Scanned pages/files
Request | Server response | Status |
http://tampa-real-estate.us/ | 200 OK Content-Length: 13341 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By v1ru5 Gr0up <html><head> <meta http-equiv="content-type" content="text/html; charset=windows-1252"> <meta content="text/html; charset=utf-8"> <title>Hacked By v1ru5 Gr0up</title> <link rel="SHORTCUT ICON" href="http://i39.tinypic.com/1z6yuq0.jpg"> <title>Hack__b__</title> <script language="JavaScript">function tb5_makeArray(n){this.length=n;return this.length;} tb5_messages=new tb5_makeArray(4);tb5_messages[0]="Hello Admin !!";tb5_messages[1]="You Are";tb5_messages[2]="Hacked By";tb5_messages[3]="v1ru5 Gr0up";tb5_rptType='infinite';tb5_rptNbr=20 ...[14030 bytes skipped]... | ||
http://tampa-real-estate.us/test404page.js | 404 Not Found Content-Length: 15459 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js?ver=3.8.3 | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://tampa-real-estate.us/wp-content/plugins/workbox-video-from-vimeo-youtube-plugin/jquery.fancybox.js?ver=3.8.3 | 200 OK Content-Length: 36957 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/wp-content/themes/agentpress/lib/js/jquery.flow.1.1.js?ver=1.1 | 200 OK Content-Length: 2961 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.46.0-2013.11.21 | 200 OK Content-Length: 14798 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.6 | 200 OK Content-Length: 7691 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/wp-content/plugins/wp-rss-multi-importer/scripts/show-excerpt.js?ver=3.8.3 | 200 OK Content-Length: 473 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/wp-content/plugins/wp-rss-multi-importer/scripts/jquery.colorbox-min.js?ver=3.8.3 | 200 OK Content-Length: 10996 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/wp-content/plugins/wp-rss-multi-importer/scripts/detect-mobile.js?ver=3.8.3 | 200 OK Content-Length: 2546 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/tampa-real-estate/ | 200 OK Content-Length: 18144 Content-Type: text/html | clean |
http://tampa-real-estate.us/wp-includes/js/comment-reply.min.js?ver=3.8.3 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://tampa-real-estate.us/tampa-real-estate/tampa-homes-for-sale/ | 200 OK Content-Length: 18761 Content-Type: text/html | clean |
http://tampa-real-estate.us/tampa-real-estate/tampa-condos-for-sale/ | 200 OK Content-Length: 18232 Content-Type: text/html | clean |
http://tampa-real-estate.us/tampa-real-estate/tampa-foreclosures/ | 200 OK Content-Length: 18410 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tampa-real-estate.us
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 29 Apr 2014 00:07:04 GMT
Pragma: no-cache
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=476192ba4c7e87174c5b28ec1b127f66; path=/
X-Pingback: http://tampa-real-estate.us/xmlrpc.php
X-Powered-By: PHP/5.4.24
GET / HTTP/1.1
Host: tampa-real-estate.us
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 29 Apr 2014 00:07:04 GMT
Pragma: no-cache
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=476192ba4c7e87174c5b28ec1b127f66; path=/
X-Pingback: http://tampa-real-estate.us/xmlrpc.php
X-Powered-By: PHP/5.4.24
Second query (visit from search engine):
GET / HTTP/1.1
Host: tampa-real-estate.us
Referer: http://www.google.com/search?q=tampa-real-estate.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tampa-real-estate.us
Referer: http://www.google.com/search?q=tampa-real-estate.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tampa-real-estate.us
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tampa-real-estate.us/
Result: tampa-real-estate.us is not infected or malware details are not published yet.
Result: tampa-real-estate.us is not infected or malware details are not published yet.