Scanned pages/files
Request | Server response | Status |
http://seleccaonacional.net/ | 200 OK Content-Length: 1773 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By SecurityBus <html>
<title>Hacked By SecurityBus</title><style type="text/css"> </style><LINK href="http://img80.imageshack.us/img80/3262/icorp.jpg" rel="shortcut icon"> </head> <body bgcolor=black lang=TR link=blue vlink=purple> <div class=Section1> <p class=MsoNormal align=center style='text-align:center'><b><font size=7 color=white face="Bodoni MT Poster Compressed"><sp ...[1739 bytes skipped]... | ||
http://seleccaonacional.net/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 13 Oct 2014 06:54:28 GMT Pragma: no-cache Location: http://www.seleccaonacional.net/test404page.js Server: Apache Vary: Cookie,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: fb_visits=1; expires=Wed, 12-Nov-2014 06:54:28 GMT; path=/ X-Pingback: http://www.seleccaonacional.net/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.seleccaonacional.net/test404page.js | 404 Not Found Content-Length: 84820 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.11.0.min.js?ver=1.11.0 | 200 OK Content-Length: 96381 Content-Type: application/x-javascript | clean |
http://www.seleccaonacional.net/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?rev=4.3.8&ver=3.9.2 | 200 OK Content-Length: 85185 Content-Type: application/javascript | clean |
http://www.seleccaonacional.net/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?rev=4.3.8&ver=3.9.2 | 200 OK Content-Length: 101288 Content-Type: application/javascript | clean |
http://seleccaonacional.net//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 13 Oct 2014 06:54:34 GMT Pragma: no-cache Location: http://www.seleccaonacional.net/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: Apache Vary: Cookie,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: fb_visits=1; expires=Wed, 12-Nov-2014 06:54:34 GMT; path=/ X-Pingback: http://www.seleccaonacional.net/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.seleccaonacional.net/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 84820 Content-Type: text/html | clean |
http://www.seleccaonacional.net//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 13 Oct 2014 06:54:37 GMT Pragma: no-cache Location: http://www.seleccaonacional.net/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: cloudflare-nginx Vary: Cookie,Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT CF-RAY: 1789a0776ae405d5-WAW Set-Cookie: __cfduid=d315b439a76d6e79425a77b87d84c3d2c1413183276705; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.seleccaonacional.net; HttpOnly Set-Cookie: fb_visits=1; expires=Wed, 12-Nov-2014 06:54:36 GMT; path=/ X-Pingback: http://www.seleccaonacional.net/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.seleccaonacional.net/wp-content/plugins/CrackerJack/js/wpcj-fb-jquery.js?ver=1.5 | 200 OK Content-Length: 3263 Content-Type: application/javascript | clean |
http://www.seleccaonacional.net/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 2930 Content-Type: application/javascript | clean |
http://www.seleccaonacional.net/wp-content/themes/Newspaper/js/external.js?ver=3.9.1 | 200 OK Content-Length: 135277 Content-Type: application/javascript | clean |
http://www.seleccaonacional.net/wp-content/themes/Newspaper/js/site.js?ver=3.9.1 | 200 OK Content-Length: 47788 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: seleccaonacional.net
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600, must-revalidate
Connection: close
Date: Mon, 13 Oct 2014 06:54:27 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 1773
Content-Type: text/html; charset=UTF-8
Last-Modified: Sat, 04 Oct 2014 12:18:28 GMT
...1773 bytes of data.
GET / HTTP/1.1
Host: seleccaonacional.net
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600, must-revalidate
Connection: close
Date: Mon, 13 Oct 2014 06:54:27 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 1773
Content-Type: text/html; charset=UTF-8
Last-Modified: Sat, 04 Oct 2014 12:18:28 GMT
...1773 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: seleccaonacional.net
Referer: http://www.google.com/search?q=seleccaonacional.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: seleccaonacional.net
Referer: http://www.google.com/search?q=seleccaonacional.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=seleccaonacional.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://seleccaonacional.net/
Result: seleccaonacional.net is not infected or malware details are not published yet.
Result: seleccaonacional.net is not infected or malware details are not published yet.