Scanned pages/files
Request | Server response | Status |
http://nwaters.com/ | 200 OK Content-Length: 4027 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By ZeynnymouZ <!DOCTYPE html>
<html lang="en"> <head> <meta charset="utf-8"> <title>Hacked By ZeynnymouZ</title> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <meta name="description" content="Hacked By ZeynnymouZ"> <meta name="author" content=""> <link rel="stylesheet" href="http://www.israelc.com/wp-content/plugins/wp-construction-mode/inc/style/style.css"> <link rel="stylesheet" href="http://www.israel ...[4178 bytes skipped]... | ||
http://www.israelc.com/wp-content/plugins/wp-construction-mode/inc/script/jquery-2.1.3.min.js | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 22 Jul 2015 18:13:06 GMT Pragma: no-cache Location: http://www.israelc.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: qtrans_front_language=en; expires=Thu, 21-Jul-2016 18:13:06 GMT; path=/ X-Pingback: http://www.israelc.com/xmlrpc.php | clean |
http://www.israelc.com/ | 200 OK Content-Length: 119626 Content-Type: text/html | clean |
http://www.israelc.com/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?rev=4.2.2&ver=4.2.2 | 200 OK Content-Length: 85185 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?rev=4.2.2&ver=4.2.2 | 200 OK Content-Length: 90102 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/themes/wpresidence/js/bootstrap.min.js?ver=1.0 | 200 OK Content-Length: 27748 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/themes/wpresidence/js/modernizr.custom.62456.js?ver=1.0 | 200 OK Content-Length: 29013 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/plugins/Ultimate_VC_Addons/assets/min-js/ultimate-params.min.js?ver=3.9.3 | 200 OK Content-Length: 1179 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/plugins/akismet/_inc/form.js?ver=3.1.3 | 200 OK Content-Length: 700 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=4.2.1 | 200 OK Content-Length: 11200 Content-Type: application/javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201530 | 200 OK Content-Length: 9885 Content-Type: application/x-javascript | clean |
http://www.israelc.com/wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 | 200 OK Content-Length: 3997 Content-Type: application/javascript | clean |
http://www.israelc.com/wp-includes/js/jquery/ui/widget.min.js?ver=1.11.4 | 200 OK Content-Length: 6908 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nwaters.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 22 Jul 2015 18:13:07 GMT
Server: Apache
Content-Length: 4027
Content-Type: text/html
...4027 bytes of data.
GET / HTTP/1.1
Host: nwaters.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 22 Jul 2015 18:13:07 GMT
Server: Apache
Content-Length: 4027
Content-Type: text/html
...4027 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: nwaters.com
Referer: http://www.google.com/search?q=nwaters.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nwaters.com
Referer: http://www.google.com/search?q=nwaters.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nwaters.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nwaters.com/
Result: nwaters.com is not infected or malware details are not published yet.
Result: nwaters.com is not infected or malware details are not published yet.