Scanned pages/files
Request | Server response | Status |
http://qiblahschools.com/ | 200 OK Content-Length: 3706 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY EAGLE DA WAPMASTER <title>HACKED BY EAGLE DA WAPMASTER</title> <link rel="STYLESHEET" type="text/css" href="http://cliqwap.com/styles.css"/><link rel="stylesheet" href="http://wapgurus..wapka.mobi/styles.css"/><link rel="stylesheet" type="text/css" href="http://mackie.wapsite.me/css/jcms/style.css" media="all,handheld"/><link rel="stylesheet" type="text/css" href="http://syonzone.tk/Css-class/blacked.css" /><br /><link rel="stylesheet" href ...[3955 bytes skipped]... | ||
http://qiblahschools.com//go.pub2srv.com/apu.php?zoneid=16780/ | 200 OK Content-Length: 3706 Content-Type: text/html | clean |
http://qiblahschools.com//1phads.com/notice.php?p=16781&interactive=1&pushup=1/ | 200 OK Content-Length: 3706 Content-Type: text/html | clean |
http://qiblahschools.com/test404page.js | 200 OK Content-Length: 3706 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: qiblahschools.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=1209600
Connection: close
Date: Sat, 25 Jul 2015 04:39:12 GMT
Server: cloudflare-nginx
Content-Type: text/html
Expires: Sat, 08 Aug 2015 04:39:12 GMT
CF-RAY: 20b52dfccffd0ae4-WAW
Set-Cookie: __cfduid=d538fc4923f3e27fb4a77f6da052ca00f1437799152; expires=Sun, 24-Jul-16 04:39:12 GMT; path=/; domain=.qiblahschools.com; HttpOnly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: qiblahschools.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=1209600
Connection: close
Date: Sat, 25 Jul 2015 04:39:12 GMT
Server: cloudflare-nginx
Content-Type: text/html
Expires: Sat, 08 Aug 2015 04:39:12 GMT
CF-RAY: 20b52dfccffd0ae4-WAW
Set-Cookie: __cfduid=d538fc4923f3e27fb4a77f6da052ca00f1437799152; expires=Sun, 24-Jul-16 04:39:12 GMT; path=/; domain=.qiblahschools.com; HttpOnly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: qiblahschools.com
Referer: http://www.google.com/search?q=qiblahschools.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: qiblahschools.com
Referer: http://www.google.com/search?q=qiblahschools.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=qiblahschools.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://qiblahschools.com/
Result: qiblahschools.com is not infected or malware details are not published yet.
Result: qiblahschools.com is not infected or malware details are not published yet.