Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tabali.cl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tabali.cl/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.tabali.cl/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 08 Mar 2015 11:05:42 GMT Pragma: no-cache Location: http://www.tabali.com Server: Apache/2.2.3 (CentOS) Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sun, 08 Mar 2015 11:05:42 GMT Set-Cookie: _icl_current_language=es; expires=Mon, 09-Mar-2015 11:05:42 GMT; path=/ Set-Cookie: PHPSESSID=518072iodqik6i00v2o29v0d44; path=/ X-Pingback: http://www.tabali.com/xmlrpc.php X-Powered-By: PHP/5.2.10 | clean |
http://www.tabali.com/ | 200 OK Content-Length: 82133 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Islamic State ...[3310 bytes skipped]... title"); jQuery(this).attr('title',title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").not(".nolightbox").filter( function() { return /\.(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>document.title = "Hacked by Islamic State";</script><html><head><style>body{background-color: black; color: transparent}</style></head><body><center><h1 style="color: red">Hacked by Islamic State</h1><img src="data:image/jpeg;base64,iVBORw0KGgoAAAANSUhEUgAAAkQAAAFFCAYAAAANVPJiAAAgAElEQVR4nOydeZwUxfn/Pz3Xzt677L3LwsJy34dBUBQRPAAVETFi1GC8Qcnvi+IRLxJjNPEiEr/eRmJExUSTeEWjSFQSEL4qKpfLci2wCCyw9+5c9fuD1KSmpqqnZ3ZhZp3n/XrVq2f6qHqqu7rq009VVxsAGAiCIAiCIJIYW7wN ...[82770 bytes skipped]... | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.8/jquery.min.js?ver=3.6.1 | 200 OK Content-Length: 93637 Content-Type: text/javascript | clean |
http://www.tabali.com/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/themes/tabali/js/vendor/modernizr-2.6.1.min.js?ver=1.0 | 200 OK Content-Length: 15367 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/themes/tabali/js/jquery.cycle.js?ver=1.0 | 200 OK Content-Length: 50256 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/themes/tabali/js/jquery.superfish.js?ver=1.0 | 200 OK Content-Length: 3714 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/themes/tabali/js/jquery.dropkick.js?ver=1.0 | 200 OK Content-Length: 11840 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/themes/tabali/js/main.js?ver=1.0 | 200 OK Content-Length: 4286 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js | 200 OK Content-Length: 994 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/themes/tabali/js/cookie.js | 200 OK Content-Length: 1576 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.44.0-2013.09.15 | 200 OK Content-Length: 14701 Content-Type: application/x-javascript | clean |
http://www.tabali.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.3 | 200 OK Content-Length: 8326 Content-Type: application/x-javascript | clean |
http://www.tabali.cl/carro | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sun, 08 Mar 2015 11:05:57 GMT Pragma: no-cache Location: http://www.tabali.cl/carro/ Server: Apache/2.2.3 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Sat, 26 Jul 1997 05:00:00 GMT Last-Modified: Sun, 08 Mar 2015 11:05:57 GMT Set-Cookie: _icl_current_language=es; expires=Mon, 09-Mar-2015 11:05:57 GMT; path=/ X-Pingback: http://www.tabali.com/xmlrpc.php X-Powered-By: PHP/5.2.10 | clean |
http://www.tabali.cl/carro/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 08 Mar 2015 11:05:58 GMT Pragma: no-cache Location: http://www.tabali.com Server: Apache/2.2.3 (CentOS) Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sun, 08 Mar 2015 11:05:58 GMT Set-Cookie: _icl_current_language=es; expires=Mon, 09-Mar-2015 11:05:59 GMT; path=/ Set-Cookie: PHPSESSID=5croqqvvtu6ske9t3hsvtclve3; path=/ X-Pingback: http://www.tabali.com/xmlrpc.php X-Powered-By: PHP/5.2.10 | clean |
http://www.tabali.com/test404page.js | 404 Not Found Content-Length: 85315 Content-Type: text/html | clean |
http://www.tabali.com/carro | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sun, 08 Mar 2015 11:06:03 GMT Pragma: no-cache Location: http://www.tabali.com/carro/ Server: Apache/2.2.3 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Sat, 26 Jul 1997 05:00:00 GMT Last-Modified: Sun, 08 Mar 2015 11:06:03 GMT Set-Cookie: _icl_current_language=es; expires=Mon, 09-Mar-2015 11:06:03 GMT; path=/ X-Pingback: http://www.tabali.com/xmlrpc.php X-Powered-By: PHP/5.2.10 | clean |
http://www.tabali.com/carro/ | 200 OK Content-Length: 104151 Content-Type: text/html | clean |
http://www.tabali.com/cuenta-de-usuario?INFO | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sun, 08 Mar 2015 11:06:07 GMT Pragma: no-cache Location: http://www.tabali.com/cuenta-de-usuario/?INFO Server: Apache/2.2.3 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Sat, 26 Jul 1997 05:00:00 GMT Last-Modified: Sun, 08 Mar 2015 11:06:07 GMT Set-Cookie: _icl_current_language=es; expires=Mon, 09-Mar-2015 11:06:08 GMT; path=/ X-Pingback: http://www.tabali.com/xmlrpc.php X-Powered-By: PHP/5.2.10 | clean |
http://www.tabali.com/cuenta-de-usuario/?info | 200 OK Content-Length: 93473 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tabali.cl
Result:
GET / HTTP/1.1
Host: tabali.cl
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: tabali.cl
Referer: http://www.google.com/search?q=tabali.cl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tabali.cl
Referer: http://www.google.com/search?q=tabali.cl
Result:
The result is similar to the first query. There are no suspicious redirects found.