posted is typical for the BlackHole2 exploit. I don’t know about website cleaning tools, but I think you have some backup of your site code so you can compare it.
Milos … I want to move forward but I don’t know what to do.
I don’t know what site is reporting my site had a black hole exploit … I don’t know where this URL is reported, it does not exist on my site … if it did exist, I don’t know when … I have never had malware reported on my site or any kind of injection reported in years. Google nor any other site reports a problem. There is nothing I know of to fix … so what now?
Malicious
100/100 Send us feedback
Domain history:
http://www.favorideas.com/2daf778b87c90c055cead7323ecf8bc6/q.php on 04/17/2014 at 02:57 GMT
http://Shop.favorideas.com/ on 04/02/2014 at 02:56 GMT
http://www.favorideas.com/ on 04/02/2014 at 02:51 GMT
http://www.favorideas.com/wp-content/themes/favoride/headerscripts.js on 02/13/2013 at 17:42 GMT
http://www.favorideas.com/wp-includes/js/l10n.js?ver=20101110 on 02/13/2013 at 17:42 GMT
http://www.favorideas.com/wp-includes/bk-image-fileupload.js on 02/13/2013 at 17:42 GMT
http://www.favorideas.com/astrack.js on 02/13/2013 at 17:42 GMT
http://www.favorideas.com/2daf778b87c90c055cead7323ecf8bc6/q.php on 02/13/2013 at 17:41 GMT
http://www.favorideas.com/wp-content/plugins/wp-jquery-lightbox/lightbox.min.css?ver=1.2 on 12/25/2012 at 17:03 GMT
http://www.favorideas.com/wp-content/themes/favoride/headerscripts.js on 12/25/2012 at 16:56 GMT
http://www.favorideas.com/learn-about/wedding-planning/choosing-your-wedding-colors/ on 12/25/2012 at 16:56 GMT
http://www.favorideas.com/wp-content/themes/favoride/headerscripts.js on 12/25/2012 at 16:51 GMT
Technically speaking. Your website has a 102/100 Malicious feed back… So, ug yeah. Not looking good.
I do not see any humor in this and I hope it is not frustrating, I would just like to get it resolved. If there are elements of my site that are, in fact, malicious in some way, I would be happy to remove them, but facebook sharing widgets, google ads, sharethis etc. are not malicious.T
I do not see any reports of any problem on the site in your last posts other than this q page which I have never seen and cannot see now. Are you able to load it?
I am embarrassed to say I am not sure what this ASN issue is or why I am grouped with those west african servers.
I am still mystified by this “q” page reported on that site. Is anyone able to load this, or could this be some kind of crossover from other domains reported on that ASN?