Scanned pages/files
Request | Server response | Status |
http://budmedia.pl/ | HTTP/1.1 302 Found Connection: close Date: Sun, 05 Apr 2015 16:36:28 GMT Location: http://www.budmedia.pl/ Server: Apache/2.2.27 (CentOS) Content-Length: 284 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.budmedia.pl/ | 200 OK Content-Length: 2356 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by: Penjaga Kuburan <html>
<head> <link href='http://electronic.us.to/upload/files/logo-jkt48ct.png' rel='shortcut icon'/> <meta name="title" content="H4ck3d By Penjaga Kuburan"> <meta name="description" content=" +++== [ JKT48 Cyber Team ]=++ "> <meta name="keywords" content=" Hacked by: Penjaga Kuburan "> <meta content="i3r_cod3" name="author"> <center> <br> <br> <br> <br> <br> <img src="http://ilmiyakuza.net/nabilah2.jpg"> <body bgcolor=black> <script type="text/javascript" src="http://www.sis-kj.com/js/3.js"></script> <script src='http://deby-angel.webs.com/Myjs/snowstrom.js' type='text/javascr ...[2185 bytes skipped]... | ||
http://www.sis-kj.com/js/3.js | 404 Not Found Content-Length: 324 Content-Type: text/html | clean |
http://www.sis-kj.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://deby-angel.webs.com/Myjs/snowstrom.js | 410 Gone Content-Length: 19161 Content-Type: text/html | clean |
http://deby-angel.webs.com//assets.zendesk.com/external/zenbox/v2.6/zenbox.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Apr 2015 16:36:31 GMT Location: http://deby-angel.webs.com/assets.zendesk.com/external/zenbox/v2.6/zenbox.js/ Server: Webs.com/1.0 Content-Length: 0 | clean |
http://deby-angel.webs.com/assets.zendesk.com/external/zenbox/v2.6/zenbox.js/ | 410 Gone Content-Length: 19161 Content-Type: text/html | clean |
http://deby-angel.webs.com/Myjs/ | 410 Gone Content-Length: 19161 Content-Type: text/html | clean |
http://cayunkatel.googlecode.com/files/rainbows.js | 200 OK Content-Length: 2042 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: budmedia.pl
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sun, 05 Apr 2015 16:36:28 GMT
Location: http://www.budmedia.pl/
Server: Apache/2.2.27 (CentOS)
Content-Length: 284
Content-Type: text/html; charset=iso-8859-1
...284 bytes of data.
GET / HTTP/1.1
Host: budmedia.pl
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sun, 05 Apr 2015 16:36:28 GMT
Location: http://www.budmedia.pl/
Server: Apache/2.2.27 (CentOS)
Content-Length: 284
Content-Type: text/html; charset=iso-8859-1
...284 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: budmedia.pl
Referer: http://www.google.com/search?q=budmedia.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: budmedia.pl
Referer: http://www.google.com/search?q=budmedia.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=budmedia.pl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://budmedia.pl/
Result: budmedia.pl is not infected or malware details are not published yet.
Result: budmedia.pl is not infected or malware details are not published yet.