Scanned pages/files
Request | Server response | Status |
http://www.scripturetogo.com/ | 200 OK Content-Length: 14758 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4-Hacked by Moroccanwolf +ACY Abdellah ELmaghribi+ADw-DIV style+AD0AIg-DISPLAY: none+A ...[408 bytes skipped]... US" xmlns:fb="http://www.facebook.com/2008/fbml" xmlns:og="http://ogp.me/ns#"> <![endif]--> <!--[if !(IE 6) | !(IE 7) | !(IE 8) ]><!--> <html lang="en-US" xmlns:fb="http://www.facebook.com/2008/fbml" xmlns:og="http://ogp.me/ns#"> <!--<![endif]--> <head> <meta charset="UTF-7" /> <title> +ADw-/title+AD4-Hacked by Moroccanwolf +ACY Abdellah ELmaghribi+ADw-DIV style+AD0AIg-DISPLAY: none+ACIAPgA8-xmp+AD4- | ScriptureToGo</title> <!--[if lt IE 9]> <script src="http://html5shim.googlecode.com/svn/trunk/html5.js"></script> <![endif]--> <link rel="profile" href="http://gmpg.org/xfn/11" /> <link rel="pingback" href="http://www.scripturetogo.com/xmlrpc.php" /> <meta name="HandheldFriendly" content="True" /> <meta name="viewport" content= ...[15735 bytes skipped]... | ||
http://www.scripturetogo.com/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 | 200 OK Content-Length: 3997 Content-Type: application/javascript | clean |
http://www.scripturetogo.com//cdn.jsdelivr.net/jquery.cookie/1.3.1/jquery.cookie.js?ver=4.2.2/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 28 Oct 2015 15:49:30 GMT Pragma: no-cache Location: http://www.scripturetogo.com/cdn.jsdelivr.net/jquery.cookie/1.3.1/jquery.cookie.js?ver=4.2.2/ Server: Apache/2.4.16 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html; charset=UTF-7 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://www.scripturetogo.com/xmlrpc.php X-Powered-By: PHP/5.6.13 | clean |
http://www.scripturetogo.com/cdn.jsdelivr.net/jquery.cookie/1.3.1/jquery.cookie.js?ver=4.2.2/ | 404 Not Found Content-Length: 10997 Content-Type: text/html | clean |
http://www.scripturetogo.com//releases.flowplayer.org/5.4.3/flowplayer.min.js?ver=4.2.2/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 28 Oct 2015 15:49:31 GMT Pragma: no-cache Location: http://www.scripturetogo.com/releases.flowplayer.org/5.4.3/flowplayer.min.js?ver=4.2.2/ Server: Apache/2.4.16 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html; charset=UTF-7 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://www.scripturetogo.com/xmlrpc.php X-Powered-By: PHP/5.6.13 | clean |
http://www.scripturetogo.com/releases.flowplayer.org/5.4.3/flowplayer.min.js?ver=4.2.2/ | 404 Not Found Content-Length: 10997 Content-Type: text/html | clean |
http://www.scripturetogo.com/wp-content/plugins/InstaBuilder/js/instabuilder.js?ver=4.2.2 | 200 OK Content-Length: 3068 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/wp-content/plugins/InstaBuilder/js/countdown/jquery.ibCountdown.js?ver=4.2.2 | 200 OK Content-Length: 4368 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/wp-includes/js/masonry.min.js?ver=3.1.2 | 200 OK Content-Length: 31976 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/wp-includes/js/jquery/jquery.masonry.min.js?ver=3.1.2 | 200 OK Content-Length: 1836 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/wp-content/themes/twentythirteen/js/functions.js?ver=2013-07-18 | 200 OK Content-Length: 2038 Content-Type: application/javascript | clean |
http://www.scripturetogo.com/privacy-policy/ | 200 OK Content-Length: 17360 Content-Type: text/html | clean |
http://www.scripturetogo.com/test404page.js | 404 Not Found Content-Length: 10997 Content-Type: text/html | clean |
http://www.scripturetogo.com/sample-page/ | 200 OK Content-Length: 14059 Content-Type: text/html | clean |
http://www.scripturetogo.com/wp-includes/js/comment-reply.min.js?ver=4.2.2 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: scripturetogo.com
Result:
GET / HTTP/1.1
Host: scripturetogo.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: scripturetogo.com
Referer: http://www.google.com/search?q=scripturetogo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: scripturetogo.com
Referer: http://www.google.com/search?q=scripturetogo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=scripturetogo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://scripturetogo.com/
Result: scripturetogo.com is not infected or malware details are not published yet.
Result: scripturetogo.com is not infected or malware details are not published yet.