Scanned pages/files
Request | Server response | Status |
http://thefoxgroupinc.com/ | 200 OK Content-Length: 18043 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Aftemelouchos ...[9046 bytes skipped]... <div class="componentheading"> Home</div> <table class="blog" cellpadding="0" cellspacing="0"> <tr> <td valign="top"> <div> <table class="contentpaneopen"> <tr> <td valign="top" colspan="2"> <div class="aWrapper"><span style="line-height: normal; font-size: medium">Hacked by Aftemelouchos</span><span style="font-size: medium; line-height: normal">Hacked by Aftemelouchos</span><span style="font-size: medium; line-height: normal">Hacked by Aftemelouchos</span><span style="font-size: medium; line-height: normal">Hacked by Aftemelouchos</span><span style="font-size: medium; line-height: normal">Hacked by Aftemelouchos</span><span style="font-size: medium; line-height: normal">Hacked by Aftemelouchos ...[11726 bytes skipped]... | ||
http://thefoxgroupinc.com/media/system/js/caption.js | 200 OK Content-Length: 1837 Content-Type: application/javascript | clean |
http://thefoxgroupinc.com/templates/kj_dj/js/swfobject.js | 200 OK Content-Length: 6880 Content-Type: application/javascript | clean |
http://thefoxgroupinc.com/modules/mod_kjdj_dropdown/tmpl/dropdowntabs.js | 200 OK Content-Length: 7031 Content-Type: application/javascript | clean |
http://thefoxgroupinc.com/index.php?option=com_content&task=view&id=91&Itemid=86 | 200 OK Content-Length: 9048 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=frontpage&Itemid=93 | 200 OK Content-Length: 18155 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=62&Itemid=34 | 200 OK Content-Length: 12472 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&task=view&id=49&Itemid=86 | 200 OK Content-Length: 10383 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=56&Itemid=55 | 200 OK Content-Length: 13314 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=57&Itemid=56 | 200 OK Content-Length: 12963 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=58&Itemid=58 | 200 OK Content-Length: 12034 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=88&Itemid=59 | 200 OK Content-Length: 16291 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=61&Itemid=101 | 200 OK Content-Length: 12611 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=70&Itemid=65 | 200 OK Content-Length: 13179 Content-Type: text/html | clean |
http://thefoxgroupinc.com/index.php?option=com_content&view=article&id=72&Itemid=66 | 200 OK Content-Length: 15053 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: thefoxgroupinc.com
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Tue, 14 Jul 2015 17:42:05 GMT
Pragma: no-cache
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 14 Jul 2015 17:42:05 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 99c6c21d3f86ef00afec4bd3fda25ae4=629e0af41d9c9b6a23f891f37634425e; path=/
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: thefoxgroupinc.com
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Tue, 14 Jul 2015 17:42:05 GMT
Pragma: no-cache
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 14 Jul 2015 17:42:05 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 99c6c21d3f86ef00afec4bd3fda25ae4=629e0af41d9c9b6a23f891f37634425e; path=/
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: thefoxgroupinc.com
Referer: http://www.google.com/search?q=thefoxgroupinc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: thefoxgroupinc.com
Referer: http://www.google.com/search?q=thefoxgroupinc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=thefoxgroupinc.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://thefoxgroupinc.com/
Result: thefoxgroupinc.com is not infected or malware details are not published yet.
Result: thefoxgroupinc.com is not infected or malware details are not published yet.