Scanned pages/files
Request | Server response | Status |
http://www.wetaskiwintimes.com/ | 200 OK Content-Length: 77854 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: tral Command Twitter feed after it was apparently hacked by people claiming to be Islamic State symp ...[23290 bytes skipped]... r/> </article> <article> <header> <a href="http://www.wetaskiwintimes.com/2015/01/12/us-central-command-twitter-account-hacked" ><img src="http://storage.wetaskiwintimes.com/v1/dynamic_resize/sws_path/suns-prod-images/1297651327718_LARGE_BOX.jpg?quality=80&size=206x&stmp=1421088496321" alt="A computer screenshot shows the U.S. Central Command Twitter feed after it was apparently hacked by people claiming to be Islamic State sympathizers, Jan. 12, 2015. (Reuters)" /></a> <p class="clearfix ur-section-container"> <a href="http://www.wetaskiwintimes.com/news" class="articleCategory " rel="tag" ><span class="ur-section-name">News</span></a> </p> <h1><a href="http://www.wetaskiwintimes.com/2015/01/12/us-central-command-twitter-account-hacked" >U.S. military Twitter account hacked</a>&l ...[72873 bytes skipped]... | ||
http://www.wetaskiwintimes.com/assets/wro/all_en.js?1.13.660c8454acbbb0a45a3dbeccc9fc6025f2ce0dc7-SNAPSHOT | 200 OK Content-Length: 300655 Content-Type: text/javascript | clean |
http://www.googletagservices.com/tag/js/gpt.js | 200 OK Content-Length: 46261 Content-Type: text/javascript | clean |
http://www.google.com/cse/brand?form=cse-search-box&lang=en | 200 OK Content-Length: 2504 Content-Type: text/javascript | clean |
http://widgets.print2webcorp.com/widgetcontent/sm-wetaskiwin-times-featured | HTTP/1.1 301 Moved Permanently Date: Tue, 13 Jan 2015 14:20:29 GMT Location: http://widgets.print2webcorp.com/widgetcontent/sm-wetaskiwin-times-featured/ Server: Microsoft-IIS/7.5 Content-Length: 199 Content-Type: text/html; charset=UTF-8 Access-Control-Allow-Headers: content-type Access-Control-Allow-Origin: * X-Powered-By: ASP.NET | clean |
http://widgets.print2webcorp.com/widgetcontent/sm-wetaskiwin-times-featured/ | 200 OK Content-Length: 11148 Content-Type: application/x-javascript | clean |
http://widgets.print2webcorp.com/model/sunmedia/search/p2w_search_box_wetaskiwin_times.js | 200 OK Content-Length: 932 Content-Type: application/x-javascript | clean |
http://www.wetaskiwintimes.com/newspapers | 200 OK Content-Length: 34947 Content-Type: text/html | clean |
http://www.wetaskiwintimes.com/weather | 200 OK Content-Length: 43915 Content-Type: text/html | clean |
http://www.wetaskiwintimes.com/contact-us?param=advertising | 200 OK Content-Length: 35577 Content-Type: text/html | clean |
http://www.wetaskiwintimes.com/news | 200 OK Content-Length: 68378 Content-Type: text/html | clean |
http://www.wetaskiwintimes.com/sports | 200 OK Content-Length: 62350 Content-Type: text/html | clean |
http://static.eplayer.performgroup.com/flash/js/swfobject.js | 200 OK Content-Length: 10221 Content-Type: application/x-javascript | clean |
http://static.eplayer.performgroup.com/flash/js/performgroup.js | 200 OK Content-Length: 54482 Content-Type: application/x-javascript | clean |
http://www.wetaskiwintimes.com/entertainment | 200 OK Content-Length: 63247 Content-Type: text/html | clean |
http://www.wetaskiwintimes.com/life | 200 OK Content-Length: 64846 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wetaskiwintimes.com
Result:
GET / HTTP/1.1
Host: wetaskiwintimes.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: wetaskiwintimes.com
Referer: http://www.google.com/search?q=wetaskiwintimes.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wetaskiwintimes.com
Referer: http://www.google.com/search?q=wetaskiwintimes.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wetaskiwintimes.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wetaskiwintimes.com/
Result: wetaskiwintimes.com is not infected or malware details are not published yet.
Result: wetaskiwintimes.com is not infected or malware details are not published yet.