Scanned pages/files
Request | Server response | Status |
http://kleanastoria.com/ | 200 OK Content-Length: 1459 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By KkK1337 <html> <head> <title>Hacked By KkK1337</title> <script type="text/javascript" src="" ></script></head> <body bgcolor="#fffff0"> <font color="#000000"> <center> <img src="http://zone-h.org/images/star.gif"> <img src="http://zone-h.org/images/star.gif"> <img src="http://zone-h.org/images/star.gif"> <img src="http://zone-h.org/images/star.gif"> <img src=" ...[1379 bytes skipped]... | ||
http://kleanastoria.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 21:22:11 GMT Location: http://kleantreatmentcenters.com/astoria-oregon/ Server: Apache Content-Length: 322 Content-Type: text/html; charset=iso-8859-1 | clean |
http://kleantreatmentcenters.com/astoria-oregon/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 21:22:12 GMT Location: https://kleantreatmentcenters.com/astoria-oregon/ Server: nginx Content-Length: 178 Content-Type: text/html X-Type: default | clean |
https://kleantreatmentcenters.com/astoria-oregon/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=86400, must-revalidate Connection: close Date: Thu, 08 Jan 2015 21:22:13 GMT Pragma: no-cache Location: https://kleantreatmentcenters.com/astoria-oregon Server: nginx Vary: Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT X-Cache: MISS X-Cache-Group: normal X-Cacheable: non200 X-Pingback: https://kleantreatmentcenters.com/xmlrpc.php X-Type: default X-UA-Compatible: IE=edge,chrome=1 | clean |
https://kleantreatmentcenters.com/astoria-oregon | 200 OK Content-Length: 53969 Content-Type: text/html | clean |
https://kleantreatmentcenters.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-content/plugins/styles-with-shortcodes/js/sws_frontend.js?ver=1.0.0 | 200 OK Content-Length: 530 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-content/themes/enfold/js/avia-compat.js?ver=2 | 200 OK Content-Length: 1105 Content-Type: application/x-javascript | clean |
http://kleanastoria.com//use.typekit.net/gsb8hnv.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 21:22:19 GMT Location: http://kleantreatmentcenters.com/astoria-oregon/ Server: Apache Content-Length: 322 Content-Type: text/html; charset=iso-8859-1 | clean |
http://kleantreatmentcenters.com/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://kleanastoria.com//cdn.optimizely.com/js/2122020966.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 21:22:20 GMT Location: http://kleantreatmentcenters.com/astoria-oregon/ Server: Apache Content-Length: 322 Content-Type: text/html; charset=iso-8859-1 | clean |
http://kleanastoria.com//19050.tctm.co/t.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 21:22:20 GMT Location: http://kleantreatmentcenters.com/astoria-oregon/ Server: Apache Content-Length: 322 Content-Type: text/html; charset=iso-8859-1 | clean |
http://kleanastoria.com//cdn.callrail.com/companies/286231891/59c7761e672ad98e2a50/12/swap.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 21:22:20 GMT Location: http://kleantreatmentcenters.com/astoria-oregon/ Server: Apache Content-Length: 322 Content-Type: text/html; charset=iso-8859-1 | clean |
https://kleantreatmentcenters.com/wp-content/themes/enfold/js/avia.js?ver=3 | 200 OK Content-Length: 104871 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-content/themes/enfold/js/shortcodes.js?ver=3 | 200 OK Content-Length: 130255 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-content/themes/enfold/js/aviapopup/jquery.magnific-popup.min.js?ver=2 | 200 OK Content-Length: 20947 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-includes/js/mediaelement/mediaelement-and-player.min.js?ver=2.15.1 | 200 OK Content-Length: 77432 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-includes/js/mediaelement/wp-mediaelement.js?ver=4.1 | 200 OK Content-Length: 926 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-includes/js/comment-reply.min.js?ver=4.1 | 200 OK Content-Length: 757 Content-Type: application/x-javascript | clean |
https://kleantreatmentcenters.com/wp-content/plugins/disqus-comment-system/media/js/count.js?ver=4.1 | 200 OK Content-Length: 858 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kleanastoria.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 21:22:10 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 1459
Content-Type: text/html
Last-Modified: Wed, 05 Nov 2014 22:15:04 GMT
...1459 bytes of data.
GET / HTTP/1.1
Host: kleanastoria.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 08 Jan 2015 21:22:10 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 1459
Content-Type: text/html
Last-Modified: Wed, 05 Nov 2014 22:15:04 GMT
...1459 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: kleanastoria.com
Referer: http://www.google.com/search?q=kleanastoria.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kleanastoria.com
Referer: http://www.google.com/search?q=kleanastoria.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kleanastoria.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kleanastoria.com/
Result: kleanastoria.com is not infected or malware details are not published yet.
Result: kleanastoria.com is not infected or malware details are not published yet.