Scanned pages/files
Request | Server response | Status |
http://stoptheswindle.com/ | 200 OK Content-Length: 10925 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By rEd X – 3xp1r3 Cyber Army <br /> <b>Warning</b>: mb_regex_encoding() [<a href='function.mb-regex-encoding'>function.mb-regex-encoding</a>]: Unknown encoding "UTF-7" in <b>/home/swindle/public_html/wp-content/themes/stop_swindle/functions.php</b> on line <b>17</b><br /> <br /> <b>Warning</b>: Cannot modify header information - headers already sent by (output started at /home/swindle/ ...[12675 bytes skipped]... | ||
http://stoptheswindle.com/wp-includes/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 93889 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-content/plugins/wow-slider-wordpress-image-slider-plugin/data/wowslider.js?ver=3.3.1 | 200 OK Content-Length: 7033 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-content/plugins/image-slider-with-description/js/jquery.min.js?ver=3.3.1 | 200 OK Content-Length: 84362 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-content/plugins/image-slider-with-description/js/scripts.js?ver=3.3.1 | 200 OK Content-Length: 7594 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-content/themes/stop_swindle/includes/js/faq.js?ver=3.3.1 | 200 OK Content-Length: 327 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-content/themes/stop_swindle/includes/js/jquery.tipsy.js?ver=3.3.1 | 200 OK Content-Length: 4479 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-includes/js/comment-reply.js?ver=20090102 | 200 OK Content-Length: 786 Content-Type: application/javascript | clean |
http://stoptheswindle.com/wp-content/themes/stop_swindle/script.js | 200 OK Content-Length: 5800 Content-Type: application/javascript | clean |
http://stoptheswindle.com/function.mb-regex-encoding | 200 OK Content-Length: 13023 Content-Type: text/html | clean |
http://stoptheswindle.com/category/wind-is-deadly | 200 OK Content-Length: 12760 Content-Type: text/html | clean |
http://stoptheswindle.com/category/function.mb-regex-encoding | 200 OK Content-Length: 13023 Content-Type: text/html | clean |
http://stoptheswindle.com/category/death-to-wildlife | 200 OK Content-Length: 11940 Content-Type: text/html | clean |
http://stoptheswindle.com/category/death-to-the-environment | 200 OK Content-Length: 11968 Content-Type: text/html | clean |
http://stoptheswindle.com/category/death-to-jobs | 200 OK Content-Length: 11924 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: stoptheswindle.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 27 Jun 2015 08:04:57 GMT
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4
Content-Type: text/html
X-Powered-By: PHP/5.2.9
GET / HTTP/1.1
Host: stoptheswindle.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 27 Jun 2015 08:04:57 GMT
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4
Content-Type: text/html
X-Powered-By: PHP/5.2.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: stoptheswindle.com
Referer: http://www.google.com/search?q=stoptheswindle.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: stoptheswindle.com
Referer: http://www.google.com/search?q=stoptheswindle.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=stoptheswindle.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://stoptheswindle.com/
Result: stoptheswindle.com is not infected or malware details are not published yet.
Result: stoptheswindle.com is not infected or malware details are not published yet.