Scanned pages/files
Request | Server response | Status |
http://aiitcollege.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 25 May 2015 00:34:55 GMT Location: http://aiitcollege.org/home Server: Apache Phusion_Passenger/4.0.10 mod_bwlimited/1.4 mod_fcgid/2.3.9 Content-Length: 235 Content-Type: text/html; charset=iso-8859-1 | clean |
http://aiitcollege.org/home | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 25 May 2015 00:34:56 GMT Location: http://aiitcollege.org/home/ Server: Apache Phusion_Passenger/4.0.10 mod_bwlimited/1.4 mod_fcgid/2.3.9 Content-Length: 236 Content-Type: text/html; charset=iso-8859-1 | clean |
http://aiitcollege.org/home/ | 200 OK Content-Length: 12241 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Hexlook ...[12026 bytes skipped]... <div style="z-index: 830;" id="update_content" > <br/> <div class="our-mission" style="height:400px;"> <a href="news.php"><div style="color:#2A8FAD; font-weight:bold;text-align:left; margin:15px;"><table style="width: 100%; height: 40%;"> <tbody> <tr> <td align="center"> <div class="line1"><span><strong>Hacked by Hexlook</strong></span></div> <div class="line1"><span> </span></div> <div class="line2"><strong><span><span style="color</div></a><div style="text-align:left; margin:15px;">2015-04-21</div><div style="text-align:left; margin:15px;"><table style="width: 100%; height: 40%;"> <tbody></div><a href="news.php"><div style="color:#2A8FAD; font-wei ...[2824 bytes skipped]... | ||
http://aiitcollege.org/home/jquery-latest.pack.js | 404 Not Found Content-Length: 343 Content-Type: text/html | clean |
http://aiitcollege.org/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://aiitcollege.org/jcarousellite_1.0.1c4.js | 404 Not Found Content-Length: 341 Content-Type: text/html | clean |
http://aiitcollege.org/js/jquery-1.3.1.min.js | 404 Not Found Content-Length: 339 Content-Type: text/html | clean |
http://aiitcollege.org/scripts/mainnav.js | 404 Not Found Content-Length: 335 Content-Type: text/html | clean |
http://aiitcollege.org/js/jquery-1.2.3.pack.js | 404 Not Found Content-Length: 340 Content-Type: text/html | clean |
http://aiitcollege.org/js/jquery.fancybox-1.0.0.js | 404 Not Found Content-Length: 344 Content-Type: text/html | clean |
http://aiitcollege.org/scripts/js | 404 Not Found Content-Length: 327 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aiitcollege.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 25 May 2015 00:34:55 GMT
Location: http://aiitcollege.org/home
Server: Apache Phusion_Passenger/4.0.10 mod_bwlimited/1.4 mod_fcgid/2.3.9
Content-Length: 235
Content-Type: text/html; charset=iso-8859-1
...235 bytes of data.
GET / HTTP/1.1
Host: aiitcollege.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 25 May 2015 00:34:55 GMT
Location: http://aiitcollege.org/home
Server: Apache Phusion_Passenger/4.0.10 mod_bwlimited/1.4 mod_fcgid/2.3.9
Content-Length: 235
Content-Type: text/html; charset=iso-8859-1
...235 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: aiitcollege.org
Referer: http://www.google.com/search?q=aiitcollege.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aiitcollege.org
Referer: http://www.google.com/search?q=aiitcollege.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aiitcollege.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://aiitcollege.org/
Result: aiitcollege.org is not infected or malware details are not published yet.
Result: aiitcollege.org is not infected or malware details are not published yet.