Scanned pages/files
Request | Server response | Status |
http://beekeeperssaddlebrookeaz.com/ | 200 OK Content-Length: 1200 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By R3d_C0d3r <html><head></style><embed src=\"https://www.youtube.com/v/LApS9G22cIU&autoplay=1\" type=\"application/x-shockwave-flash\" wmode=\"transparent\" width=\"1\" height=\"1\"></embed>
<title>HAck3d By R3d_C0der</title></head><body background=\"http://www.animateit.net/data/media/june2010/animated_60.gif\"></body><center><h1 style=color:red;> Hacked By R3d_C0d3r </h1><h2 style=color:green;>Cyb3r_Sw0rd Team Form Bangladesh </h4><img src=\"http://s12.postimg.org/tuv5l5p31/360x630_profile_logo.png\"><h3 style=color:grey; >***** W3 Ar3 ******<center> <br><br> [<marquee align=\"center\" scrollamount=\"5\" width=\"560\"><font size=\"-1\" color=\"white\">-=| Bl4Ck_C0D3R - Hax0r_Inject0r - XL33TX_SN4P3R - H3ART_BL33D - L33T_C0D3R - C ...[537 bytes skipped]... | ||
http://beekeeperssaddlebrookeaz.com/test404page.js | 200 OK Content-Length: 1200 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: beekeeperssaddlebrookeaz.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 17 Jul 2015 21:18:05 GMT
Server: Apache
Content-Type: text/html
GET / HTTP/1.1
Host: beekeeperssaddlebrookeaz.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 17 Jul 2015 21:18:05 GMT
Server: Apache
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: beekeeperssaddlebrookeaz.com
Referer: http://www.google.com/search?q=beekeeperssaddlebrookeaz.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: beekeeperssaddlebrookeaz.com
Referer: http://www.google.com/search?q=beekeeperssaddlebrookeaz.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=beekeeperssaddlebrookeaz.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://beekeeperssaddlebrookeaz.com/
Result: beekeeperssaddlebrookeaz.com is not infected or malware details are not published yet.
Result: beekeeperssaddlebrookeaz.com is not infected or malware details are not published yet.