Scanned pages/files
Request | Server response | Status |
http://www.lhscheer.com/ | 200 OK Content-Length: 36751 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4APA-h3+AD4APA-br+AD4APA-center+AD4-Hacked ByDoldis — TurkHackTeam.Net+ADw-br+AD <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-7" /> <title>+ADw-/title+AD4APA-h3+AD4APA-br+AD4APA-center+AD4-Hacked ByDoldis — TurkHackTeam.Net+ADw-br+AD4APA-br+AD4APA-/center+A ...[42244 bytes skipped]... | ||
http://www.lhscheer.com/wp-includes/js/swfobject.js?ver=2.2-20120417 | 200 OK Content-Length: 10231 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js?ver=3.6.1 | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/1-flash-gallery/js/swfhelper.js?ver=3.6.1 | 200 OK Content-Length: 1370 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/1-flash-gallery/js/gallery/photoGallery.js?ver=3.6.1 | 200 OK Content-Length: 42395 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/indexo-slider/js/jquery.cycle.js?ver=1.0 | 200 OK Content-Length: 51307 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-includes/js/comment-reply.min.js?ver=3.6.1 | 200 OK Content-Length: 786 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/custom-post-donations/scripts/cp-donations.js?ver=3.6.1 | 200 OK Content-Length: 1718 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/slidedeck2-personal/js/jquery-mousewheel/jquery.mousewheel.min.js?ver=3.0.6 | 200 OK Content-Length: 1392 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/slidedeck2-personal/js/jquery.easing.1.3.js?ver=1.3 | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/slidedeck2-personal/js/slidedeck.jquery.js?ver=1.4.1 | 200 OK Content-Length: 34858 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/plugins/slidedeck2-personal/js/slidedeck-public.js?ver=2.3.3 | 200 OK Content-Length: 138455 Content-Type: application/javascript | clean |
http://platform.twitter.com/widgets.js?ver=1316526300 | 200 OK Content-Length: 98265 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/themes/LHScheerCUSTOM12/script.js | 200 OK Content-Length: 5808 Content-Type: application/javascript | clean |
http://www.lhscheer.com/wp-content/themes/LHScheerCUSTOM12/swfobject.js | 200 OK Content-Length: 10235 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lhscheer.com
Result:
GET / HTTP/1.1
Host: lhscheer.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: lhscheer.com
Referer: http://www.google.com/search?q=lhscheer.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lhscheer.com
Referer: http://www.google.com/search?q=lhscheer.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=lhscheer.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://lhscheer.com/
Result: lhscheer.com is not infected or malware details are not published yet.
Result: lhscheer.com is not infected or malware details are not published yet.