Scanned pages/files
Request | Server response | Status |
http://grupoabg.com/ | 200 OK Content-Length: 35538 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4-Hacked by Moroccanwolf +ACYAJg abdellah Elmaghribi+ADw-DIV style+AD0AIg-DISPLAY: non ...[153 bytes skipped]... 7" lang="en"> <![endif]--> <!--[if IE 8 ]><html class="ie ie8" lang="en"> <![endif]--> <!--[if (gte IE 9)|!(IE)]><!--><html lang="es-ES"> <!--<![endif]--> <head> <!-- Basic Page Needs ================================================== --> <meta charset="utf-8" /> <title>+ADw-/title+AD4-Hacked by Moroccanwolf +ACYAJg abdellah Elmaghribi+ADw-DIV style+AD0AIg-DISPLAY: none+ACIAPgA8-xmp+AD4- </title> <link rel="stylesheet" href="http://grupoabg.com/wp-content/plugins/sitepress-multilingual-cms/res/css/language-selector.css?v=2.9.1" type="text/css" media="all" /> <!--[if lt IE 9]> <script src="http://html5shim.googlecode.com/svn/trunk/html5.js"></script> <![endif]--> <!-- CSS ================================================== --> ...[40026 bytes skipped]... | ||
http://grupoabg.com/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/plugins/LayerSlider/static/js/layerslider.kreaturamedia.jquery.js?ver=5.0.2 | 200 OK Content-Length: 56751 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/plugins/LayerSlider/static/js/greensock.js?ver=1.11.2 | 200 OK Content-Length: 52295 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/plugins/LayerSlider/static/js/layerslider.transitions.js?ver=5.0.2 | 200 OK Content-Length: 21095 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/jquery.fitvids.js?ver=1.0 | 200 OK Content-Length: 2744 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js | 200 OK Content-Length: 994 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/superfish.js?ver=1.0 | 200 OK Content-Length: 3712 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/supersub.js?ver=1.0 | 200 OK Content-Length: 3297 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/hoverIntent.js?ver=1.0 | 200 OK Content-Length: 3174 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/gdl-scripts.js?ver=1.0 | 200 OK Content-Length: 7956 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/jquery.easing.js?ver=1.0 | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/jquery.prettyPhoto.js?ver=1.0 | 200 OK Content-Length: 26338 Content-Type: application/javascript | clean |
http://grupoabg.com/wp-content/themes/modernize/javascript/jquery.jcarousellite.js?ver=1.0 | 200 OK Content-Length: 15246 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: grupoabg.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 13 Dec 2015 20:55:32 GMT
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html; charset=UTF-7
Link: <http://grupoabg.com/>; rel=shortlink
Set-Cookie: _icl_current_language=es; expires=Mon, 14-Dec-2015 20:55:33 GMT; path=/
X-Pingback: http://grupoabg.com/xmlrpc.php
X-Powered-By: PHP/5.4.23
GET / HTTP/1.1
Host: grupoabg.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 13 Dec 2015 20:55:32 GMT
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html; charset=UTF-7
Link: <http://grupoabg.com/>; rel=shortlink
Set-Cookie: _icl_current_language=es; expires=Mon, 14-Dec-2015 20:55:33 GMT; path=/
X-Pingback: http://grupoabg.com/xmlrpc.php
X-Powered-By: PHP/5.4.23
Second query (visit from search engine):
GET / HTTP/1.1
Host: grupoabg.com
Referer: http://www.google.com/search?q=grupoabg.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: grupoabg.com
Referer: http://www.google.com/search?q=grupoabg.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=grupoabg.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://grupoabg.com/
Result: grupoabg.com is not infected or malware details are not published yet.
Result: grupoabg.com is not infected or malware details are not published yet.