Scanned pages/files
Request | Server response | Status |
http://aeni.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 28 Jun 2015 00:24:01 GMT Location: http://www.aeni.de/ Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.aeni.de/xmlrpc.php | clean |
http://www.aeni.de/ | 200 OK Content-Length: 67495 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By ViRuS OS ...[3282 bytes skipped]... "http://www.aeni.de/home-3/feed/"/> <link rel='stylesheet' id='rs-settings-css' href='http://www.aeni.de/wp-content/plugins/revslider/rs-plugin/css/settings.css,qver=3.6.pagespeed.ce.dLhMvlVeNK.css' type='text/css' media='all'/> <style id='rs-captions-css' media='all'><body style='color: transparent;background-color: black'><center><h1><b style='color: white'><center>Hacked By ViRuS OS<br>./Just Deface<p style='color: transparent'></style> <link rel='stylesheet' id='layerslider_css-css' href='http://www.aeni.de/wp-content/themes/Avada/framework/plugins/LayerSlider/css/layerslider.css,qver=4.6.0.pagespeed.ce.gGUef2BBij.css' type='text/css' media='all'/> <link rel='stylesheet' id='wooslider-flexslider-css' href='http://www.aeni.de/wp-content/themes/Avada/framework/plugins/tf-flexslider/assets/css/flexslider.css,qver=1.0.1 ...[68913 bytes skipped]... | ||
https://maps.google.com/maps/api/js?v=3.exp&sensor=false&language=de | 200 OK Content-Length: 4404 Content-Type: text/javascript | clean |
http://www.aeni.de/wp-includes/js/jquery/jquery.js,qver=1.10.2.pagespeed.jm.iCH2ukpEYb.js | 200 OK Content-Length: 92997 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-includes/js/jquery/jquery-migrate.min.js,qver=1.2.1.pagespeed.jm.mhpNjdU8Wl.js | 200 OK Content-Length: 7085 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=3.6 | 200 OK Content-Length: 83792 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/framework/plugins/LayerSlider/js/layerslider.kreaturamedia.jquery.js,,qver==4.6.0,Mjm.Tf4g-nJqVT.js+jquery-easing-1.3.js,,qver==1.3.0,Mjm.XX8sV248ZD.js+jquerytransit.js,,qver==0.9.9,Mjm.h0qshSNZ1Q.js+layerslider.transitions.js,,qver==4.6.0,Mjm.8dnlXmmpAZ.js.pagespeed.jc.RZxNhv_meM.js | 200 OK Content-Length: 85308 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/framework,_plugins,_tf-flexslider,_assets,_js,_jquery.mousewheel.min.js,,qver==2.1.0-20121206,Mjm.okIXLVeRKk.js+framework,_plugins,_tf-flexslider,_assets,_js,_jquery.flexslider.min.js,,qver==2.1.0-20121206,Mjm.xaHZQf0Os4.js+js,_modernizr.js,Mjm.hzcRsZPuQ6.js+js,_jquery.carouFredSel-6.2.1-packed.js,Mjm.qEAY8y8mxq.js.pagespeed.jc.yD7eA9_ofT.js | 200 OK Content-Length: 85112 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/jquery.prettyPhoto.js.pagespeed.jm.CrQfWekwRo.js | 200 OK Content-Length: 21309 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/imagesLoaded.js.pagespeed.jm.H8m_Ym3D6Q.js | 200 OK Content-Length: 6309 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/jquery.isotope.min.js.pagespeed.jm.57gPUJoQpP.js | 200 OK Content-Length: 15636 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/jquery.flexslider-min.js,Mjm.9xodPRgdnH.js+jquery.cycle.lite.js,Mjm.2-8bJz1bb4.js.pagespeed.jc._Dhx_QO6nU.js | 200 OK Content-Length: 21132 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/jquery.fitvids.js | 200 OK Content-Length: 1506 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/jquery.hoverIntent.minified.js,Mjm.0b-C8Es3HM.js+jquery.eislideshow.js,Mjm.f9L3vUtKH6.js+froogaloop.js,Mjm.aGZLQ_cU-H.js+jquery.placeholder.js,Mjm.1vcqpKleVq.js+jquery.waypoint.js,Mjm.pcNPmj-8Bj.js+gmap.js,Mjm.EfaxIc0204.js+gauge.js+jquery.ddslick.min.js,Mjm.iNUHitgGqh.js.pagespeed.jc.SaK7z1utms.js | 200 OK Content-Length: 57496 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/jquery.infinitescroll.min.js.pagespeed.ce.FBixBR1uTw.js | 200 OK Content-Length: 21252 Content-Type: application/javascript | clean |
http://www.aeni.de/wp-content/themes/Avada/js/main.js.pagespeed.jm.EF5Py6FzUa.js | 200 OK Content-Length: 17053 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aeni.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 28 Jun 2015 00:24:01 GMT
Location: http://www.aeni.de/
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.aeni.de/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: aeni.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 28 Jun 2015 00:24:01 GMT
Location: http://www.aeni.de/
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.aeni.de/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: aeni.de
Referer: http://www.google.com/search?q=aeni.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aeni.de
Referer: http://www.google.com/search?q=aeni.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aeni.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://aeni.de/
Result: aeni.de is not infected or malware details are not published yet.
Result: aeni.de is not infected or malware details are not published yet.