Scanned pages/files
Request | Server response | Status |
http://burschengemeinschaft.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 06 Jul 2015 15:23:05 GMT Location: http://www.burschengemeinschaft.de/ Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Language: de Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_1327311638=559a9d595c541; expires=Mon, 06-Jul-2015 15:53:05 GMT; path=/; httponly X-Pingback: http://www.burschengemeinschaft.de/xmlrpc.php X-Powered-By: PHP/5.4.41-0+deb7u1 | clean |
http://www.burschengemeinschaft.de/ | 200 OK Content-Length: 195840 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Rdx 7rB ...[7117 bytes skipped]... 888}</style> <link rel='stylesheet' id='rs-settings-css' href='http://www.burschengemeinschaft.de/wp-content/plugins/revslider/rs-plugin/css/A.settings.css,qver=4.2.2.pagespeed.cf.gWhTnbNg_G.css' type='text/css' media='all'/> <style id='rs-captions-css' media='all'><body style='color: transparent;background-color: black'><center><h1><b style='color: white'><center>Hacked By Rdx 7rB<p style='color: transparent'></style> <link rel='stylesheet' id='srzmpcss-css' href='http://www.burschengemeinschaft.de/wp-content/plugins/srizon-facebook-album-pro/css/A.mag-popup.min.css,qver=4.2.2.pagespeed.cf.Pe0qUH9lmS.css' type='text/css' media='all'/> <link rel='stylesheet' id='srzelastislidercss-css' href='http://www.burschengemeinschaft.de/wp-content/plugins/srizon-facebook-album-pro/css/A.elastislide.min.css,qver=4.2.2.pagespeed.cf.QZ ...[193029 bytes skipped]... | ||
http://www.burschengemeinschaft.de/wp-includes/js/jquery/jquery.js,qver=1.11.2.pagespeed.jm.0kUhGt7Mm3.js | 200 OK Content-Length: 95864 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-includes,_js,_jquery,_jquery-migrate.min.js,qver==1.2.1+wp-includes,_js,_jquery,_ui,_core.min.js,qver==1.11.4+wp-includes,_js,_jquery,_ui,_widget.min.js,qver==1.11.4+wp-includes,_js,_jquery,_ui,_accordion.min.js,qver==1.11.4+wp-includes,_js,_jquery,_ui,_tabs.min.js,qver==1.11.4+wp-content,_themes,_clockwork,_functions,_shortcodes,_js,_zilla-shortcodes-lib.js,q <span>...129 symbols skipped</span> | 200 OK Content-Length: 55011 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.2.2 | 200 OK Content-Length: 52966 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content/plugins/srizon-facebook-album-pro,_js,_modernizr.js,qver==4.2.2+srizon-facebook-album-pro,_js,_mag-popup.js,qver==4.2.2+srizon-facebook-album-pro,_js,_jquery.collagePlus.min.js,qver==4.2.2+srizon-facebook-album-pro,_js,_jquery.elastislide.min.js,qver==4.2.2+srizon-facebook-album-pro,_js,_srizon.custom.min.js,qver==4.2.2+cforms146,_js,_cforms.js.pagespeed.jc.2ZE4yEgcrt.js | 200 OK Content-Length: 71391 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content/themes/clockwork/js/jquery.easing.1.3.js,qver==4.2.2+jquery.selectivizr-min.js,qver==4.2.2.pagespeed.jc.gZHeZPKpH4.js | 200 OK Content-Length: 8571 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content/themes/clockwork/js/jquery.fitvid.js?ver=4.2.2 | 200 OK Content-Length: 1931 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content/themes/clockwork/js/jquery.supersubs.js,qver==4.2.2+jquery.superfish.js,qver==4.2.2+jquery.flexslider.js,qver==4.2.2+jquery.isotope.min.js,qver==4.2.2.pagespeed.jc.4S8G7oCrRr.js | 200 OK Content-Length: 42781 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content,_themes,_clockwork,_js,_jquery.fancybox.pack.js,qver==4.2.2+wp-content,_themes,_clockwork,_js,_jquery.tweetable.js,qver==4.2.2+wp-content,_themes,_clockwork,_js,_jquery.ui.totop.min.js,qver==4.2.2+wp-content,_themes,_clockwork,_js,_scripts.js,qver==4.2.2+wp-includes,_js,_comment-reply.min.js,qver==4.2.2+wp-content,_plugins,_contact-form-7,_includes,_js <span>...71 symbols skipped</span> | 200 OK Content-Length: 53385 Content-Type: application/javascript | clean |
http://www.burschengemeinschaft.de/wp-content/plugins/contact-form-7/includes/js/scripts.js,qver=4.2.pagespeed.jm.KFUoiSQRr9.js | 200 OK Content-Length: 9382 Content-Type: application/javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201528 | 200 OK Content-Length: 9885 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?ver=2015Julaa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://stats.wp.com/e-201528.js | 200 OK Content-Length: 3334 Content-Type: application/x-javascript | clean |
http://burschengemeinschaft.de/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 06 Jul 2015 15:23:10 GMT Pragma: no-cache Location: http://www.burschengemeinschaft.de/test404page.js Server: Apache/2.2.22 (Debian) Vary: Accept-Encoding Content-Language: de Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_1327311638=559a9d5e5f683; expires=Mon, 06-Jul-2015 15:53:10 GMT; path=/; httponly X-Pingback: http://www.burschengemeinschaft.de/xmlrpc.php X-Powered-By: PHP/5.4.41-0+deb7u1 | clean |
http://www.burschengemeinschaft.de/test404page.js | 404 Not Found Content-Length: 21760 Content-Type: text/html | clean |
http://www.burschengemeinschaft.de/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: burschengemeinschaft.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 06 Jul 2015 15:23:05 GMT
Location: http://www.burschengemeinschaft.de/
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Language: de
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_1327311638=559a9d595c541; expires=Mon, 06-Jul-2015 15:53:05 GMT; path=/; httponly
X-Pingback: http://www.burschengemeinschaft.de/xmlrpc.php
X-Powered-By: PHP/5.4.41-0+deb7u1
GET / HTTP/1.1
Host: burschengemeinschaft.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 06 Jul 2015 15:23:05 GMT
Location: http://www.burschengemeinschaft.de/
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Language: de
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_1327311638=559a9d595c541; expires=Mon, 06-Jul-2015 15:53:05 GMT; path=/; httponly
X-Pingback: http://www.burschengemeinschaft.de/xmlrpc.php
X-Powered-By: PHP/5.4.41-0+deb7u1
Second query (visit from search engine):
GET / HTTP/1.1
Host: burschengemeinschaft.de
Referer: http://www.google.com/search?q=burschengemeinschaft.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: burschengemeinschaft.de
Referer: http://www.google.com/search?q=burschengemeinschaft.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=burschengemeinschaft.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://burschengemeinschaft.de/
Result: burschengemeinschaft.de is not infected or malware details are not published yet.
Result: burschengemeinschaft.de is not infected or malware details are not published yet.