Scanned pages/files
Request | Server response | Status |
http://archive-ve.com/ | 200 OK Content-Length: 45934 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By YounesS X-GhosT ...[33662 bytes skipped]... anas.<BR> <BR>(307, 2014-08-14 21:32:55)</td></tr></table> <table border=0><tr><td valign=top><img width=20 height=20 src="http://30.archivec.com/1408/1419/5/JRlrav.gif"></td><td valign=top>2</td><td valign=top width=150><a href="/ve/s/supliseguridad.com.ve/"> www.supliseguridad.com.ve</a> </td><td valign=top>Hacked By YounesS X-GhosT<BR> <BR>(1, 2014-08-14 19:04:54)</td></tr></table> <table border=0><tr><td valign=top><img width=20 height=20 src="/inc/icon3.gif"></td><td valign=top>2</td><td valign=top width=150><a href="/ve/h/humanet.com.ve/"> humanet.com.ve</a> </td><td valign=top>Humanet Venezuela - Humanet Venezuela<BR>humanet, panamá, panama, venezuela, españa, espana, emple ...[24307 bytes skipped]... | ||
http://archive-ve.com/form_submit_your_site_to_archive | 200 OK Content-Length: 3899 Content-Type: text/html | clean |
http://archive-ve.com/form_rem | 200 OK Content-Length: 4093 Content-Type: text/html | clean |
http://archive-ve.com/faq | 200 OK Content-Length: 7220 Content-Type: text/html | clean |
http://archive-ve.com/form_contacts | 200 OK Content-Length: 3596 Content-Type: text/html | clean |
http://archive-ve.com/partners | 200 OK Content-Length: 2923 Content-Type: text/html | clean |
http://archive-ve.com/test404page.js | 200 OK Content-Length: 2652 Content-Type: text/html | clean |
http://archive-ve.com/ve/0/ | 200 OK Content-Length: 2821 Content-Type: text/html | clean |
http://archive-ve.com/ve/ | 200 OK Content-Length: 3463 Content-Type: text/html | clean |
http://archive-ve.com/ve/1/ | 200 OK Content-Length: 2995 Content-Type: text/html | clean |
http://archive-ve.com/ve/1/100x100hosting.com.ve/ | 200 OK Content-Length: 3486 Content-Type: text/html | clean |
http://archive-ve.com/ve/1/100x100hosting.com.ve/2013-12-28_3424985/ | 200 OK Content-Length: 8192 Content-Type: text/html | clean |
http://archive-ve.com/ve/1/100x100hosting.com.ve/2013-12-28_3424985_2/Liate_com_ve_laquo_100_Hosting/ | 200 OK Content-Length: 5312 Content-Type: text/html | clean |
http://archive-ve.com/ve/1/100x100hosting.com.ve/2013-12-28_3424985_1/100_Hosting/ | 200 OK Content-Length: 8192 Content-Type: text/html | clean |
http://archive-ve.com/ve/1/100x100hosting.com.ve/2013-12-28_3424985-titles/ | 200 OK Content-Length: 5472 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: archive-ve.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 25 Aug 2014 21:32:19 GMT
Pragma: no-cache
Server: Apache/2.2.14 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html;
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=ebq5fqo86gb8bbab2dacg0o690; path=/
X-Powered-By: PHP/5.3.2-1ubuntu4.18
GET / HTTP/1.1
Host: archive-ve.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 25 Aug 2014 21:32:19 GMT
Pragma: no-cache
Server: Apache/2.2.14 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html;
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=ebq5fqo86gb8bbab2dacg0o690; path=/
X-Powered-By: PHP/5.3.2-1ubuntu4.18
Second query (visit from search engine):
GET / HTTP/1.1
Host: archive-ve.com
Referer: http://www.google.com/search?q=archive-ve.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: archive-ve.com
Referer: http://www.google.com/search?q=archive-ve.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=archive-ve.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://archive-ve.com/
Result: archive-ve.com is not infected or malware details are not published yet.
Result: archive-ve.com is not infected or malware details are not published yet.