Scanned pages/files
Request | Server response | Status |
http://www.5dht.com/ | HTTP/1.1 200 OK Date: Tue, 26 May 2015 06:59:56 GMT Accept-Ranges: bytes ETag: "eef9b89ab096d01:3f0b0" Server: Microsoft-IIS/6.0 Content-Length: 98876 Content-Location: http://www.5dht.com/index.html Content-Type: text/html Last-Modified: Mon, 25 May 2015 06:04:04 GMT X-Powered-By: ASP.NET | clean |
http://www.5dht.com/index.html | 200 OK Content-Length: 98876 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By X4ca QQ88970885 ...[454 bytes skipped]... ; <div style="text-align:center"> <IMG style="FILTER: Alpha(opacity=0,finishopacity=100,style=1)" src="http://www.grabsun.com/uploads/images/201207-0/r_5790106.jpg" width=650> <P><FONT style="FONT-FAMILY: Comic Sans MS; FONT-SIZE: 18px"><STRONG>»Ã¿Í°²È«Ð¡×é <P><FONT style="FONT-FAMILY: Comic Sans MS; FONT-SIZE: 18px"><STRONG> Hacked By X4ca QQ88970885 <P><FONT style="FONT-FAMILY: Comic Sans MS; FONT-SIZE: 18px"><STRONG> Hacked By µÛ·ç QQ1287820034 <P><FONT style="FONT-FAMILY: Comic Sans MS; FONT-SIZE: 18px"><STRONG> Hacked By СÁú QQ2472428419 <P><FONT style="FONT-FAMILY: Comic Sans MS; FONT-SIZE: 18px"><STRONG>I come from the future network£¡ <P><FONT style="FONT-FAMILY: Comic Sans MS; FONT-SIZE: 18px"><STRONG>You have your ...[116534 bytes skipped]... | ||
http://www.5dht.com/ttp://www.jndsb.net/xjdb/ | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.5dht.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 5dht.com
Result:
GET / HTTP/1.1
Host: 5dht.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 5dht.com
Referer: http://www.google.com/search?q=5dht.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 5dht.com
Referer: http://www.google.com/search?q=5dht.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=5dht.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://5dht.com/
Result: 5dht.com is not infected or malware details are not published yet.
Result: 5dht.com is not infected or malware details are not published yet.