Scanned pages/files
Request | Server response | Status |
http://costotaxi.com/ | 200 OK Content-Length: 22652 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY BÃRTEÃÄ°NE SÄ°BER TÄ°M @ ZETA ! ...[20333 bytes skipped]... <ul class="links inline"><li class="sharethis_link first"><a href="http://costotaxi.com/?q=it/node/2" class="sharethis-link" title="Taxi fare calculation for Rome" rel="nofollow">ShareThis</a></li> <li class="node_translation_it last"><a href="/?q=it/content/it/taxi-calcolo-della-tariffa-roma" title="Taxi calcolo della tariffa per Roma" class="translation-link">HACKED BY BÃRTEÃÄ°NE SÄ°BER TÄ°M @ ZETA !</a></li> </ul> </div> </div> <!-- /.node --> </div> <div class="region region-content-bottom"> <div id="block-adsense_managed-2" class="block block-adsense_managed first last region-odd odd region-count-1 count-5 no-header block-1"><div class="block-inner"> <div class="content"> <div style='text-align:center; display: b ...[5364 bytes skipped]... | ||
http://costotaxi.com/misc/jquery.js?B | 200 OK Content-Length: 31028 Content-Type: application/x-javascript | clean |
http://costotaxi.com/misc/drupal.js?B | 200 OK Content-Length: 10538 Content-Type: application/x-javascript | clean |
http://costotaxi.com/sites/default/files/languages/it_4396c501d6dbc4e0d13bbf8c238bdfa1.js?B | 200 OK Content-Length: 868 Content-Type: application/x-javascript | clean |
http://costotaxi.com/modules/google_analytics/googleanalytics.js?B | 200 OK Content-Length: 2405 Content-Type: application/x-javascript | clean |
http://costotaxi.com/modules/sharethis/sharethis/jquery.sharethis.js?B | 200 OK Content-Length: 3181 Content-Type: application/x-javascript | clean |
http://costotaxi.com/modules/sharethis/sharethis.js?B | 200 OK Content-Length: 419 Content-Type: application/x-javascript | clean |
http://maps.google.com/maps?file=api&v=2&sensor=false&key=ABQIAAAAnTzDg7o_yDwiFO4K93Fd-BTjivV5dk47Vc85k_mnG3k6b_IxlBSB55qXTV_uJ8PfZix5QtnrZJMt2A | 200 OK Content-Length: 4663 Content-Type: text/javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12914 Content-Type: application/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 23290 Content-Type: text/javascript | clean |
http://costotaxi.com/?q=it | 200 OK Content-Length: 22652 Content-Type: text/html | clean |
http://costotaxi.com/?q=it/node/2 | 200 OK Content-Length: 22652 Content-Type: text/html | clean |
http://costotaxi.com/?q=it/content/it/taxi-calcolo-della-tariffa-roma | 200 OK Content-Length: 23644 Content-Type: text/html | clean |
http://costotaxi.com/?q=en/content/en/taxi-fare-calculation-rome | 200 OK Content-Length: 22593 Content-Type: text/html | clean |
http://costotaxi.com/?q=en | 200 OK Content-Length: 22593 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: costotaxi.com
Result:
HTTP/1.1 200 OK
Cache-Control: must-revalidate
Connection: close
Date: Mon, 08 Jun 2015 12:59:58 GMT
ETag: "3a11477e3192225c387f6553080f785c"
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Mon, 20 Oct 2014 19:22:29 GMT
Set-Cookie: SESS4582b06fd4b37ff5df6554b0a89a4a3c=82e371452e0af7768c00ecedd78b07b2; expires=Wed, 01-Jul-2015 16:33:18 GMT; path=/; domain=.costotaxi.com
GET / HTTP/1.1
Host: costotaxi.com
Result:
HTTP/1.1 200 OK
Cache-Control: must-revalidate
Connection: close
Date: Mon, 08 Jun 2015 12:59:58 GMT
ETag: "3a11477e3192225c387f6553080f785c"
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Mon, 20 Oct 2014 19:22:29 GMT
Set-Cookie: SESS4582b06fd4b37ff5df6554b0a89a4a3c=82e371452e0af7768c00ecedd78b07b2; expires=Wed, 01-Jul-2015 16:33:18 GMT; path=/; domain=.costotaxi.com
Second query (visit from search engine):
GET / HTTP/1.1
Host: costotaxi.com
Referer: http://www.google.com/search?q=costotaxi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: costotaxi.com
Referer: http://www.google.com/search?q=costotaxi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=costotaxi.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://costotaxi.com/
Result: costotaxi.com is not infected or malware details are not published yet.
Result: costotaxi.com is not infected or malware details are not published yet.