Scanned pages/files
Request | Server response | Status |
http://www.contrid.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 27 Aug 2014 16:45:22 GMT Location: http://www.contrid.co.za/ Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 365 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.contrid.co.za/ | 200 OK Content-Length: 34912 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Iskorpitx ...[16811 bytes skipped]... lt;div class="widget widget_recent_entries"><div class="widget-content"> <h3 class="widget-title">Recent Posts</h3> <ul> <li> <a href="http://www.contrid.co.za/2014/07/amazon-ec2-nameservers-with-whm/">Amazon EC2 nameservers with WHM</a> </li> <li> <a href="http://www.contrid.co.za/2014/07/hacked-by-iskorpitx/">Hacked by Iskorpitx</a> </li> <li> <a href="http://www.contrid.co.za/2014/07/rustenburg-dstv-installations-repairs/">Rustenburg DSTV Installations & Repairs</a> </li> <li> <a href="http://www.contrid.co.za/2014/06/server-migration-to-amazon-ec2/">Server Migration to Amazon EC2</a> </li> <li> <a href="http://www.contrid.co.za/2014/03/my- ...[23580 bytes skipped]... | ||
http://cdn2.contrid.co.za/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://cdn3.contrid.co.za/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://cdn3.contrid.co.za/wp-content/plugins/jetpack/_inc/postmessage.js?ver=3.1.1 | 200 OK Content-Length: 19615 Content-Type: application/javascript | clean |
http://cdn3.contrid.co.za/wp-content/plugins/jetpack/_inc/jquery.inview.js?ver=3.1.1 | 200 OK Content-Length: 5590 Content-Type: application/javascript | clean |
http://cdn3.contrid.co.za/wp-content/plugins/jetpack/_inc/jquery.jetpack-resize.js?ver=3.1.1 | 200 OK Content-Length: 8104 Content-Type: application/javascript | clean |
http://cdn1.contrid.co.za/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201435 | 200 OK Content-Length: 9301 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?ver=2014Augaa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://cdn4.contrid.co.za/wp-content/plugins/jetpack/modules/wpgroho.js?ver=3.9.2 | 200 OK Content-Length: 959 Content-Type: application/javascript | clean |
http://cdn4.contrid.co.za/wp-content/themes/wilson/js/global.js?ver=3.9.2 | 200 OK Content-Length: 1617 Content-Type: application/javascript | clean |
http://cdn4.contrid.co.za/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.4 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://cdn1.contrid.co.za/wp-includes/js/jquery/ui/jquery.ui.widget.min.js?ver=1.10.4 | 200 OK Content-Length: 6521 Content-Type: application/javascript | clean |
http://cdn4.contrid.co.za/wp-includes/js/jquery/ui/jquery.ui.button.min.js?ver=1.10.4 | 200 OK Content-Length: 6873 Content-Type: application/javascript | clean |
http://cdn4.contrid.co.za/wp-content/plugins/newsletters-lite/js/jquery.watermark.js?ver=3.9.2 | 200 OK Content-Length: 2383 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: contrid.com
Result:
GET / HTTP/1.1
Host: contrid.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: contrid.com
Referer: http://www.google.com/search?q=contrid.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: contrid.com
Referer: http://www.google.com/search?q=contrid.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=contrid.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://contrid.com/
Result: contrid.com is not infected or malware details are not published yet.
Result: contrid.com is not infected or malware details are not published yet.