Scanned pages/files
Request | Server response | Status |
http://alfen.fi/ | 200 OK Content-Length: 5133 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://www.youtube.com/embed/ewt0j3q4cyy?autoplay=1&loop=1 <iframe width="0" height="0" src="http://www.youtube.com/embed/ewt0j3q4cyy?autoplay=1&loop=1" frameborder="0"> Deface/Content modification. The following signature was found: HaCked by x.An0nPH ...[1542 bytes skipped]... z-index: 12; } .greenBox { padding-left: 5px; position: absolute; height:30px; border: 2px solid #28FE14; z-index: 10; } .picz { position: absolute; width:600px; height:200%; display:none; right:2px; top:2px; } </style> </head> </font> </center> </body> <title>HaCked by x.An0nPH</title> <center><img src="http://www.crossed-flag-pins.com/animated-flag-gif/gifs/Philippines_240-animated-flag-gifs.gif"></center> <center><IMG border=0 src="http://i.imgur.com/KikD9Hh.gif" onselectstart="return false;" ondragstart="return false;"> <br> <center><img src="http://oi44.tinypic.com/k2my3b.jpg height="320" width="320"></center> <b><center><font size ...[4020 bytes skipped]... | ||
http://alfen.fi/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: alfen.fi
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 28 Jun 2014 05:50:43 GMT
Server: WisePanel Web Server
Content-Type: text/html
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: alfen.fi
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 28 Jun 2014 05:50:43 GMT
Server: WisePanel Web Server
Content-Type: text/html
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: alfen.fi
Referer: http://www.google.com/search?q=alfen.fi
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: alfen.fi
Referer: http://www.google.com/search?q=alfen.fi
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=alfen.fi
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://alfen.fi/
Result: alfen.fi is not infected or malware details are not published yet.
Result: alfen.fi is not infected or malware details are not published yet.