Scanned pages/files
Request | Server response | Status |
http://yourvitiligoresource.com/ | 200 OK Content-Length: 7804 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4-HACKED BY +AD4-tmp9dEplN +AHw ant07alya +ADw TURKHACKTEAM// +ADw TURKHACKTEAM//+ <!DOCTYPE html> <html lang="en-US"> <head> <meta charset="UTF-7" /> <title>+ADw-/title+AD4-HACKED BY +AD4-tmp9dEplN +AHw ant07alya +ADw TURKHACKTEAM// +ADw TURKHACKTEAM//+ADw-DIV style+AD0AIg-DISPLAY: none+ACIAPgA8-xmp+AD4-</title> <!-- Created by Artisteer v4.1.0.59861 --> <meta name="viewport" content="initial-scale = 1.0, maximum-scale = 1.0, user-scalable = no, width = device-width"> <!--[if lt IE 9]><script src="https://html5shiv.googlecode.com/svn/trunk/html5.js"></script><![endif]--> <link r ...[8484 bytes skipped]... | ||
http://yourvitiligoresource.com/wp-content/themes/green1/jquery.js?ver=3.5.1 | 200 OK Content-Length: 92792 Content-Type: application/javascript | clean |
http://yourvitiligoresource.com/backfin.js?ver=3.5.1 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://yourvitiligoresource.com/test404page.js | 404 Not Found Content-Length: 5225 Content-Type: text/html | clean |
http://yourvitiligoresource.com/wp-content/themes/green1/script.js?ver=3.5.1 | 200 OK Content-Length: 43960 Content-Type: application/javascript | clean |
http://yourvitiligoresource.com/wp-content/themes/green1/script.responsive.js?ver=3.5.1 | 200 OK Content-Length: 15433 Content-Type: application/javascript | clean |
http://yourvitiligoresource.com/site-map/ | 200 OK Content-Length: 158569 Content-Type: text/html | clean |
http://yourvitiligoresource.com/wp-includes/js/comment-reply.min.js?ver=3.5.1 | 200 OK Content-Length: 786 Content-Type: application/javascript | clean |
http://yourvitiligoresource.com/site-map/2/ | 200 OK Content-Length: 160237 Content-Type: text/html | clean |
http://yourvitiligoresource.com/site-map/3/ | 200 OK Content-Length: 158632 Content-Type: text/html | clean |
http://yourvitiligoresource.com/site-map/4/ | 200 OK Content-Length: 159942 Content-Type: text/html | clean |
http://yourvitiligoresource.com/site-map/5/ | 200 OK Content-Length: 159563 Content-Type: text/html | clean |
http://yourvitiligoresource.com/site-map/6/ | 200 OK Content-Length: 160194 Content-Type: text/html | clean |
http://yourvitiligoresource.com/site-map/7/ | 200 OK Content-Length: 159002 Content-Type: text/html | clean |
http://yourvitiligoresource.com/site-map/8/ | 200 OK Content-Length: 160430 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yourvitiligoresource.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 26 Dec 2015 22:40:33 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Ngpass_ngall: 1
Set-Cookie: PHPSESSID=d57902d0c128147ff425e881093bcac3; path=/
X-Pingback: http://yourvitiligoresource.com/xmlrpc.php
GET / HTTP/1.1
Host: yourvitiligoresource.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 26 Dec 2015 22:40:33 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Ngpass_ngall: 1
Set-Cookie: PHPSESSID=d57902d0c128147ff425e881093bcac3; path=/
X-Pingback: http://yourvitiligoresource.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: yourvitiligoresource.com
Referer: http://www.google.com/search?q=yourvitiligoresource.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yourvitiligoresource.com
Referer: http://www.google.com/search?q=yourvitiligoresource.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yourvitiligoresource.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yourvitiligoresource.com/
Result: yourvitiligoresource.com is not infected or malware details are not published yet.
Result: yourvitiligoresource.com is not infected or malware details are not published yet.