Scanned pages/files
Request | Server response | Status |
http://adrcongressindia.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 18 Jun 2015 22:05:01 GMT Location: http://www.adrcongressindia.com/ Server: Apache Vary: Accept-Encoding Content-Length: 240 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.adrcongressindia.com/ | 200 OK Content-Length: 3375 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by KaSHI HaXor <html>
<LINK rel="SHORTCUT ICON" href="https://dl.dropboxusercontent.com/s/629pxpl69h9w8yk/PK_KASHI_HAXOR.png"> <head> <!-- I Miss You AlV33NA --> <title>Hacked by KaSHI HaXor</title> <script type='text/javascript'> var DADrightclicktheme = 'Dark'; var DADrightclickimage = 'https://dl.dropboxusercontent.com/s/629pxpl69h9w8yk/PK_KASHI_HAXOR.png'; </script> <script src="http://ajax.googleapis.com/ajax/libs/jquery/1.3.1/jquery.min.js" type="text/javascript"></script> <link rel="stylesheet" type="text/css" media="all" href="https://dl.dropb ...[3393 bytes skipped]... | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.3.1/jquery.min.js | 200 OK Content-Length: 55272 Content-Type: text/javascript | clean |
https://dl.dropboxusercontent.com/s/kfzqo7bhjyt7qay/codjs.js | 200 OK Content-Length: 3225 Content-Type: application/javascript | clean |
http://adrcongressindia.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 18 Jun 2015 22:05:04 GMT Location: http://www.adrcongressindia.com/test404page.js Server: Apache Vary: Accept-Encoding Content-Length: 254 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.adrcongressindia.com/test404page.js | 403 Forbidden Content-Length: 335 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: adrcongressindia.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 18 Jun 2015 22:05:01 GMT
Location: http://www.adrcongressindia.com/
Server: Apache
Vary: Accept-Encoding
Content-Length: 240
Content-Type: text/html; charset=iso-8859-1
...240 bytes of data.
GET / HTTP/1.1
Host: adrcongressindia.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 18 Jun 2015 22:05:01 GMT
Location: http://www.adrcongressindia.com/
Server: Apache
Vary: Accept-Encoding
Content-Length: 240
Content-Type: text/html; charset=iso-8859-1
...240 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: adrcongressindia.com
Referer: http://www.google.com/search?q=adrcongressindia.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: adrcongressindia.com
Referer: http://www.google.com/search?q=adrcongressindia.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=adrcongressindia.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://adrcongressindia.com/
Result: adrcongressindia.com is not infected or malware details are not published yet.
Result: adrcongressindia.com is not infected or malware details are not published yet.