New scan:

Malware Scanner report for redlaf.org

Malicious/Suspicious/Total urls checked
0/0/15
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
Found
Probably the website is defaced. The following signature was found:

HACKED BY MR.WWW  (166 websites defaced)

See details below

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://redlaf.org/
200 OK
Content-Length: 13469
Content-Type: text/html
suspicious
Deface/Content modification. The following signature was found: HACKED BY MR.WWW

...[11872 bytes skipped]...



<div class="blog-featured">
<div class="items-leading">
<div class="leading-0">

<h2>
<a href="/index.php/using-joomla/extensions/components/content-component/article-category-list/24-joomla">
HACKED BY MR.WWW</a>
</h2>

<p>HACKED BY MR.WWW</p>
<div class="item-separator"></div>
</div>
</div>


<div class="items-row cols-3 row-0">
<div class="item column-1">

<h2>
<a href="/index.php/using-joomla/extensions/components/content-component/article-category-list/8-beginners">
Beginners</a>
</h2>

<p&
...[3524 bytes skipped]...


http://redlaf.org/media/system/js/core.js
200 OK
Content-Length: 3616
Content-Type: application/javascript
clean
http://redlaf.org/media/system/js/mootools-core.js
200 OK
Content-Length: 83987
Content-Type: application/javascript
clean
http://redlaf.org/media/system/js/caption.js
200 OK
Content-Length: 800
Content-Type: application/javascript
clean
http://redlaf.org/media/system/js/mootools-more.js
200 OK
Content-Length: 224389
Content-Type: application/javascript
clean
http://redlaf.org/templates/beez_20/javascript/md_stylechanger.js
200 OK
Content-Length: 3117
Content-Type: application/javascript
clean
http://redlaf.org/templates/beez_20/javascript/hide.js
200 OK
Content-Length: 7556
Content-Type: application/javascript
clean
http://redlaf.org/index.php/sample-sites
200 OK
Content-Length: 11747
Content-Type: text/html
clean
http://redlaf.org/index.php/
200 OK
Content-Length: 13479
Content-Type: text/html
clean
http://redlaf.org/index.php/getting-started
200 OK
Content-Length: 12473
Content-Type: text/html
clean
http://redlaf.org/index.php/using-joomla
200 OK
Content-Length: 11031
Content-Type: text/html
clean
http://redlaf.org/index.php/using-joomla/extensions
200 OK
Content-Length: 15222
Content-Type: text/html
clean
http://redlaf.org/index.php/using-joomla/
200 OK
Content-Length: 11032
Content-Type: text/html
clean
http://redlaf.org/index.php/using-joomla/parameters
200 OK
Content-Length: 12641
Content-Type: text/html
clean
http://redlaf.org/index.php/using-joomla/getting-help
200 OK
Content-Length: 11403
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: redlaf.org

Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Wed, 15 Oct 2014 23:08:29 GMT
Pragma: no-cache
Server: nginx/1.6.2
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 2a1d76eae6d3dd7b7a9dc4bf460fcec9=0e471e4accdf7b99cc32e2866cea86e4; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: redlaf.org
Referer: http://www.google.com/search?q=redlaf.org

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=redlaf.org

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://redlaf.org/

Result: redlaf.org is not infected or malware details are not published yet.