Scanned pages/files
Request | Server response | Status |
http://bondagepunks.com/ | 200 OK Content-Length: 14443 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By solo-Turk ! ...[12753 bytes skipped]... ("#youtube iframe").attr("height",ytheight);</p> <p> $("#youtube").css("width",ytwidth);</p> <p> $("#youtube").css("height",ytheight); }); </script><br /> </head><br /> <body></p> <div id="shutdown"> </div> <div class="text"> <p class='text next'> <p class='text next'>Hacked By solo-Turk !</p> <p class='text next'>Poor admin !!!!</p> <p class='text next'>This site was confiscated on behalf of the Turkish Nation </p> <p class='text next'>Bu siteye Turk Milleti adina el konulmustur.. </p> <p class='text next'>solo-Turk</p> <p class='text next'>=============================</p> <p class='text next'>Ne Mutlu Turkum Diyene..</p> <p class='text next'>== ...[4234 bytes skipped]... | ||
http://code.jquery.com/jquery-1.8.2.min.js | 200 OK Content-Length: 93435 Content-Type: application/x-javascript | clean |
http://bondagepunks.com/test404page.js | 404 Not Found Content-Length: 397 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bondagepunks.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 12 Apr 2014 20:07:26 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
X-Pingback: http://BozQurd.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: bondagepunks.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 12 Apr 2014 20:07:26 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
X-Pingback: http://BozQurd.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: bondagepunks.com
Referer: http://www.google.com/search?q=bondagepunks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bondagepunks.com
Referer: http://www.google.com/search?q=bondagepunks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bondagepunks.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bondagepunks.com/
Result: bondagepunks.com is not infected or malware details are not published yet.
Result: bondagepunks.com is not infected or malware details are not published yet.