Scanned pages/files
Request | Server response | Status |
http://brandonshields.com/ | 200 OK Content-Length: 7117 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Ayyıldız Tim Intenational Force | Sessizce Nöbetteyiz! ...[55 bytes skipped]... > <head> <meta name="apple-mobile-web-app-capable" content="yes"> <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1, user-scalable=no"> <meta charset="utf-8"> <!-- FAVICON --> <!-- PAGE TITLE --> <title>Hacked By Ayyıldız Tim Intenational Force | Sessizce Nöbetteyiz!</title> <!-- GOOGLE FONTS --> <link href='http://fonts.googleapis.com/css?family=Lato:300,400,700|Raleway:300,400,500|Open+Sans:300,400,600,700,800' rel='stylesheet' type='text/css'> <!-- STYLESHEETS --> <link href="http://maxcdn.bootstrapcdn.com/font-awesome/4.2.0/css/font-awesome.min.css" rel="stylesheet"> <link href="ht ...[7617 bytes skipped]... | ||
http://www.uploadhosting.co/uploads/81.17.23.197/jquery-1.11.1.min.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:25 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
https://soundcloud.com/3ssh | 200 OK Content-Length: 53563 Content-Type: text/html | clean |
https://a-v2.sndcdn.com/assets/vendor-c2ca9-490af4b.js | 200 OK Content-Length: 300700 Content-Type: application/javascript | clean |
https://a-v2.sndcdn.com/assets/views-cef53-99feb24.js | 200 OK Content-Length: 303799 Content-Type: application/javascript | clean |
https://a-v2.sndcdn.com/assets/app-db463-da856ca.js | 200 OK Content-Length: 302849 Content-Type: application/javascript | clean |
https://a-v2.sndcdn.com/assets/5-12275-e1bb5cf.js | 200 OK Content-Length: 83469 Content-Type: application/javascript | clean |
http://www.uploadhosting.co/ | HTTP/1.1 200 OK Connection: close Date: Fri, 13 Feb 2015 03:05:29 GMT Accept-Ranges: bytes ETag: "6a0ab4-18d-50e2fca49befc" Server: Apache/2.2.15 (CentOS) Content-Length: 397 Content-Type: text/html; charset=UTF-8 Last-Modified: Tue, 03 Feb 2015 14:21:43 GMT | clean |
http://soundcloud.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 02:59:15 GMT Location: https://soundcloud.com/test404page.js Server: am/2 Content-Length: 0 X-Frame-Options: SAMEORIGIN | clean |
https://soundcloud.com/test404page.js | 404 Not Found Content-Length: 0 | clean |
http://www.uploadhosting.co/3ssh | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:29 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/dubvision-feenixpawl-destination-3ssh-radio-remix-day-2 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:30 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/dubvision-feenixpawl-destination-3ssh-radio-remix-day-1 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:30 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:30 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/3ssh-excision-codenamex-live-mix-cordycept | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:30 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/hanging-tree-remix | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:31 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix-day-7 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:31 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix-day-6 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:31 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/freakazoid-1-17-2015 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:32 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix-day-5 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:32 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix-day-4 | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:32 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/likes | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:33 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/sets | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:33 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/tracks | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:33 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/comments | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:34 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/bootstrap.min.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:34 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/jquery.cycle.min.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:34 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/jquery.parallax.min.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:34 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/jquery.backstretch.min.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:35 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.18.205/script_IM5Wt0.js | HTTP/1.1 302 Found Connection: close Date: Fri, 13 Feb 2015 03:05:35 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: brandonshields.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 13 Feb 2015 02:59:10 GMT
Accept-Ranges: bytes
Server: nginx/1.6.2
Content-Length: 7117
Content-Type: text/html
Last-Modified: Mon, 12 Jan 2015 19:47:39 GMT
...7117 bytes of data.
GET / HTTP/1.1
Host: brandonshields.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 13 Feb 2015 02:59:10 GMT
Accept-Ranges: bytes
Server: nginx/1.6.2
Content-Length: 7117
Content-Type: text/html
Last-Modified: Mon, 12 Jan 2015 19:47:39 GMT
...7117 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: brandonshields.com
Referer: http://www.google.com/search?q=brandonshields.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: brandonshields.com
Referer: http://www.google.com/search?q=brandonshields.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=brandonshields.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://brandonshields.com/
Result: brandonshields.com is not infected or malware details are not published yet.
Result: brandonshields.com is not infected or malware details are not published yet.