Scanned pages/files
Request | Server response | Status |
http://www.phonewire.com/ | 200 OK Content-Length: 251 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Fallaga Team <style>body{overflow:hidden;background-color:black}#q{font:40px impact;color:white;position:absolute;left:0;right:0;top:43%}</style><title>Hacked by Fallaga Team </title><center><div id=q>Hacked by Fallag Gassrini<br>Tunisian Fallaga Team<br>./Defaced | ||
http://www.phonewire.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 16 Jun 2015 05:05:00 GMT Pragma: no-cache Location: http://phonewire.com/test404page.js Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=52b8948e2219f19f414d5438d6d6f765; path=/ X-Pingback: http://phonewire.com/xmlrpc.php X-Powered-By: PHP/5.3.27 | clean |
http://phonewire.com/test404page.js | 404 Not Found Content-Length: 16605 Content-Type: text/html | clean |
http://phonewire.com//s3.amazonaws.com/mailmunch/static/site.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 16 Jun 2015 05:05:05 GMT Pragma: no-cache Location: http://phonewire.com/s3.amazonaws.com/mailmunch/static/site.js/ Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=3c824f57f01c19e51a58417e45e329ff; path=/ X-Pingback: http://phonewire.com/xmlrpc.php X-Powered-By: PHP/5.3.27 | clean |
http://phonewire.com/s3.amazonaws.com/mailmunch/static/site.js/ | 404 Not Found Content-Length: 16632 Content-Type: text/html | clean |
http://phonewire.com/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: application/javascript | clean |
http://phonewire.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/plugins/download-manager/bootstrap/js/bootstrap.min.js?ver=4.2.2 | 200 OK Content-Length: 27913 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/plugins/download-manager/js/front.js?ver=4.2.2 | 200 OK Content-Length: 774 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/plugins/download-manager/js/chosen.jquery.min.js?ver=4.2.2 | 200 OK Content-Length: 23439 Content-Type: application/javascript | clean |
http://phonewire.com/wp-includes/js/jquery/jquery.form.min.js?ver=3.37.0 | 200 OK Content-Length: 14720 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/themes/Divi/js/jquery.fitvids.js?ver=2.3.2 | 200 OK Content-Length: 2943 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/themes/Divi/js/waypoints.min.js?ver=2.3.2 | 200 OK Content-Length: 8051 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/themes/Divi/js/jquery.magnific-popup.js?ver=2.3.2 | 200 OK Content-Length: 47718 Content-Type: application/javascript | clean |
http://phonewire.com/wp-content/themes/Divi/js/custom.js?ver=2.3.2 | 200 OK Content-Length: 101009 Content-Type: application/javascript | clean |
http://phonewire.com/ | 200 OK Content-Length: 31409 Content-Type: text/html | clean |
http://phonewire.com/wp-includes/js/comment-reply.min.js?ver=4.2.2 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: phonewire.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 16 Jun 2015 05:05:12 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Tue, 16 Jun 2015 05:05:13 GMT
Link: <http://phonewire.com/>; rel=shortlink
Set-Cookie: PHPSESSID=6c91710a5b1e49d305cdd84f8d68602b; path=/
X-Pingback: http://phonewire.com/xmlrpc.php
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: phonewire.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 16 Jun 2015 05:05:12 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Tue, 16 Jun 2015 05:05:13 GMT
Link: <http://phonewire.com/>; rel=shortlink
Set-Cookie: PHPSESSID=6c91710a5b1e49d305cdd84f8d68602b; path=/
X-Pingback: http://phonewire.com/xmlrpc.php
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: phonewire.com
Referer: http://www.google.com/search?q=phonewire.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: phonewire.com
Referer: http://www.google.com/search?q=phonewire.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=phonewire.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://phonewire.com/
Result: phonewire.com is not infected or malware details are not published yet.
Result: phonewire.com is not infected or malware details are not published yet.