Scanned pages/files
Request | Server response | Status |
http://aspenfilter.com/ | 200 OK Content-Length: 29536 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Secretary-NMTD Tim ...[10076 bytes skipped]... "92%" rowspan="2" bgcolor="#FFFFFF" height="37"> <table border="0" width="100%"> <tr> <td width="1%"> <img border="0" src="images/panahkecil.gif" width="6" height="5"></td> <td width="98%"> <font size="1" face="verdana"><b><a href="viewproduk.php?id_kategori=12fdf">Hacked By Secretary-NMTD Tim</a></b></font><br><img border='0' src='images/line.gif' width='100%' height='3'></td> </tr> </table> <table border="0" width="100%"> <tr> <td width="1%"> <img border="0" src="images/panahkecil.gif" width="6" height="5"></td> <td width="98%"> <font size="1" face="verdana"><b><a href="viewproduk.php?id_ ...[26927 bytes skipped]... | ||
http://aspenfilter.com/chromejs/chrome.js | 200 OK Content-Length: 6241 Content-Type: application/javascript | clean |
http://aspenfilter.com/index.php | 200 OK Content-Length: 30187 Content-Type: text/html | clean |
http://aspenfilter.com/aboutus.php | 200 OK Content-Length: 27428 Content-Type: text/html | clean |
http://aspenfilter.com/contactus.php | 200 OK Content-Length: 30590 Content-Type: text/html | clean |
http://aspenfilter.com/konfirmation.php | 200 OK Content-Length: 27973 Content-Type: text/html | clean |
http://aspenfilter.com/download.php | 200 OK Content-Length: 26146 Content-Type: text/html | clean |
http://aspenfilter.com/news.php | 200 OK Content-Length: 26115 Content-Type: text/html | clean |
http://aspenfilter.com/faq.php | 200 OK Content-Length: 26132 Content-Type: text/html | clean |
http://aspenfilter.com/information.php | 404 Not Found Content-Length: 396 Content-Type: text/html | clean |
http://aspenfilter.com/test404page.js | 404 Not Found Content-Length: 395 Content-Type: text/html | clean |
http://aspenfilter.com/viewproduk.php?id_kategori=12fdf | 200 OK Content-Length: 30440 Content-Type: text/html | clean |
http://aspenfilter.com/viewproduk.php?id_kategori=9879 | 200 OK Content-Length: 27700 Content-Type: text/html | clean |
http://aspenfilter.com/viewproduk.php?id_kategori=3dsfd | 200 OK Content-Length: 28227 Content-Type: text/html | clean |
http://aspenfilter.com/viewproduk.php?id_kategori=dsf3e | 200 OK Content-Length: 28231 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aspenfilter.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 16 Jul 2015 02:22:05 GMT
Pragma: no-cache
Server: Apache/1.3.42 (Unix) PHP/4.4.9 mod_auth_passthrough/1.8 mod_log_bytes/1.2 mod_bwlimited/1.4 mod_gzip/1.3.26.1a FrontPage/5.0.2.2635 mod_ssl/2.8.31 OpenSSL/0.9.8e-fips-rhel5
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=23d1e0a6402f508b2636b195159f553e; path=/
X-Powered-By: PHP/4.4.9
GET / HTTP/1.1
Host: aspenfilter.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 16 Jul 2015 02:22:05 GMT
Pragma: no-cache
Server: Apache/1.3.42 (Unix) PHP/4.4.9 mod_auth_passthrough/1.8 mod_log_bytes/1.2 mod_bwlimited/1.4 mod_gzip/1.3.26.1a FrontPage/5.0.2.2635 mod_ssl/2.8.31 OpenSSL/0.9.8e-fips-rhel5
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=23d1e0a6402f508b2636b195159f553e; path=/
X-Powered-By: PHP/4.4.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: aspenfilter.com
Referer: http://www.google.com/search?q=aspenfilter.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aspenfilter.com
Referer: http://www.google.com/search?q=aspenfilter.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aspenfilter.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://aspenfilter.com/
Result: aspenfilter.com is not infected or malware details are not published yet.
Result: aspenfilter.com is not infected or malware details are not published yet.