Scanned pages/files
Request | Server response | Status |
http://jasawebbali.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 01 Oct 2014 18:04:31 GMT Location: http://www.jasawebbali.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_785909270=542c42305ad02; expires=Wed, 01-Oct-2014 18:34:32 GMT; path=/ X-Pingback: http://www.jasawebbali.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.jasawebbali.com/ | 200 OK Content-Length: 27691 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HacKeD BY ...[20153 bytes skipped]... ;/a> <a href="#about" class="selected">Contact US</a> </li> </ul> </div> <div class="cont left"> <!-- ????? --> <div id="msg" class="box left"> <div class="box-content"> <h3> <font color="red">HacKeD BY <font color="white"> MR.ViPeR & xBAHA</font></h3> <h3> <font color="lime"></font></h3> <p class="sub"> <font color="lime"></font></p> <strong><center> <font color="lime"></font></center> </strong> <p> <font face="courier new" color="red"> Hello Sir<font face="courier new" color="red ...[12446 bytes skipped]... | ||
http://www.jasawebbali.com/wp-content/themes/OneTouch/assets/js/modernizr.foundation.js | 200 OK Content-Length: 9288 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-content/plugins/facebook-page-promoter-lightbox/scs/scs.js?ver=3.5 | 200 OK Content-Length: 28951 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-content/plugins/facebook-page-promoter-lightbox/js/launch.js?ver=3.5 | 404 Not Found Content-Length: 17188 Content-Type: text/html | clean |
http://www.jasawebbali.com/wp-content/themes/OneTouch/assets/js/foundation.min.js | 200 OK Content-Length: 215064 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-content/themes/OneTouch/assets/js/app.js | 200 OK Content-Length: 14221 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-content/plugins/google-analyticator/external-tracking.min.js?ver=6.4.3 | 200 OK Content-Length: 931 Content-Type: application/javascript | clean |
http://www.jasawebbali.com//static.ak.connect.facebook.com/js/api_lib/v0.4/FeatureLoader.js.php/en_US/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 01 Oct 2014 18:04:41 GMT Pragma: no-cache Location: http://www.jasawebbali.com/static.ak.connect.facebook.com/js/api_lib/v0.4/FeatureLoader.js.php/en_US/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_785909270=542c4239ec60b; expires=Wed, 01-Oct-2014 18:34:41 GMT; path=/ X-Pingback: http://www.jasawebbali.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.jasawebbali.com/static.ak.connect.facebook.com/js/api_lib/v0.4/featureloader.js.php/en_us/ | 404 Not Found Content-Length: 17190 Content-Type: text/html | clean |
http://www.jasawebbali.com//connect.facebook.net/en_US/all.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 01 Oct 2014 18:04:44 GMT Pragma: no-cache Location: http://www.jasawebbali.com/connect.facebook.net/en_US/all.js/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_785909270=542c423ca07cf; expires=Wed, 01-Oct-2014 18:34:44 GMT; path=/ X-Pingback: http://www.jasawebbali.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.jasawebbali.com/connect.facebook.net/en_us/all.js/ | 404 Not Found Content-Length: 17150 Content-Type: text/html | clean |
http://www.jasawebbali.com/wp-content/themes/OneTouch/inc/homepage_builder/assets/js/aqpb-view.js?ver=1412186685 | 200 OK Content-Length: 1082 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.9.2 | 200 OK Content-Length: 4693 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-includes/js/jquery/ui/jquery.ui.widget.min.js?ver=1.9.2 | 200 OK Content-Length: 6759 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-includes/js/jquery/ui/jquery.ui.tabs.min.js?ver=1.9.2 | 200 OK Content-Length: 18572 Content-Type: application/javascript | clean |
http://www.jasawebbali.com/wp-content/plugins/js_composer/assets/jquery-ui-tabs-rotate/jquery-ui-tabs-rotate.js?ver=3.4.12 | 200 OK Content-Length: 1775 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: jasawebbali.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 01 Oct 2014 18:04:31 GMT
Location: http://www.jasawebbali.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_785909270=542c42305ad02; expires=Wed, 01-Oct-2014 18:34:32 GMT; path=/
X-Pingback: http://www.jasawebbali.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
...0 bytes of data.
GET / HTTP/1.1
Host: jasawebbali.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 01 Oct 2014 18:04:31 GMT
Location: http://www.jasawebbali.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_785909270=542c42305ad02; expires=Wed, 01-Oct-2014 18:34:32 GMT; path=/
X-Pingback: http://www.jasawebbali.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: jasawebbali.com
Referer: http://www.google.com/search?q=jasawebbali.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: jasawebbali.com
Referer: http://www.google.com/search?q=jasawebbali.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=jasawebbali.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://jasawebbali.com/
Result: jasawebbali.com is not infected or malware details are not published yet.
Result: jasawebbali.com is not infected or malware details are not published yet.