Scanned pages/files
Request | Server response | Status |
http://fundibots.org/ | 200 OK Content-Length: 27428 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By HaYaL-ET-06 ...[30964 bytes skipped]... s="position">Product & Curriculum Development Consultant</div> </a> </div> </div> <div class="clear"></div> </div> </aside> </div> <div class="clear"></div> </div> </div> <HTML> <HEAD> <TITLE>Hacked By HaYaL-ET-06 </TITLE> <link rel="SHORTCUT ICON" href="http://www.HaYaL-ET- 06.NET/favicon.ico"> <BODY bgColor= black > <p align="center"><img src ="http://i.hizliresim.com/6ZVED9.jpg"height=650 width=1300</img> <p align="center"><font color = white size = 5>Hacked By HaYaL-ET-06 "GHOST" Turkish hacker</font> <p align="center"><font color = white size = 4></font> <p align="center"><font color = whit ...[649 bytes skipped]... | ||
http://fundibots.org/wp-includes/js/comment-reply.min.js?ver=3.8.5 | 200 OK Content-Length: 757 Content-Type: application/x-javascript | clean |
http://fundibots.org/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://fundibots.org/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://html5shim.googlecode.com/svn/trunk/html5.js?ver=3.8.5 | 200 OK Content-Length: 2429 Content-Type: text/javascript | clean |
http://stats.wordpress.com/e-201514.js | 200 OK Content-Length: 3334 Content-Type: application/x-javascript | clean |
http://fundibots.org/tel:+256773080533 | 404 Not Found Content-Length: 13132 Content-Type: text/html | clean |
http://fundibots.org/whoweare/contact/ | 200 OK Content-Length: 19825 Content-Type: text/html | clean |
http://fundibots.org/whoweare/contact/tel:+256773080533 | 404 Not Found Content-Length: 13206 Content-Type: text/html | clean |
http://fundibots.org/whoweare/ | 200 OK Content-Length: 17307 Content-Type: text/html | clean |
http://fundibots.org/whoweare/tel:+256773080533 | 404 Not Found Content-Length: 13132 Content-Type: text/html | clean |
http://fundibots.org/whoweare/theteam/ | 200 OK Content-Length: 17341 Content-Type: text/html | clean |
http://fundibots.org/whoweare/theteam/tel:+256773080533 | 404 Not Found Content-Length: 13132 Content-Type: text/html | clean |
http://fundibots.org/whatwedo/activities/ | 200 OK Content-Length: 20845 Content-Type: text/html | clean |
http://fundibots.org/whatwedo/activities/tel:+256773080533 | 404 Not Found Content-Length: 13206 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fundibots.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Apr 2015 18:26:15 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://wp.me/P4xbvj-5o>; rel=shortlink
X-Pingback: http://fundibots.org/xmlrpc.php
X-Powered-By: PHP/5.4.38
GET / HTTP/1.1
Host: fundibots.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Apr 2015 18:26:15 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://wp.me/P4xbvj-5o>; rel=shortlink
X-Pingback: http://fundibots.org/xmlrpc.php
X-Powered-By: PHP/5.4.38
Second query (visit from search engine):
GET / HTTP/1.1
Host: fundibots.org
Referer: http://www.google.com/search?q=fundibots.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fundibots.org
Referer: http://www.google.com/search?q=fundibots.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fundibots.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fundibots.org/
Result: fundibots.org is not infected or malware details are not published yet.
Result: fundibots.org is not infected or malware details are not published yet.