Scanned pages/files
Request | Server response | Status |
http://bellavigna.net/ | 200 OK Content-Length: 6971 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY TUNISIAN FALLAGA TEAM - FALLAG GASSRINI AND DR LAMOUCHI ...[211 bytes skipped]... et']);_gaq.push(['_setAllowLinker',true]);_gaq.push(['_trackPageview']);(function(){var ga=document.createElement('script');ga.type='text/javascript';ga.async=true;ga.src='http://www.google-analytics.com/ga.js';var s=document.getElementsByTagName('script')[0];s.parentNode.insertBefore(ga,s);})();}</script></body></html> <meta charset="utf-8"/> <title>HACKED BY TUNISIAN FALLAGA TEAM - FALLAG GASSRINI AND DR LAMOUCHI </title> <meta name="description" content="HACKED BY FALLAGA TEAM FALLAGA GASSRINI DR LAMOUCHI"> <META NAME="description" CONTENT="FALLEGA TEAM"> <META NAME="keywords" CONTENT="Fallfg & Fallega"> <META NAME="robot" CONTENT="index,follow"> <META NAME="copyright" CONTENT="Copyright 2014"> <META NAME="author" CONTENT="no-c0de"> <META NAME="language" CO ...[7326 bytes skipped]... | ||
http://bellavigna.net/?msg | 200 OK Content-Length: 6971 Content-Type: text/html | clean |
http://bellavigna.net/?img | 200 OK Content-Length: 6971 Content-Type: text/html | clean |
http://bellavigna.net/?vid | 200 OK Content-Length: 6971 Content-Type: text/html | clean |
http://bellavigna.net/?chi | 200 OK Content-Length: 6971 Content-Type: text/html | clean |
http://bellavigna.net/?abt | 200 OK Content-Length: 6971 Content-Type: text/html | clean |
http://bellavigna.net/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bellavigna.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 26 Sep 2015 16:52:35 GMT
Accept-Ranges: bytes
Server: nginx/1.8.0
Content-Length: 6971
Content-Type: text/html
Last-Modified: Wed, 09 Sep 2015 11:56:07 GMT
...6971 bytes of data.
GET / HTTP/1.1
Host: bellavigna.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 26 Sep 2015 16:52:35 GMT
Accept-Ranges: bytes
Server: nginx/1.8.0
Content-Length: 6971
Content-Type: text/html
Last-Modified: Wed, 09 Sep 2015 11:56:07 GMT
...6971 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bellavigna.net
Referer: http://www.google.com/search?q=bellavigna.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bellavigna.net
Referer: http://www.google.com/search?q=bellavigna.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bellavigna.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bellavigna.net/
Result: bellavigna.net is not infected or malware details are not published yet.
Result: bellavigna.net is not infected or malware details are not published yet.