Scanned pages/files
Request | Server response | Status |
http://ascb-bdl.fr/ | 200 OK Content-Length: 2863 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Xvirus <title>Hacked By Xvirus</title> <style> html, body { font-family: "Lato", arial, sans-serif; height: 100%; width: 100%; margin: 0; padding: 0; background-color: #000; } body{text-shadow:0px 0px 10px #46aeff;font-family: Papyrus, fantasy;color:white;} a{text-shadow:0px 0px 10px #46aeff;font-family: Papyrus, fantasy;color:whit ...[3137 bytes skipped]... | ||
http://ascb-bdl.fr/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ascb-bdl.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 24 Jan 2015 05:21:28 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 2863
Content-Type: text/html
Set-Cookie: 240planBAK=R2339298881; path=/; expires=Sat, 24-Jan-2015 06:27:19 GMT
Set-Cookie: 240plan=R3498074583; path=/; expires=Sat, 24-Jan-2015 06:35:09 GMT
...2863 bytes of data.
GET / HTTP/1.1
Host: ascb-bdl.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 24 Jan 2015 05:21:28 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 2863
Content-Type: text/html
Set-Cookie: 240planBAK=R2339298881; path=/; expires=Sat, 24-Jan-2015 06:27:19 GMT
Set-Cookie: 240plan=R3498074583; path=/; expires=Sat, 24-Jan-2015 06:35:09 GMT
...2863 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ascb-bdl.fr
Referer: http://www.google.com/search?q=ascb-bdl.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ascb-bdl.fr
Referer: http://www.google.com/search?q=ascb-bdl.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ascb-bdl.fr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ascb-bdl.fr/
Result: ascb-bdl.fr is not infected or malware details are not published yet.
Result: ascb-bdl.fr is not infected or malware details are not published yet.