Scanned pages/files
Request | Server response | Status |
http://laodongtienluong.vn/ | 200 OK Content-Length: 11052 Content-Type: text/html | clean |
http://laodongtienluong.vn/ymsgr:addfriend?duongicare | 404 Not Found Content-Length: 1090 Content-Type: text/html | clean |
http://laodongtienluong.vn/test404page.js | 404 Not Found Content-Length: 1090 Content-Type: text/html | clean |
http://laodongtienluong.vn/?p=37 | 200 OK Content-Length: 9750 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HaCked By SA3D HaCk3D ...[7650 bytes skipped]... ;big><em><strong>Hotline: 0909 510 386 / 0906 764 386 – Mr.DÆ°Æ¡ng</strong></em></big></span></p> <p> </td> </tr> </tbody> </table> </div><!-- /post-entry --> </div><!-- post --> <!--<center><h1>HaCked By SA3D HaCk3D<br><h3><i>kurdish Hacker--> <!-- /have_posts --> </div><!-- /content --> <div id="sidebar"> <div id="search-2" class="widget widget_search"> <form method="get" id="searchform" action="http://laodongtienluong.vn/"> <input class="searchfield" type="text" value="Search" name="s" id="s" onfocus="if (this.value == 'Se ...[3687 bytes skipped]... | ||
http://laodongtienluong.vn/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-content/themes/curiosity/js/superfish.js?ver=4.1 | 200 OK Content-Length: 3823 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-content/themes/curiosity/js/jquery.easing_1.3.js?ver=4.1 | 200 OK Content-Length: 8097 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-content/themes/curiosity/js/lofslider.js?ver=4.1 | 200 OK Content-Length: 14102 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-content/themes/curiosity/js/jcarousellite_1.0.1.min.js?ver=4.1 | 200 OK Content-Length: 2383 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-content/themes/curiosity/js/custom.js?ver=4.1 | 200 OK Content-Length: 872 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-content/themes/curiosity/js/social.js?ver=4.1 | 200 OK Content-Length: 543 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/wp-includes/js/comment-reply.min.js?ver=4.1 | 200 OK Content-Length: 757 Content-Type: application/x-javascript | clean |
http://laodongtienluong.vn/?page_id=278 | 200 OK Content-Length: 15498 Content-Type: text/html | clean |
http://laodongtienluong.vn/?page_id=6 | 200 OK Content-Length: 14730 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: laodongtienluong.vn
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 27 May 2015 02:02:46 GMT
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://laodongtienluong.vn/xmlrpc.php
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
X-Powered-By: PHP/5.2.6
GET / HTTP/1.1
Host: laodongtienluong.vn
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 27 May 2015 02:02:46 GMT
Server: Microsoft-IIS/6.0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://laodongtienluong.vn/xmlrpc.php
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
X-Powered-By: PHP/5.2.6
Second query (visit from search engine):
GET / HTTP/1.1
Host: laodongtienluong.vn
Referer: http://www.google.com/search?q=laodongtienluong.vn
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: laodongtienluong.vn
Referer: http://www.google.com/search?q=laodongtienluong.vn
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=laodongtienluong.vn
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://laodongtienluong.vn/
Result: laodongtienluong.vn is not infected or malware details are not published yet.
Result: laodongtienluong.vn is not infected or malware details are not published yet.