Scanned pages/files
Request | Server response | Status |
http://www.candyrecapper.com/ | 200 OK Content-Length: 1000 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 5x5 src: http://www.youtube.com/embed/m_tjxz4ys_u?wmode=opaque&autoplay=1&start=31 <iframe class="bright"width="5" height="5" wmode="transparent" src="http://www.youtube.com/embed/m_tjxz4ys_u?wmode=opaque&autoplay=1&start=31" frameborder="0" allowfullscreen autoplay="1"> Deface/Content modification. The following signature was found: Hacked By xc0d30ffx <html>
<script>alert("Hacked By xc0d30ffx")</script> <!DOCTYPE html> <head> <title>Hacked By Team_CC</title> <style> body { background:#E64522; color:#fff; } iframe { opacity:0;} </ ...[1009 bytes skipped]... | ||
http://www.candyrecapper.com/test404page.js | 404 Not Found Content-Length: 13578 Content-Type: text/html | clean |
http://www.google.com/jsapi | 200 OK Content-Length: 25240 Content-Type: text/javascript | clean |
http://yui.yahooapis.com/combo?2.6.0/build/yahoo-dom-event/yahoo-dom-event.js&2.6.0/build/container/container_core-min.js&2.6.0/build/menu/menu-min.js | 200 OK Content-Length: 128081 Content-Type: application/javascript | clean |
http://www.candyrecapper.com/wp-content/themes/twordder/js/jquery.corners.min.js | 200 OK Content-Length: 7781 Content-Type: application/javascript | clean |
http://www.candyrecapper.com/wp-includes/js/wp-embed.min.js?ver=4.4 | 200 OK Content-Length: 1518 Content-Type: application/javascript | clean |
http://s29.sitemeter.com/js/counter.js?site=s29candyrecapper | HTTP/1.1 302 Redirect Date: Sun, 27 Dec 2015 17:03:36 GMT Location: http://s29.sitemeter.com/js/counter.asp?site=s29candyrecapper Server: Microsoft-IIS/6.0 Content-Length: 184 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://s29.sitemeter.com/js/counter.asp?site=s29candyrecapper | 200 OK Content-Length: 7570 Content-Type: application/x-javascript | clean |
http://www.candyrecapper.com/about/ | 200 OK Content-Length: 15374 Content-Type: text/html | clean |
http://www.candyrecapper.com/wp-includes/js/comment-reply.min.js?ver=4.4 | 200 OK Content-Length: 1078 Content-Type: application/javascript | clean |
http://www.candyrecapper.com/about/stripes.html | 404 Not Found Content-Length: 13578 Content-Type: text/html | clean |
http://www.candyrecapper.com/ground-almond-chocolate-chip-cookies/ | 200 OK Content-Length: 25388 Content-Type: text/html | clean |
http://www.candyrecapper.com/wp-content/uploads/2012/08/cookies.jpg | 200 OK Content-Length: 27444 Content-Type: image/jpeg | clean |
http://www.candyrecapper.com/category/cooking/ | 200 OK Content-Length: 24180 Content-Type: text/html | clean |
http://www.candyrecapper.com/category/cooking/page/2/ | 200 OK Content-Length: 16933 Content-Type: text/html | clean |
http://www.candyrecapper.com/category/cooking/page/3/ | 200 OK Content-Length: 15378 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: candyrecapper.com
Result:
GET / HTTP/1.1
Host: candyrecapper.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: candyrecapper.com
Referer: http://www.google.com/search?q=candyrecapper.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: candyrecapper.com
Referer: http://www.google.com/search?q=candyrecapper.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=candyrecapper.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://candyrecapper.com/
Result: candyrecapper.com is not infected or malware details are not published yet.
Result: candyrecapper.com is not infected or malware details are not published yet.