Scanned pages/files
Request | Server response | Status |
http://cetp.com.br/ | 200 OK Content-Length: 676 Content-Type: text/html | clean |
http://cetp.com.br/b0x/ | 200 OK Content-Length: 1827 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Fenix <title> Hacked By Fenix</title><link rel="SHORTCUT ICON" href="http://3.bp.blogspot.com/-8F7Zgo9qp78/UMqjrmjpT1I/AAAAAAAAGGA/LRr41k0hAB4/s320/gambar+bendera+indonnesia+10.png">
<body><center><b>The more you look, the less you see. <br></center></b> <br><br> <center><img src="http://feenix007.googlecode.com/files/Fenix.png" width="1000" height="350" /img></cent ...[1734 bytes skipped]... | ||
http://cetp.com.br/test404page.js | 404 Not Found Content-Length: 487 Content-Type: text/html | clean |
http://cetp.com.br/cgi-bin/ | 403 Forbidden Content-Length: 485 Content-Type: text/html | clean |
http://cetp.com.br/css/ | 200 OK Content-Length: 411 Content-Type: text/html | clean |
http://cetp.com.br/css/lightbox.css | 200 OK Content-Length: 1648 Content-Type: text/css | clean |
http://cetp.com.br/flash/ | 200 OK Content-Length: 471 Content-Type: text/html | clean |
http://cetp.com.br/flash/menu_v8.swf | 200 OK Content-Length: 36968 Content-Type: application/x-shockwave-flash | clean |
http://cetp.com.br/flash/slideshow_v8.swf | 200 OK Content-Length: 99381 Content-Type: application/x-shockwave-flash | clean |
http://cetp.com.br/images/ | 200 OK Content-Length: 2565 Content-Type: text/html | clean |
http://cetp.com.br/images/body-tail2.jpg | 200 OK Content-Length: 10393 Content-Type: image/jpeg | clean |
http://cetp.com.br/images/bottom-tail.gif | 200 OK Content-Length: 67 Content-Type: image/gif | clean |
http://cetp.com.br/images/box-bottom-tail.gif | 200 OK Content-Length: 54 Content-Type: image/gif | clean |
http://cetp.com.br/images/box-corner-bottom-left.gif | 200 OK Content-Length: 204 Content-Type: image/gif | clean |
http://cetp.com.br/images/box-corner-bottom-right.gif | 200 OK Content-Length: 204 Content-Type: image/gif | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cetp.com.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 15 Jun 2015 12:51:03 GMT
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 mod_perl/2.0.8 Perl/v5.10.1
Content-Length: 676
Content-Type: text/html;charset=ISO-8859-1
...676 bytes of data.
GET / HTTP/1.1
Host: cetp.com.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 15 Jun 2015 12:51:03 GMT
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 mod_perl/2.0.8 Perl/v5.10.1
Content-Length: 676
Content-Type: text/html;charset=ISO-8859-1
...676 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: cetp.com.br
Referer: http://www.google.com/search?q=cetp.com.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cetp.com.br
Referer: http://www.google.com/search?q=cetp.com.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cetp.com.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cetp.com.br/
Result: cetp.com.br is not infected or malware details are not published yet.
Result: cetp.com.br is not infected or malware details are not published yet.