Scanned pages/files
Request | Server response | Status |
http://all-around-you-gmbh.com/ | 200 OK Content-Length: 3145 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: [ Hacked by ./RyGhost ] ...[569 bytes skipped]... />msg = " + msg;pos = 0; function scrollMSG() { document.title = msg.substring(pos, msg.length) + msg.substring(0, pos); pos++; if (pos > msg.length) pos = 0 window.setTimeout("scrollMSG()",80); } scrollMSG(); //]]></script> <meta name="author" content="unknown" /> <meta name="keywords" content="unknown" /> <meta name="description" content="[ Hacked by ./RyGhost ]" /> <FONT COLOR="red"><marquee behavior="scroll" direction="left" scrollamount="100" scrolldelay="40" width="100%"> _____________________________________ </marquee> <br></br> <div style="font-family: Deathknell;font-size: 40px;" class="lol">Hacked by ./RyGhost</div> <FONT COLOR="white"><marquee behavior="scroll" direction="right" scrollamount="100" scrolldelay="40" width="100%"> ______________ ...[2268 bytes skipped]... | ||
http://tuyulz-blogspot.googlecode.com/files/Anti%20Klik.js | 200 OK Content-Length: 2027 Content-Type: text/plain | clean |
http://tuyulz-blogspot.googlecode.com/files/ | 404 Not Found Content-Length: 1431 Content-Type: text/html | clean |
http://tuyulz-blogspot.googlecode.com//www.google.com/ | 404 Not Found Content-Length: 1425 Content-Type: text/html | clean |
http://tuyulz-blogspot.googlecode.com/test404page.js | 404 Not Found Content-Length: 1439 Content-Type: text/html | clean |
http://cayunkatel.googlecode.com/files/rainbows.js | 200 OK Content-Length: 2042 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: all-around-you-gmbh.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 24 Apr 2014 22:40:05 GMT
Server: Apache/2.2.26 (Unix)
Content-Type: text/html
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: all-around-you-gmbh.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 24 Apr 2014 22:40:05 GMT
Server: Apache/2.2.26 (Unix)
Content-Type: text/html
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: all-around-you-gmbh.com
Referer: http://www.google.com/search?q=all-around-you-gmbh.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: all-around-you-gmbh.com
Referer: http://www.google.com/search?q=all-around-you-gmbh.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=all-around-you-gmbh.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://all-around-you-gmbh.com/
Result: all-around-you-gmbh.com is not infected or malware details are not published yet.
Result: all-around-you-gmbh.com is not infected or malware details are not published yet.