New scan:

Malware Scanner report for annuza.com

Malicious/Suspicious/Total urls checked
0/0/15
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/1
Deface / Content modification
Found
Probably the website is defaced. The following signature was found:

poruka+AFs-0+AF0 +AD0 +ACIAfgB+-Hacked by r00t erdinc+AF8-07+AH4AfgAi  (5 websites defaced)

See details below

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://annuza.com/
200 OK
Content-Length: 91511
Content-Type: text/html
suspicious
Deface/Content modification. The following signature was found: poruka+AFs-0+AF0 +AD0 +ACIAfgB+-Hacked by r00t erdinc+AF8-07+AH4AfgAi

...[310 bytes skipped]...
href+AD0AIg-http://antisecurityteam.com/favicon.ico+ACI type+AD0AIg-image/x-icon+ACIAPg

+ADw-HEAD+AD4
+ADw-script language+AD0AIg-JavaScript+ACIAPg
var brzinakucanja +AD0 200+ADs
var pauzapor +AD0 2000+ADs
var vremeid +AD0 null+ADs
var kretanje +AD0 false+ADs
var poruka +AD0 new Array()+ADs
var slporuka +AD0 0+ADs
var bezporuke +AD0 0+ADs
poruka+AFs-0+AF0 +AD0 +ACIAfgB+-Hacked by r00t erdinc+AF8-07+AH4AfgAi

function prikaz() +AHs
var text +AD0 poruka+AFs-slporuka+AF0AOw

if (bezporuke +ADw text.length) +AHs
if (text.charAt(bezporuke) +AD0APQ +ACI +ACI)
bezporuke+ACsAKw
var ttporuka +AD0 text.substring(0, bezporuke +ACs 1)+ADs
document.title +AD0 ttporuka+ADs
bezporuke+ACsAKw
vremeid +AD0 setTimeout(+ACI-prikaz()+ACI, brzinakucanja)+ADs
kretanje +AD0 true+ADs
+AH0 else +AHs
bezpor
...[99449 bytes skipped]...


http://annuza.com/wp-includes/js/jquery/jquery.js?ver=1.11.0
200 OK
Content-Length: 96402
Content-Type: application/javascript
clean
http://annuza.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1
200 OK
Content-Length: 7200
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/ddsmoothmenu.js?ver=3.9.2
200 OK
Content-Length: 7506
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/slides.min.jquery.js?ver=3.9.2
200 OK
Content-Length: 6784
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/jquery.prettyPhoto.js?ver=3.9.2
200 OK
Content-Length: 35317
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/jquery.tipsy.js?ver=3.9.2
404 Not Found
Content-Length: 91871
Content-Type: text/html
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/jquery.validate.min.js?ver=3.9.2
200 OK
Content-Length: 21078
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/frontend-effect.js?ver=3.9.2
200 OK
Content-Length: 1355
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/mobilemenu.js?ver=3.9.2
200 OK
Content-Length: 3933
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/gall-effect.js?ver=3.9.2
200 OK
Content-Length: 1374
Content-Type: application/javascript
clean
http://annuza.com/wp-content/themes/golden-eagle-lite/js/custom.js?ver=3.9.2
200 OK
Content-Length: 1167
Content-Type: application/javascript
clean
http://annuza.com/wp-content/plugins/prettyphot-single-image-zoom/prettyPhoto_3.1.4/js/jquery.prettyPhoto.js?ver=1.0
200 OK
Content-Length: 25216
Content-Type: application/javascript
clean
http://annuza.com/wp-content/plugins/prettyphot-single-image-zoom/prettyPhoto_3.1.4/js/launch.js?ver=3.9.2
200 OK
Content-Length: 247
Content-Type: application/javascript
clean
http://annuza.com/wp-content/plugins/reflex-gallery/scripts/flexslider/jquery.flexslider-min.js?ver=3.9.2
200 OK
Content-Length: 16917
Content-Type: application/javascript
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: annuza.com

Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 18 Sep 2014 09:59:24 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e1aefec2df6d3d64d42a3d91100fbc4b; path=/
X-Pingback: http://annuza.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: annuza.com
Referer: http://www.google.com/search?q=annuza.com

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=annuza.com

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://annuza.com/

Result: annuza.com is not infected or malware details are not published yet.