Scanned pages/files
Request | Server response | Status |
http://wiremie.com/ | 200 OK Content-Length: 52342 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by HolaKo ...[2321 bytes skipped]... nt,_plugins,_contact-form-7,_includes,_css,_styles.css,qver==4.1+wp-includes,_css,_dashicons.min.css,qver==4.1.5+wp-content,_plugins,_my-calendar,_styles,_my-calendar.css,qver==4.1.5+wp-content,_plugins,_revslider,_rs-plugin,_css,_settings.css,qver==4.1.5.pagespeed.cc.gIl-FTQEuW.css"/> <style><body style='color: transparent;background-color: black'><center><h1><b style='color: white'>Hacked by HolaKo<p style='color: transparent'><title>Hacked By HolaKo</title></style> <link rel="stylesheet" href="http://fonts.googleapis.com/css?family=Source+Sans+Pro%3A300%2C400%2C600%2C700%2C300italic%2C400italic%2C600italic%2C700italic&subset=latin%2Clatin-ext&ver=4.1.5"> <link rel="stylesheet" href="http://wiremie.com/wireonline/wp-content/themes/Glider/assets/css/foundation.min.css"> <link rel="stylesheet" href="ht ...[60449 bytes skipped]... | ||
https://www.google.com/jsapi?ver=4.1.5 | 200 OK Content-Length: 24559 Content-Type: text/javascript | clean |
http://wiremie.com/wireonline/wp-includes/js/jquery/jquery.js,qver=1.11.1.pagespeed.jm.z9hb-Gxqf6.js | 200 OK Content-Length: 95719 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-includes,_js,_jquery,_jquery-migrate.min.js,,qver==1.2.1,Mjm.mhpNjdU8Wl.js+wp-content,_plugins,_LayerSlider,_js,_layerslider.kreaturamedia.jquery.js,,qver==4.6.0,Mjm.Tf4g-nJqVT.js+wp-content,_plugins,_LayerSlider,_js,_jquery-easing-1.3.js,,qver==1.3.0,Mjm.XX8sV248ZD.js+wp-content,_plugins,_LayerSlider,_js,_jquerytransit.js,,qver==0.9.9,Mjm.h0qshSNZ1Q.js+wp-content, <span>...111 symbols skipped</span> | 200 OK Content-Length: 92593 Content-Type: application/javascript | clean |
http://wiremie.com/wireonline/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.1.5 | 200 OK Content-Length: 81124 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content/plugins/LayerSlider/js/layerslider.kreaturamedia.jquery.js,,qver==4.6.0,Mjm.Tf4g-nJqVT.js+jquery-easing-1.3.js,,qver==1.3.0,Mjm.XX8sV248ZD.js+jquerytransit.js,,qver==0.9.9,Mjm.h0qshSNZ1Q.js.pagespeed.jc.ELYI9TYsIt.js | 200 OK Content-Length: 62224 Content-Type: application/javascript | clean |
http://wiremie.com/wireonline/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js,qver=3.51.0-2014.06.20.pagespeed.jm.RVBOol6lkO.js | 200 OK Content-Length: 14900 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content/plugins/contact-form-7/includes/js/scripts.js,qver=4.1.pagespeed.jm.7c5clWJpM3.js | 200 OK Content-Length: 9341 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content/themes/Glider/assets/js/foundation.min.js.pagespeed.jm.C0-zglZI7-.js | 200 OK Content-Length: 70297 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content/themes/Glider/assets/js/animation.js.pagespeed.jm.adTuhQ32xR.js | 200 OK Content-Length: 10198 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content/themes/Glider/assets/js/jquery.nicescroll.min.js | 200 OK Content-Length: 58793 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content/themes/Glider/assets/js/app.js.pagespeed.jm.2bRk1Q0TxH.js | 200 OK Content-Length: 5263 Content-Type: application/x-javascript | clean |
http://wiremie.com/wireonline/wp-content,_themes,_Glider,_assets,_js,_gmap3.min.js,Mjm.divl7lNWK3.js+wp-includes,_js,_jquery,_jquery.color.min.js,,qver==2.1.1,Mjm.-izXfwwidU.js+wp-content,_plugins,_js_composer,_assets,_lib,_flexslider,_jquery.flexslider-min.js,,qver==3.6.7,Mjm.9xodPRgdnH.js+wp-content,_plugins,_js_composer,_assets,_lib,_prettyphoto,_js,_jquery.prettyPhoto.js,,qver==3.6.7,Mjm.CGeQQ <span>...133 symbols skipped</span> | 200 OK Content-Length: 81130 Content-Type: application/javascript | clean |
http://wiremie.com/wireonline/wp-content/plugins/js_composer/assets/js/js_composer_front.js?ver=3.6.7 | 200 OK Content-Length: 19016 Content-Type: application/x-javascript | clean |
http://wiremie.com/tokusyu/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wiremie.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0, no-cache
Connection: close
Date: Sat, 16 May 2015 05:30:54 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 52342
Content-Type: text/html; charset=UTF-8
Link: <http://wiremie.com/>; rel=shortlink
X-Mod-Pagespeed: Powered By mod_pagespeed
X-Pingback: http://wiremie.com/wireonline/xmlrpc.php
...52342 bytes of data.
GET / HTTP/1.1
Host: wiremie.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0, no-cache
Connection: close
Date: Sat, 16 May 2015 05:30:54 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 52342
Content-Type: text/html; charset=UTF-8
Link: <http://wiremie.com/>; rel=shortlink
X-Mod-Pagespeed: Powered By mod_pagespeed
X-Pingback: http://wiremie.com/wireonline/xmlrpc.php
...52342 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: wiremie.com
Referer: http://www.google.com/search?q=wiremie.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wiremie.com
Referer: http://www.google.com/search?q=wiremie.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wiremie.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wiremie.com/
Result: wiremie.com is not infected or malware details are not published yet.
Result: wiremie.com is not infected or malware details are not published yet.