Scanned pages/files
Request | Server response | Status |
http://maxcomindo.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 01 Oct 2015 22:59:39 GMT Pragma: no-cache Location: http://www.maxcomindo.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-7 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=eb8a079d8f7db0abb38263676823ce5e; path=/ Set-Cookie: wpsc_customer_cookie_5d6e9a1b3632e5462c707f00082a551c=963%7C1443913179%7Cfb201f0f67a45b72653f14033288ec06; expires=Sat, 03-Oct-2015 22:59:39 GMT; path=/ X-Pingback: http://www.maxcomindo.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.maxcomindo.com/ | 200 OK Content-Length: 38312 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4-hacked by ha94mode Vir00s albasrah+ADw-DIV style+AD0AIg-DISPLAY: none+ACIAPgA8-xmp+A ...[27493 bytes skipped]... ugins/wp-e-commerce/wpsc-core/js/thickbox.js'></script> <link rel="EditURI" type="application/rsd+xml" title="RSD" href="http://www.maxcomindo.com/xmlrpc.php?rsd" /> <link rel="wlwmanifest" type="application/wlwmanifest+xml" href="http://www.maxcomindo.com/wp-includes/wlwmanifest.xml" /> <link rel='alternate' type='application/rss+xml' title='+ADw-/title+AD4-hacked by ha94mode Vir00s albasrah+ADw-DIV style+AD0AIg-DISPLAY: none+ACIAPgA8-xmp+AD4- Product List RSS' href='http://www.maxcomindo.com?wpsc_action=rss'/> <style type="text/css"> body{ background:url(http://www.maxcomindo.com/wp-content/uploads/2015/08/bg.jpg) ;background-repeat:repeat ;background-color:#e0e0e0 ;background-position:top center ;background-attachment:fixed ;} a{color:#379be8;} h1{ color:#379be8;} h2{color:#379be8;} h3{color:#379be8;} h4{color:#379be8;} ...[13293 bytes skipped]... | ||
http://www.maxcomindo.com/wp-includes/js/jquery/jquery.js | 200 OK Content-Length: 95977 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-includes/js/jquery/jquery-migrate.min.js | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/plugins/wp-e-commerce/wpsc-core/js/wp-e-commerce.js | 200 OK Content-Length: 53111 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/plugins/wp-e-commerce/wpsc-admin/js/jquery.livequery.js | 200 OK Content-Length: 6714 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/plugins/wp-e-commerce/wpsc-core/js/user.js | 200 OK Content-Length: 14438 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/plugins/wp-e-commerce/wpsc-core/js/thickbox.js | 200 OK Content-Length: 14444 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/jquery-1.8.3.min.js | 200 OK Content-Length: 93643 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/bootstrap.min.js | 200 OK Content-Length: 27726 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/jquery.carouFredSel.js | 200 OK Content-Length: 54780 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/jcart.js | 200 OK Content-Length: 3504 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/jquery.themepunch.plugins.min.js | 200 OK Content-Length: 64381 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/jquery.themepunch.revolution.min.js | 200 OK Content-Length: 71799 Content-Type: application/javascript | clean |
http://www.maxcomindo.com/wp-content/themes/WP-Pasar/js/core-1.js | 200 OK Content-Length: 2998 Content-Type: application/javascript | clean |
http://maxcomindo.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 01 Oct 2015 22:59:53 GMT Pragma: no-cache Location: http://www.maxcomindo.com/test404page.js Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-7 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=1a26171dfd634fc47a5f238a423d421a; path=/ Set-Cookie: wpsc_customer_cookie_5d6e9a1b3632e5462c707f00082a551c=966%7C1443913194%7C90130bf660fc5d62b97d00ecfc7fb9c5; expires=Sat, 03-Oct-2015 22:59:54 GMT; path=/ X-Pingback: http://www.maxcomindo.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.maxcomindo.com/test404page.js | 404 Not Found Content-Length: 34433 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: maxcomindo.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 01 Oct 2015 22:59:39 GMT
Pragma: no-cache
Location: http://www.maxcomindo.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=eb8a079d8f7db0abb38263676823ce5e; path=/
Set-Cookie: wpsc_customer_cookie_5d6e9a1b3632e5462c707f00082a551c=963%7C1443913179%7Cfb201f0f67a45b72653f14033288ec06; expires=Sat, 03-Oct-2015 22:59:39 GMT; path=/
X-Pingback: http://www.maxcomindo.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
...0 bytes of data.
GET / HTTP/1.1
Host: maxcomindo.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 01 Oct 2015 22:59:39 GMT
Pragma: no-cache
Location: http://www.maxcomindo.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=eb8a079d8f7db0abb38263676823ce5e; path=/
Set-Cookie: wpsc_customer_cookie_5d6e9a1b3632e5462c707f00082a551c=963%7C1443913179%7Cfb201f0f67a45b72653f14033288ec06; expires=Sat, 03-Oct-2015 22:59:39 GMT; path=/
X-Pingback: http://www.maxcomindo.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: maxcomindo.com
Referer: http://www.google.com/search?q=maxcomindo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: maxcomindo.com
Referer: http://www.google.com/search?q=maxcomindo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=maxcomindo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://maxcomindo.com/
Result: maxcomindo.com is not infected or malware details are not published yet.
Result: maxcomindo.com is not infected or malware details are not published yet.