Scanned pages/files
Request | Server response | Status |
http://arsayman.com/ | 200 OK Content-Length: 2660 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Sheytan Azzam ...[1423 bytes skipped]... ground:url(http://8pic.ir/images/9qx3r361xqx59j8bzh72.gif) no-repeat top center;color:#fff;margin:0px}#tw{width:600px;height:265px;border:1px solid #007f00;background:url(http://fonts.googleapis.com/css?family=Iceland Condensed;font-size:18px;color:#0c0;margin:0 auto}</style> <div class="Style1" align="center"> <font size='7' face=' One'style="color: red; text-shadow: 0px 1px 7px yellow";>Hacked By Sheytan Azzam</font><br><br> <center><img alt="" src="http://www.blacknaija.com/wp-content/uploads/2013/06/iran_flag_by_zarbafi_by_zarbafi-d4k992a.jpg" style="height:300px;" border="0"> <p align="center"> <body bgcolor="black"> <font size='6' face=' One'style="color: Lime; text-shadow: 0px 1px 7px aqua";>! Your Security Is Low !</font><br> <font size='5' face=' One'style="color: white; text-shadow ...[736 bytes skipped]... | ||
https://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js | 200 OK Content-Length: 91342 Content-Type: text/javascript | clean |
http://arsayman.com/test404page.js | 404 Not Found Content-Length: 460 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: arsayman.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Sep 2014 22:41:26 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: arsayman.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Sep 2014 22:41:26 GMT
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: arsayman.com
Referer: http://www.google.com/search?q=arsayman.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: arsayman.com
Referer: http://www.google.com/search?q=arsayman.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=arsayman.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://arsayman.com/
Result: arsayman.com is not infected or malware details are not published yet.
Result: arsayman.com is not infected or malware details are not published yet.