Scanned pages/files
Request | Server response | Status |
http://amritsarpublicschool.com/ | 200 OK Content-Length: 92 Content-Type: text/html | clean |
http://amritsarpublicschool.com/test404page.js | 200 OK Content-Length: 2863 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Okeans <html>
<head> <title> Hacked By Okeans</title> </head> Hacked By Okeans/TurkHackTeam <script pagespeed_no_defer="" type="text/javascript">//<![CDATA[ (function(){var e=encodeURIComponent,f=window,h=document,m="width",n="documentElement",p="height",q="length",r="prototype",s="body",t="&",u="&ci=",w="&n=",x="&rd=",y=",",z="?",A="Content-Type",B="Microsoft.XMLHTTP",C="Msxml2.XMLHTTP",D="POST",E="application/x-www-fo ...[2637 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: amritsarpublicschool.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0, no-cache
Connection: close
Date: Wed, 09 Sep 2015 22:58:17 GMT
Server: Apache Phusion_Passenger/4.0.10 mod_bwlimited/1.4 mod_fcgid/2.3.9
Vary: Accept-Encoding,User-Agent
Content-Length: 92
Content-Type: text/html
X-Mod-Pagespeed: 1.7.30.5-3847
X-Powered-By: PHP/5.4.44
...92 bytes of data.
GET / HTTP/1.1
Host: amritsarpublicschool.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0, no-cache
Connection: close
Date: Wed, 09 Sep 2015 22:58:17 GMT
Server: Apache Phusion_Passenger/4.0.10 mod_bwlimited/1.4 mod_fcgid/2.3.9
Vary: Accept-Encoding,User-Agent
Content-Length: 92
Content-Type: text/html
X-Mod-Pagespeed: 1.7.30.5-3847
X-Powered-By: PHP/5.4.44
...92 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: amritsarpublicschool.com
Referer: http://www.google.com/search?q=amritsarpublicschool.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: amritsarpublicschool.com
Referer: http://www.google.com/search?q=amritsarpublicschool.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=amritsarpublicschool.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://amritsarpublicschool.com/
Result: amritsarpublicschool.com is not infected or malware details are not published yet.
Result: amritsarpublicschool.com is not infected or malware details are not published yet.