Scanned pages/files
Request | Server response | Status |
http://choladbsdirect.com/ | 200 OK Content-Length: 1360 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Arab Sec Team <html>
<meta name="keywords" content="S@NT3T3"> <meta name="description" content="S@NT3T3"> <link rel="shortcut icon" href="https://scontent-b- ord.xx.fbcdn.net/hphotos-xpa1/v/t1.0- 9/10351606_812131055512240_3818246588173981771_n.png? oh=7794982d81818b26a1fdf6614947799d&oe=551E9707" type="image/x-icon"> <title>Hacked By Arab Sec Team</title> </head><body bgcolor="#000000"> <center><img src="http://im81.gulfup.com/Os3FmA.png" width="766" height="400"><br><br><br><br> <table width="100%" height="10%"> <tbody><tr><td align="center"> <span style="font: 50px tahoma;size:100px;color:red;text-shadow: 0px 0px 60px;">&l ...[1022 bytes skipped]... | ||
http://choladbsdirect.com/test404page.js | 200 OK Content-Length: 1360 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: choladbsdirect.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 08 Dec 2014 04:55:05 GMT
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Content-Length: 1360
Content-Type: text/html
X-Powered-By: PHP/5.3.13
...1360 bytes of data.
GET / HTTP/1.1
Host: choladbsdirect.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 08 Dec 2014 04:55:05 GMT
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Content-Length: 1360
Content-Type: text/html
X-Powered-By: PHP/5.3.13
...1360 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: choladbsdirect.com
Referer: http://www.google.com/search?q=choladbsdirect.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: choladbsdirect.com
Referer: http://www.google.com/search?q=choladbsdirect.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=choladbsdirect.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://choladbsdirect.com/
Result: choladbsdirect.com is not infected or malware details are not published yet.
Result: choladbsdirect.com is not infected or malware details are not published yet.