Scanned pages/files
Request | Server response | Status |
http://www.tumba.co.il/ | 200 OK Content-Length: 23950 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Hannaichi ...[7757 bytes skipped]... -wrapper"> <div id="hornav"> <ul class="menu" id="moomenu"> <li class="item-101 current active"><a href="/" >ר×ש×</a></li><li class="item-103 deeper parent"><a href="/index.php/2014-02-25-04-14-03" >××××ת×× ×</a><ul><li class="item-126"><a href="/index.php/2014-02-25-04-14-03/hacked-by-hannaichi" >Hacked by Hannaichi</a></li></ul></li><li class="item-106 deeper parent"><a href="/index.php/ש×ר×ת××" >ש×ר×ת××</a><ul><li class="item-110"><a href="/index.php/ש×ר×ת××/×××רת-××ר××¢××" >×××רת ××ר××¢××</a></li><li class="item-104"><a href="/index.php/ש×ר×ת××/ת××ר×" >ת××רת ×××</a></li><li class="item-124"><a href="/index.php/ש×× ...[20528 bytes skipped]... | ||
http://www.tumba.co.il/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: application/javascript | clean |
http://www.tumba.co.il/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: application/javascript | clean |
http://www.tumba.co.il/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/javascript | clean |
http://www.tumba.co.il/media/system/js/mootools-more.js | 200 OK Content-Length: 238128 Content-Type: application/javascript | clean |
http://www.tumba.co.il/modules/mod_yj_pop_login/src/yj_login_pop.js | 200 OK Content-Length: 1416 Content-Type: application/javascript | clean |
http://www.tumba.co.il/media/system/js/validate.js | 200 OK Content-Length: 2923 Content-Type: application/javascript | clean |
http://www.tumba.co.il/modules/mod_1901contact/mod_1901contact.js | 200 OK Content-Length: 118 Content-Type: application/javascript | clean |
http://www.tumba.co.il/modules/mod_briaskISS/mod_briaskISS.js | 200 OK Content-Length: 3393 Content-Type: application/javascript | clean |
http://www.tumba.co.il/templates/joomlage0037-cushion/js/jscolor/jscolor.js | 200 OK Content-Length: 23538 Content-Type: application/javascript | clean |
http://www.tumba.co.il/templates/joomlage0037-cushion/js/UvumiDropdown.js | 200 OK Content-Length: 5334 Content-Type: application/javascript | clean |
http://www.tumba.co.il/templates/joomlage0037-cushion/js/jquery-1.3.2.js | 200 OK Content-Length: 120619 Content-Type: application/javascript | clean |
http://www.tumba.co.il/modules/mod_s5_newsticker/s5_newsticker/fader.js | 200 OK Content-Length: 1889 Content-Type: application/javascript | clean |
http://www.tumba.co.il/modules/mod_s5_newsticker/s5_newsticker/timing.js | 200 OK Content-Length: 5661 Content-Type: application/javascript | clean |
http://www.tumba.co.il/index.php | 200 OK Content-Length: 23968 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tumba.co.il
Result:
GET / HTTP/1.1
Host: tumba.co.il
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: tumba.co.il
Referer: http://www.google.com/search?q=tumba.co.il
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tumba.co.il
Referer: http://www.google.com/search?q=tumba.co.il
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tumba.co.il
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tumba.co.il/
Result: tumba.co.il is not infected or malware details are not published yet.
Result: tumba.co.il is not infected or malware details are not published yet.