Scanned pages/files
Request | Server response | Status |
http://arcio.ru/ | 200 OK Content-Length: 19851 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Alarg53 ...[13308 bytes skipped]... or <a href="/user/register?destination=node/19%23comment-form">register</a> to post comments</span></li> </ul> </div> </div> <div id="node-16" class="node node-article node-promoted node-teaser clearfix" about="/node/16" typeof="sioc:Item foaf:Document"> <h2 property="dc:title" datatype=""> <a href="/node/16">Hacked By Alarg53</a> </h2> <div class="meta submitted"> <span property="dc:date dc:created" content="2015-06-29T19:36:26+03:00" datatype="xsd:dateTime" rel="sioc:has_creator">Submitted by <span class="username" xml:lang="" about="/user/1" typeof="sioc:UserAccount" property="foaf:name" datatype="">anonghost</span> on Mon, 06/29/2015 - 19:36</span> </div> <div class="content clearfix" ...[9896 bytes skipped]... | ||
http://arcio.ru/misc/jquery.js?v=1.4.4 | 200 OK Content-Length: 78602 Content-Type: application/javascript | clean |
http://arcio.ru/misc/jquery.once.js?v=1.2 | 200 OK Content-Length: 2974 Content-Type: application/javascript | clean |
http://arcio.ru/misc/drupal.js?nf0m88 | 200 OK Content-Length: 14544 Content-Type: application/javascript | clean |
http://arcio.ru/sites/all/libraries/superfish/jquery.hoverIntent.minified.js?nf0m88 | 200 OK Content-Length: 1464 Content-Type: application/javascript | clean |
http://arcio.ru/sites/all/libraries/superfish/jquery.bgiframe.min.js?nf0m88 | 200 OK Content-Length: 1193 Content-Type: application/javascript | clean |
http://arcio.ru/sites/all/libraries/superfish/superfish.js?nf0m88 | 200 OK Content-Length: 4098 Content-Type: application/javascript | clean |
http://arcio.ru/sites/all/libraries/superfish/supersubs.js?nf0m88 | 200 OK Content-Length: 3771 Content-Type: application/javascript | clean |
http://arcio.ru/sites/all/libraries/superfish/supposition.js?nf0m88 | 200 OK Content-Length: 3290 Content-Type: application/javascript | clean |
http://arcio.ru/sites/all/libraries/superfish/sftouchscreen.js?nf0m88 | 200 OK Content-Length: 1371 Content-Type: application/javascript | clean |
http://arcio.ru/main | 200 OK Content-Length: 10420 Content-Type: text/html | clean |
http://arcio.ru/node/1 | 200 OK Content-Length: 12554 Content-Type: text/html | clean |
http://arcio.ru/node/ | 200 OK Content-Length: 19851 Content-Type: text/html | clean |
http://arcio.ru/catalog | 200 OK Content-Length: 10463 Content-Type: text/html | clean |
http://arcio.ru/node/3 | 200 OK Content-Length: 10923 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: arcio.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 17 Jul 2015 21:24:05 GMT
ETag: "1437168245"
Server: Apache
Vary: Accept-Encoding
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Fri, 17 Jul 2015 21:24:05 +0000
X-Generator: Drupal 7 (http://drupal.org)
GET / HTTP/1.1
Host: arcio.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 17 Jul 2015 21:24:05 GMT
ETag: "1437168245"
Server: Apache
Vary: Accept-Encoding
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Fri, 17 Jul 2015 21:24:05 +0000
X-Generator: Drupal 7 (http://drupal.org)
Second query (visit from search engine):
GET / HTTP/1.1
Host: arcio.ru
Referer: http://www.google.com/search?q=arcio.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: arcio.ru
Referer: http://www.google.com/search?q=arcio.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=arcio.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://arcio.ru/
Result: arcio.ru is not infected or malware details are not published yet.
Result: arcio.ru is not infected or malware details are not published yet.