Scanned pages/files
Request | Server response | Status |
http://www.planetkids.co.za/ | 200 OK Content-Length: 12793 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By ./Czw_07 <head> <meta http-equiv="content-type" content="text/html; charset=UTF-8"> <object data='http://cikamoitutor.bravehost.com/player.swf' height='0' type='application/x-shockwave-flash' width='0'> <param name=' value='#'/><br/><param name='FlashVars' value='mp3=http://c-deargod.hol.es/music/peterpan-semua%20tentang%20kita.mp3&loop=1&autoplay=1&volume=150'/></object> <title>Hacked By ./Czw_07</title> <body text="#800000" bgcolor="#000000" background="http://img68.xooimage.com/files/4/7/c/511k-2e0d435.gif"> </head> <style> body{ font: 10pt Verdana; } tr { BORDER-RIGHT: #3e3e3e 1px solid; BORDER-TOP: #3e3e3e 1px solid; BORDER-LEFT: #3e3e3e 1px solid; BORDER-BOTTOM: #3e3e3e 1px solid; color: #ff9900; } td { ...[14665 bytes skipped]... | ||
http://www.planetkids.co.za/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 11 Nov 2014 15:53:36 GMT Pragma: no-cache Location: http://planetkids.co.za/test404page.js Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://planetkids.co.za/xmlrpc.php | clean |
http://planetkids.co.za/test404page.js | 404 Not Found Content-Length: 11782 Content-Type: text/html | clean |
http://planetkids.co.za/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=4.0 | 200 OK Content-Length: 33 Content-Type: application/javascript | clean |
http://planetkids.co.za/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://planetkids.co.za/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://planetkids.co.za/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/persist.js?ver=4.0 | 200 OK Content-Length: 24995 Content-Type: application/javascript | clean |
http://planetkids.co.za/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/store.js?ver=4.0 | 200 OK Content-Length: 5337 Content-Type: application/javascript | clean |
http://planetkids.co.za/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ngg_store.js?ver=4.0 | 200 OK Content-Length: 894 Content-Type: application/javascript | clean |
http://planetkids.co.za/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/lightbox/static/lightbox_context.js?ver=4.0 | 200 OK Content-Length: 890 Content-Type: application/javascript | clean |
http://www.planetkids.co.za/?page_id=5 | 200 OK Content-Length: 12793 Content-Type: text/html | clean |
http://www.planetkids.co.za/?page_id=46 | 200 OK Content-Length: 12793 Content-Type: text/html | clean |
http://www.planetkids.co.za/?page_id=7 | 200 OK Content-Length: 12793 Content-Type: text/html | clean |
http://www.planetkids.co.za/?page_id=47 | 200 OK Content-Length: 12793 Content-Type: text/html | clean |
http://www.planetkids.co.za/?page_id=4 | 200 OK Content-Length: 12793 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: planetkids.co.za
Result:
GET / HTTP/1.1
Host: planetkids.co.za
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: planetkids.co.za
Referer: http://www.google.com/search?q=planetkids.co.za
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: planetkids.co.za
Referer: http://www.google.com/search?q=planetkids.co.za
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=planetkids.co.za
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://planetkids.co.za/
Result: planetkids.co.za is not infected or malware details are not published yet.
Result: planetkids.co.za is not infected or malware details are not published yet.