Scanned pages/files
Request | Server response | Status |
http://hcknowledge.com/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Cache-Control: max-age=2592000 Connection: close Date: Mon, 21 Sep 2015 21:50:22 GMT Pragma: no-cache Location: http://hcknowledge.com/home.php Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html Expires: Wed, 21 Oct 2015 21:50:22 GMT Set-Cookie: store=default; expires=Tue, 20-Sep-2016 21:50:22 GMT; path=/; domain=hcknowledge.com; httponly X-Powered-By: PHP/5.4.44 | clean |
http://hcknowledge.com/home.php | 200 OK Content-Length: 1380 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4-Hacked by Moroccanwolf +ACYAJg abdellah Elmaghribi+ADw-DIV style+AD0AIg-DISPLAY: non <!DOCTYPE html> <html><head> <meta http-equiv="content-type" content="text/html; charset=windows-1252"> <title>Maintenance mode</title> <meta name="author" content="Designmodo"> <meta name="description" content="+ADw-/title+AD4-Hacked by Moroccanwolf +ACYAJg abdellah Elmaghribi+ADw-DIV style+AD0AIg-DISPLAY: none+ACIAPgA8-xmp+AD4- - Just another WordPress site"> <meta name="keywords" content="Maintenance Mode"> <meta name="robots" content="index, follow"> <link rel="stylesheet" href="Maintenance%20mode_files/style.css"> </head> <body class=""> <div class="wrap"> ...[872 bytes skipped]... | ||
http://hcknowledge.com/Maintenance%20mode_files/jquery.htm | 200 OK Content-Length: 223 Content-Type: text/html | clean |
http://hcknowledge.com/test404page.js | 404 Not Found Content-Length: 28075 Content-Type: text/html | clean |
http://hcknowledge.com/media/js/d92e47b19e590526c5c650cf08d200f9.js | 200 OK Content-Length: 302049 Content-Type: application/javascript | clean |
http://hcknowledge.com/skin/frontend/default/audio/js/ddaccordion.js | 200 OK Content-Length: 14309 Content-Type: application/javascript | clean |
http://hcknowledge.com/skin/frontend/default/audio/js/accordion.js | 200 OK Content-Length: 1621 Content-Type: application/javascript | clean |
http://hcknowledge.com/js/magestore/bannerslider/jquery-1.7.min.js | 200 OK Content-Length: 94022 Content-Type: application/javascript | clean |
http://hcknowledge.com/js/magestore/bannerslider/jquery.flexslider.js | 200 OK Content-Length: 42012 Content-Type: application/javascript | clean |
http://hcknowledge.com//images.dmca.com/Badges/DMCABadgeHelper.min.js/ | 404 Not Found Content-Length: 28075 Content-Type: text/html | clean |
http://hcknowledge.com/index.php/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Cache-Control: max-age=2592000 Connection: close Date: Mon, 21 Sep 2015 21:50:31 GMT Pragma: no-cache Location: http://hcknowledge.com/home.php Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html Expires: Wed, 21 Oct 2015 21:50:31 GMT Set-Cookie: store=default; expires=Tue, 20-Sep-2016 21:50:31 GMT; path=/; domain=hcknowledge.com; httponly X-Powered-By: PHP/5.4.44 | clean |
http://hcknowledge.com/index.php/customer/account/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 21 Sep 2015 21:50:32 GMT Pragma: no-cache Location: http://hcknowledge.com/index.php/customer/account/login/ Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: frontend=vp593au7b8v28nlp6tjd3pujs2; expires=Mon, 21-Sep-2015 22:50:32 GMT; path=/; domain=hcknowledge.com; HttpOnly X-Powered-By: PHP/5.4.44 | clean |
http://hcknowledge.com/index.php/customer/account/login/ | 200 OK Content-Length: 33313 Content-Type: text/html | clean |
http://hcknowledge.com/media/js/aa8c9d9669d5d7ed25a4aa882dfc04ab.js | 200 OK Content-Length: 302297 Content-Type: application/javascript | clean |
http://hcknowledge.com/index.php/checkout/cart/ | 200 OK Content-Length: 22215 Content-Type: text/html | clean |
http://hcknowledge.com/media/js/ba0013dd3fda972590b984ce27000361.js | 200 OK Content-Length: 302297 Content-Type: application/javascript | clean |
http://hcknowledge.com/index.php/checkout/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 21 Sep 2015 21:50:39 GMT Pragma: no-cache Location: http://hcknowledge.com/index.php/checkout/onepage/ Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: frontend=ehaeva0725apsatrdbftd5vm97; expires=Mon, 21-Sep-2015 22:50:39 GMT; path=/; domain=hcknowledge.com; HttpOnly X-Powered-By: PHP/5.4.44 | clean |
http://hcknowledge.com/index.php/checkout/onepage/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 21 Sep 2015 21:50:40 GMT Pragma: no-cache Location: http://hcknowledge.com/index.php/checkout/cart/ Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: frontend=iiaplam6jb8j2rndkm6k5dt144; expires=Mon, 21-Sep-2015 22:50:40 GMT; path=/; domain=hcknowledge.com; HttpOnly X-Powered-By: PHP/5.4.44 | clean |
http://hcknowledge.com/index.php/prerecored_event | 200 OK Content-Length: 28949 Content-Type: text/html | clean |
http://hcknowledge.com/index.php/cardiovascular-claims-and-denails-livcar939a.html | 200 OK Content-Length: 51318 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hcknowledge.com
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=2592000
Connection: close
Date: Mon, 21 Sep 2015 21:50:22 GMT
Pragma: no-cache
Location: http://hcknowledge.com/home.php
Server: Apache/2.4.12
Vary: User-Agent
Content-Length: 0
Content-Type: text/html
Expires: Wed, 21 Oct 2015 21:50:22 GMT
Set-Cookie: store=default; expires=Tue, 20-Sep-2016 21:50:22 GMT; path=/; domain=hcknowledge.com; httponly
X-Powered-By: PHP/5.4.44
...0 bytes of data.
GET / HTTP/1.1
Host: hcknowledge.com
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=2592000
Connection: close
Date: Mon, 21 Sep 2015 21:50:22 GMT
Pragma: no-cache
Location: http://hcknowledge.com/home.php
Server: Apache/2.4.12
Vary: User-Agent
Content-Length: 0
Content-Type: text/html
Expires: Wed, 21 Oct 2015 21:50:22 GMT
Set-Cookie: store=default; expires=Tue, 20-Sep-2016 21:50:22 GMT; path=/; domain=hcknowledge.com; httponly
X-Powered-By: PHP/5.4.44
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hcknowledge.com
Referer: http://www.google.com/search?q=hcknowledge.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hcknowledge.com
Referer: http://www.google.com/search?q=hcknowledge.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hcknowledge.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hcknowledge.com/
Result: hcknowledge.com is not infected or malware details are not published yet.
Result: hcknowledge.com is not infected or malware details are not published yet.