Scanned pages/files
Request | Server response | Status |
http://www.uwinsurance.com/ | 200 OK Content-Length: 12312 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4APA-center+AD4APA-h1+AD4 Hacked by Kosova Warriors Group +ADw-h1+AD4APA-center+AD4 ...[67 bytes skipped]... ie ie7" lang="en-US"> <![endif]--> <!--[if IE 8]> <html class="ie ie8" lang="en-US"> <![endif]--> <!--[if !(IE 7) | !(IE 8) ]><!--> <html lang="en-US"> <!--<![endif]--> <head> <meta charset="UTF-7"> <meta name="viewport" content="width=device-width"> <title>+ADw-/title+AD4APA-center+AD4APA-h1+AD4 Hacked by Kosova Warriors Group +ADw-h1+AD4APA-center+AD4 +ADw-center+AD4APA-h5+AD4 Misteriozi Pirat - UnikBaba - c0ldDA3M0N +ADw-h5+AD4APA-center+AD4 +ADw-center+AD4APA-h6+AD4 We Are Albania Hackers, Nothing can stop us, only Allah +ADw-h6+AD4APA-center+AD4 +ADw-center+AD4APA-p align+AD0AIg-center+ACIAPgA8-img border+AD0AIg-0+ACI src+AD0AIg-http://condition1industries.com/images/AlbanianEagle01.gif+ACIAPgA8-/p+AD4APA-center+AD4 +ADw-center+AD4APA-iframe ...[12821 bytes skipped]... | ||
http://www.uwinsurance.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://www.uwinsurance.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.uwinsurance.com/wp-content/themes/twentyfourteen/js/functions.js?ver=20131209 | 200 OK Content-Length: 3380 Content-Type: application/javascript | clean |
http://www.uwinsurance.com/?page_id=2 | 200 OK Content-Length: 16241 Content-Type: text/html | clean |
http://www.uwinsurance.com/wp-includes/js/comment-reply.min.js?ver=3.8.3 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://www.uwinsurance.com/wp-admin/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 12 May 2014 06:23:07 GMT Pragma: no-cache Location: http://www.uwinsurance.com/wp-login.php?redirect_to=http%3A%2F%2Fwww.uwinsurance.com%2Fwp-admin%2F&reauth=1 Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Powered-By: PHP/5.4.28 | clean |
http://www.uwinsurance.com/wp-login.php?redirect_to=http%3a%2f%2fwww.uwinsurance.com%2fwp-admin%2f&reauth=1 | 200 OK Content-Length: 6398 Content-Type: text/html | clean |
http://www.uwinsurance.com/wp-login.php?action=lostpassword | 200 OK Content-Length: 6043 Content-Type: text/html | clean |
http://www.uwinsurance.com/wp-login.php | 200 OK Content-Length: 6398 Content-Type: text/html | clean |
http://www.uwinsurance.com/test404page.js | 200 OK Content-Length: 570 Content-Type: text/html | clean |
http://www.uwinsurance.com/?p=1 | 200 OK Content-Length: 17280 Content-Type: text/html | clean |
http://www.uwinsurance.com/?author=1 | 200 OK Content-Length: 13714 Content-Type: text/html | clean |
http://www.uwinsurance.com/?p=1&replytocom=1 | 200 OK Content-Length: 17347 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: uwinsurance.com
Result:
GET / HTTP/1.1
Host: uwinsurance.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: uwinsurance.com
Referer: http://www.google.com/search?q=uwinsurance.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: uwinsurance.com
Referer: http://www.google.com/search?q=uwinsurance.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=uwinsurance.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://uwinsurance.com/
Result: uwinsurance.com is not infected or malware details are not published yet.
Result: uwinsurance.com is not infected or malware details are not published yet.