Scanned pages/files
Request | Server response | Status |
http://bettersalad.com/ | 200 OK Content-Length: 176442 Content-Type: text/html | clean |
http://bettersalad.com/wp-content/themes/MyMenu/jdgallery/mootools-1.2.1-core-yc.js | 200 OK Content-Length: 68456 Content-Type: application/javascript | clean |
http://bettersalad.com/wp-content/themes/MyMenu/jdgallery/mootools-1.2-more.js | 200 OK Content-Length: 11984 Content-Type: application/javascript | clean |
http://bettersalad.com/wp-content/themes/MyMenu/jdgallery/jd.gallery.js | 200 OK Content-Length: 27245 Content-Type: application/javascript | clean |
http://bettersalad.com/wp-content/themes/MyMenu/jdgallery/jd.gallery.transitions.js | 200 OK Content-Length: 3067 Content-Type: application/javascript | clean |
http://bettersalad.com/wp-content/themes/MyMenu/menu/mootools-1.2.1-core-yc.js | 200 OK Content-Length: 68456 Content-Type: application/javascript | clean |
http://bettersalad.com/wp-content/themes/MyMenu/menu/MenuMatic_0.68.3.js | 200 OK Content-Length: 25860 Content-Type: application/javascript | clean |
http://bettersalad.com/types-of-lettuce/ | 200 OK Content-Length: 20990 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-title+AD4-hacked By MAD-EviL+ADw-/title+AD4 ...[227 bytes skipped]... //gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-7" /> <title>Types of lettuce | +ADw-/title+AD4APA-html dir+AD0AIg-rtl+ACIAPg +ADw-head+AD4 +ADw-meta http-equiv+AD0AIg-Content-Language+ACI content+AD0AIg-en-us+ACIAPg +ADw-meta http-equiv+AD0AIg-Content-Type+ACI content+AD0AIg-text/html+ADs charset+AD0-windows-1252+ACIAPg +ADw-title+AD4-hacked By MAD-EviL+ADw-/title+AD4 +ADw-meta name+AD0AIg-keywords+ACI content+AD0AIg-hacked By MAD-EviL hacked By MAD-EviL+ACIAPg +ADw-meta name+AD0AIg-description+ACI content+AD0AIg-hacked By MAD-EviL+ACIAPg +ADw-/head+AD4 +ADw-body bgcolor+AD0AIgAj-000000+ACIAPg +ADw-p align+AD0AIg-center+ACIAPgA8-b+AD4APA-font color+AD0AIgAj-FFFFFF+ACI size+AD0AIg-7+ACIAPg-Own3d By MaD-EviL+ADw-/font+AD4APA-/b+AD4APA-/p+AD4 +ADw-p+AD4 +ADw-/p+AD4 +ADw-/b ...[23990 bytes skipped]... | ||
http://bettersalad.com/wp-includes/js/jquery/jquery.js?ver=1.7.2 | 200 OK Content-Length: 94861 Content-Type: application/javascript | clean |
http://bettersalad.com/salad-recipes/ | 200 OK Content-Length: 20067 Content-Type: text/html | clean |
http://bettersalad.com/salad-dressing/ | 200 OK Content-Length: 21171 Content-Type: text/html | clean |
http://bettersalad.com/tools/ | 200 OK Content-Length: 20217 Content-Type: text/html | clean |
http://bettersalad.com/store/ | 200 OK Content-Length: 20122 Content-Type: text/html | clean |
http://bettersalad.com/category/gourmet-salad-ideas/ | 200 OK Content-Length: 59288 Content-Type: text/html | clean |
http://bettersalad.com/category/gourmet-salad-ideas/main-dish-salads/ | 200 OK Content-Length: 20103 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bettersalad.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 08 Jul 2014 03:25:11 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 PHP/5.3.28
Content-Type: text/html; charset=UTF-7
X-Pingback: http://bettersalad.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: bettersalad.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 08 Jul 2014 03:25:11 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 PHP/5.3.28
Content-Type: text/html; charset=UTF-7
X-Pingback: http://bettersalad.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: bettersalad.com
Referer: http://www.google.com/search?q=bettersalad.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bettersalad.com
Referer: http://www.google.com/search?q=bettersalad.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bettersalad.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bettersalad.com/
Result: bettersalad.com is not infected or malware details are not published yet.
Result: bettersalad.com is not infected or malware details are not published yet.