Scanned pages/files
Request | Server response | Status |
http://therockpubguide.com/ | 200 OK Content-Length: 18594 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by vaceFF1337 ...[151 bytes skipped]... p://www.w3.org/1999/xhtml" xml:lang="en-gb" lang="en-gb" dir="ltr" > <head> <base href="http://therockpubguide.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="generator" content="Joomla! 1.7 - Open Source Content Management" /> <title>Hacked by vaceFF1337</title> <link href="/index.php?format=feed&type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/index.php?format=feed&type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link href="/templates/beez_20/favicon.ico" rel="shortcut icon" type="image/vnd.microsoft.icon" /> <link href="http://therockpubguide.com/index.php/component/search/?format=opensearch ...[21382 bytes skipped]... | ||
http://therockpubguide.com/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: application/x-javascript | clean |
http://therockpubguide.com/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: application/x-javascript | clean |
http://therockpubguide.com/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/x-javascript | clean |
http://therockpubguide.com/media/system/js/mootools-more.js | 200 OK Content-Length: 238128 Content-Type: application/x-javascript | clean |
http://therockpubguide.com/templates/beez_20/javascript/md_stylechanger.js | 200 OK Content-Length: 2104 Content-Type: application/x-javascript | clean |
http://therockpubguide.com/templates/beez_20/javascript/hide.js | 200 OK Content-Length: 7735 Content-Type: application/x-javascript | clean |
http://therockpubguide.com/index.php/sample-sites | 200 OK Content-Length: 13774 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/ | 200 OK Content-Length: 18604 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/getting-started | 200 OK Content-Length: 14452 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/using-joomla | 200 OK Content-Length: 13022 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/using-joomla/extensions | 200 OK Content-Length: 17356 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/using-joomla/ | 200 OK Content-Length: 13023 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/using-joomla/parameters | 200 OK Content-Length: 14572 Content-Type: text/html | clean |
http://therockpubguide.com/index.php/using-joomla/getting-help | 200 OK Content-Length: 13371 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: therockpubguide.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Mon, 27 Jul 2015 07:22:12 GMT
Pragma: no-cache
Server: Apache/2.2.9 (Fedora)
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 7e0d7dba1a48848ad960ce8285e97ae3=t7ndo8lquvqi9ji7bda8pqh8e5; path=/
X-Powered-By: PHP/5.2.6
X-Powered-By: PleskLin
GET / HTTP/1.1
Host: therockpubguide.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Mon, 27 Jul 2015 07:22:12 GMT
Pragma: no-cache
Server: Apache/2.2.9 (Fedora)
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 7e0d7dba1a48848ad960ce8285e97ae3=t7ndo8lquvqi9ji7bda8pqh8e5; path=/
X-Powered-By: PHP/5.2.6
X-Powered-By: PleskLin
Second query (visit from search engine):
GET / HTTP/1.1
Host: therockpubguide.com
Referer: http://www.google.com/search?q=therockpubguide.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: therockpubguide.com
Referer: http://www.google.com/search?q=therockpubguide.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=therockpubguide.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://therockpubguide.com/
Result: therockpubguide.com is not infected or malware details are not published yet.
Result: therockpubguide.com is not infected or malware details are not published yet.