Scanned pages/files
Request | Server response | Status |
http://ekarda.com/ | 200 OK Content-Length: 97922 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked by AlfabetoVirtual ...[69815 bytes skipped]... kground-color:#fff;margin:-22px -22px;top:50%;left:50%;z-index:10000;position:absolute;width:44px;height:44px;border-radius:3px;-moz-border-radius:3px;-webkit-border-radius:3px;}</style><style type="text/css" media="all"><body bgcolor=black><table width=100% height=100%><td align=center><span style='font: 40px tahoma;size:40px;color:white;text-shadow: 0px 0px 50px;'><strong>hacked by AlfabetoVirtual<p style='color: transparent'></style><style type="text/css" media="screen">.taxonomy-images-the-terms{margin:10px 0;padding:0;zoom:1;} .taxonomy-images-the-terms:before, .taxonomy-images-the-terms:after{clear:both;content:"\0020";display:block;height:0;visibility:hidden;} .taxonomy-images-the-terms li, .taxonomy-images-the-terms a, .taxonomy-images-the-terms img{float:left;margin:0;padding:0;} .taxonomy-images-the-terms li{list- ...[36321 bytes skipped]... | ||
http://ekarda.com/wp-includes/js/jquery/jquery.js | 200 OK Content-Length: 95977 Content-Type: text/javascript | clean |
http://ekarda.com/wp-includes/js/jquery/jquery-migrate.min.js | 200 OK Content-Length: 7200 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.noconflict.js | 200 OK Content-Length: 26 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/easing.js | 200 OK Content-Length: 3561 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.fitvid.js | 200 OK Content-Length: 1731 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/froogaloop.min.js | 200 OK Content-Length: 1766 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.prettyPhoto.js | 200 OK Content-Length: 24909 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.flexslider-min.js | 200 OK Content-Length: 16204 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.tipsy.js | 200 OK Content-Length: 5186 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.isotope.min.js | 200 OK Content-Length: 15636 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/themes/spartacus/js/jquery.zflickrfeed.min.js | 200 OK Content-Length: 1287 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/plugins/wp-colorbox/jquery.colorbox.js | 200 OK Content-Length: 28397 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/plugins/wp-colorbox/wp-colorbox.js | 200 OK Content-Length: 501 Content-Type: text/javascript | clean |
http://ekarda.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js | 200 OK Content-Length: 15296 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ekarda.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, must-revalidate
Connection: close
Date: Fri, 25 Sep 2015 12:21:23 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://ekarda.com/>; rel=shortlink
Set-Cookie: _icl_current_language=en; expires=Sat, 26-Sep-2015 12:21:23 GMT; path=/
Set-Cookie: PHPSESSID=vijb3r3u3m8t19l4ufifeu6v82; path=/
X-Died: timeout at scan.pm line 1566.
X-Pingback: http://ekarda.com/xmlrpc.php
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: ekarda.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, must-revalidate
Connection: close
Date: Fri, 25 Sep 2015 12:21:23 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://ekarda.com/>; rel=shortlink
Set-Cookie: _icl_current_language=en; expires=Sat, 26-Sep-2015 12:21:23 GMT; path=/
Set-Cookie: PHPSESSID=vijb3r3u3m8t19l4ufifeu6v82; path=/
X-Died: timeout at scan.pm line 1566.
X-Pingback: http://ekarda.com/xmlrpc.php
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: ekarda.com
Referer: http://www.google.com/search?q=ekarda.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ekarda.com
Referer: http://www.google.com/search?q=ekarda.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ekarda.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ekarda.com/
Result: ekarda.com is not infected or malware details are not published yet.
Result: ekarda.com is not infected or malware details are not published yet.