Scanned pages/files
Request | Server response | Status |
http://adpluspr.com/ | 200 OK Content-Length: 3090 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: ---=={*Hacked By DZ-Z3R0*}==--- <html> <head> <title>---=={*Hacked By DZ-Z3R0*}==---</title> <script language="JavaScript"> var message="---=={*Hacked By DZ-Z3R0*}==---" var message=message+" " i="0" var temptitle="" var speed="100" function titler() { if (!document.all&&!document.getElementById) return document.title=temptitle+message.charAt(i) temptitle=temp ...[3408 bytes skipped]... | ||
http://adpluspr.com/test404page.js | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://adpluspr.com//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: adpluspr.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Fri, 26 Jun 2015 00:46:01 GMT
Accept-Ranges: bytes
Age: 204
ETag: "c12-4a011fd3fd730"
Server: Apache/2
Content-Length: 3090
Content-Type: text/html
Expires: Fri, 26 Jun 2015 01:42:37 GMT
Last-Modified: Mon, 04 Apr 2011 06:37:10 GMT
...3090 bytes of data.
GET / HTTP/1.1
Host: adpluspr.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Fri, 26 Jun 2015 00:46:01 GMT
Accept-Ranges: bytes
Age: 204
ETag: "c12-4a011fd3fd730"
Server: Apache/2
Content-Length: 3090
Content-Type: text/html
Expires: Fri, 26 Jun 2015 01:42:37 GMT
Last-Modified: Mon, 04 Apr 2011 06:37:10 GMT
...3090 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: adpluspr.com
Referer: http://www.google.com/search?q=adpluspr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: adpluspr.com
Referer: http://www.google.com/search?q=adpluspr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=adpluspr.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://adpluspr.com/
Result: adpluspr.com is not infected or malware details are not published yet.
Result: adpluspr.com is not infected or malware details are not published yet.