Scanned pages/files
Request | Server response | Status |
http://ambitholdings.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: private Date: Mon, 12 Jan 2015 13:45:26 GMT Location: http://www.ambitholdings.com/AmbitSite/Ambit_Group/Overview.aspx?GId=1&MId=127&PId=0 Server: Microsoft-IIS/6.0 Content-Length: 0 X-Powered-By: ASP.NET | clean |
http://www.ambitholdings.com/ambitsite/ambit_group/overview.aspx?gid=1&mid=127&pid=0 | 200 OK Content-Length: 83642 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY ORIONSHUNTER OF BBHH ...[61536 bytes skipped]... <span id="ctl00_lblNews"><p><a href='http://www.ambitholdings.com/AmbitAdmin/Upload/OB January 7 Pg 104 - 108.pdf' target='_blank' class='newstext2'>January 8, 2015<br>My best pick</a> </p><p><a href='/AmbitSite/ContentDescription.aspx?CId=9260' class='newstext2'>December 17, 2014<br>HACKED BY ORIONSHUNTER OF BBHH</a> </p><p><a href='http://www.ambitholdings.com/AmbitAdmin/Upload/HBL December 15 Pg 17.pdf' target='_blank' class='newstext2'>December 15, 2014<br>Chaos Theory</a> </p></span> <span id="ctl00_lblMoreArchive" alt="Archive" title="Archive"><a href='/AmbitSite/ContentDetails.aspx?DId=1&CId=1&More=1'><u>More> ...[32963 bytes skipped]... | ||
http://www.ambitholdings.com/Ambitsite/js/Ajax.js | 200 OK Content-Length: 15803 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/Ambitsite/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72328 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/Ambitsite/js/common.js | 200 OK Content-Length: 408 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/Ambitsite/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8328 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/AmbitSite/js/navigation.js | 200 OK Content-Length: 1732 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/WebResource.axd?d=khIwD5L_jO8p0wHmjbiPx9B1KN1R30vnrl_vGDg4EMhqghHeXUfFVMmyI22x5GX4TXCvgUc5GwrHlarGdAyg06b5JMw1&t=635535546648416857 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/ScriptResource.axd?d=3BTVOnyd32MS1hdpPPnUu0TDwrZTs8igXWbyXuc56SzgqKhDD41r1Z14-aFr03nhvpBNYxVUlMZEi15UjJmd5LMFKzlKovo7Tlz6SqUmrxa7d9LNta0OOHEEcp-zcdtACrBMHpgn4Pn5Seqj6ADjHDMZcq01&t=635535546648416857 | 200 OK Content-Length: 21618 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/ScriptResource.axd?d=eFDBEDcz4AShQQgJZ6G3nizLW-KPdkw4WyNxAJISeSr9P14GFrreCUOImG-o4F-w6noo5Xkkaa0qn5KCNb0c3rQkz_l6ViSZp4Yz4AfQ00AcYSiPHQ00h_jQm5H8_VA86nLrYbs-oyjkbnpPG3Nrqa0b639Ncw2sw1O7DCNaK_QHm-Fc0&t=634369404006562500 | 200 OK Content-Length: 260386 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/ScriptResource.axd?d=qlnm_pdjdZTdo-uZgNh7vo4Xsczib49LGQ6UQNdZuVJIiznKXfUxP6rUyGRDVfAot3Kf3vw-Gf4SqQUP2rBAs4uUrDBqnZvRry6b5xtDUf8hMeJQX_R-JgjQkIg32OJFhka3q_pBm57wVrE537hmDwYxKteAP5QQ-XhpZGIZ8Br3x1ZI0&t=634369404006562500 | 200 OK Content-Length: 65868 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/WebResource.axd?d=y8cqNXKU8EILCTX1aq0vCyZebT4B7JtMQIQTPB59T1qTl2MS9lxfd4_ZiFZQMTvbG-HdcLTOtFD7CuOyqiepnepULng1&t=635535546648416857 | 200 OK Content-Length: 3005 Content-Type: application/x-javascript | clean |
http://www.google.com/afsonline/show_afs_search.js | 200 OK Content-Length: 3366 Content-Type: text/javascript | clean |
http://ambitholdings.com/AmbitSite/Ambit_Group/Overview.aspx?GId=1&MId=127&PId=0 | 200 OK Content-Length: 83627 Content-Type: text/html | clean |
http://ambitholdings.com/Ambitsite/js/Ajax.js | 200 OK Content-Length: 15803 Content-Type: application/x-javascript | clean |
http://ambitholdings.com/AmbitSite/Corporate_finance/Overview.aspx?GId=2&MId=129&PId=131 | 200 OK Content-Length: 81012 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ambitholdings.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: private
Date: Mon, 12 Jan 2015 13:45:26 GMT
Location: http://www.ambitholdings.com/AmbitSite/Ambit_Group/Overview.aspx?GId=1&MId=127&PId=0
Server: Microsoft-IIS/6.0
Content-Length: 0
X-Powered-By: ASP.NET
...0 bytes of data.
GET / HTTP/1.1
Host: ambitholdings.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: private
Date: Mon, 12 Jan 2015 13:45:26 GMT
Location: http://www.ambitholdings.com/AmbitSite/Ambit_Group/Overview.aspx?GId=1&MId=127&PId=0
Server: Microsoft-IIS/6.0
Content-Length: 0
X-Powered-By: ASP.NET
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ambitholdings.com
Referer: http://www.google.com/search?q=ambitholdings.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ambitholdings.com
Referer: http://www.google.com/search?q=ambitholdings.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ambitholdings.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ambitholdings.com/
Result: ambitholdings.com is not infected or malware details are not published yet.
Result: ambitholdings.com is not infected or malware details are not published yet.