Scanned pages/files
| Request | Server response | Status |
http://angelakrattiger.com/ | 200 OK Content-Length: 3280 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By 3xp1r3 Cyber Army <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><meta name="Hacked By 3xp1r3 Cyber Army" content="Hacked By 3xp1r3 Cyber Army"><link href="http://i47.tinypic.com/qnwbvc.gif" rel="icon" type="image/x-icon"><meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1"><script src="http://1.2.3.4/bmi-int-js/bmi.js" language="javascript"></script><title>-=Dr.ZiR0 From 3xp1r3 Cyber Army =-</title> <style> .style { text-shadow: 0 0 10px #fff, ...[3125 bytes skipped]... | ||
http://1.2.3.4/bmi-int-js/bmi.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://1.2.3.4/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: angelakrattiger.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Dec 2013 00:49:18 GMT
Server: Apache
Content-Length: 3280
Content-Type: text/html; charset=UTF-7
Set-Cookie: wfvt_4246382875=52a2708fd89ce; expires=Sat, 07-Dec-2013 01:19:19 GMT; path=/
X-Pingback: http://angelakrattiger.com/xmlrpc.php
X-Powered-By: PHP/5.4.18
...3280 bytes of data.
GET / HTTP/1.1
Host: angelakrattiger.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Dec 2013 00:49:18 GMT
Server: Apache
Content-Length: 3280
Content-Type: text/html; charset=UTF-7
Set-Cookie: wfvt_4246382875=52a2708fd89ce; expires=Sat, 07-Dec-2013 01:19:19 GMT; path=/
X-Pingback: http://angelakrattiger.com/xmlrpc.php
X-Powered-By: PHP/5.4.18
...3280 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: angelakrattiger.com
Referer: http://www.google.com/search?q=angelakrattiger.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: angelakrattiger.com
Referer: http://www.google.com/search?q=angelakrattiger.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=angelakrattiger.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://angelakrattiger.com/
Result: angelakrattiger.com is not infected or malware details are not published yet.
Result: angelakrattiger.com is not infected or malware details are not published yet.
