Scanned pages/files
Request | Server response | Status |
http://bookishman.com/ | 200 OK Content-Length: 1163 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY ASLAN NEFERLER HACK TEAM ! <html xmlns="http://www.w3.org/1999/xhtml"><head><meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1"><script type="text/javascript">
</script> <link rel="Shortcut Icon" href="http://i.hizliresim.com/eoLDm9.png" type="image/x-icon"> <title>HACKED BY ASLAN NEFERLER HACK TEAM !</title> <style type="text/css">body{background-color:#000000;background-image:url(http://i.hizliresim.com/q27VJ5.jpg);background-size:100%;margin:0px;padding:0px;min-width:650px;background-clip:box;background-origin:padding-box;background-repeat:no-repeat;background-position:center;background-attachment:fixed;}.style14{color:#FFFFFF;font-weight:bold;}.style37{color:#F0F0F0;font-weight:bold;font-size:10px ...[534 bytes skipped]... | ||
http://bookishman.com/test404page.js | 404 Not Found Content-Length: 292 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bookishman.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 20 Jan 2015 20:52:28 GMT
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 1163
Content-Type: text/html
X-Powered-By: PHP/5.3.3-7+squeeze19
...1163 bytes of data.
GET / HTTP/1.1
Host: bookishman.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 20 Jan 2015 20:52:28 GMT
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 1163
Content-Type: text/html
X-Powered-By: PHP/5.3.3-7+squeeze19
...1163 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bookishman.com
Referer: http://www.google.com/search?q=bookishman.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bookishman.com
Referer: http://www.google.com/search?q=bookishman.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bookishman.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bookishman.com/
Result: bookishman.com is not infected or malware details are not published yet.
Result: bookishman.com is not infected or malware details are not published yet.