Scanned pages/files
Request | Server response | Status |
http://creativeshore.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 30 Apr 2014 01:18:06 GMT Location: http://www.creativeshore.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-7 X-Pad: avoid browser bug X-Pingback: http://www.creativeshore.com/xmlrpc.php | clean |
http://www.creativeshore.com/ | 200 OK Content-Length: 3749 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: root@bt:~$ You got Hacked By De3D M3n @U11 ...[812 bytes skipped]... var tl=new Array( " root@bt:~$ Connecting to server .....", " root@bt:~$ Connected! .......", " ", " root@bt:~$ User : ********* /Ok/", " root@bt:~$ Password : ********* /Ok/", " root@bt:~$ Login ....", " root@bt:~$ Login Successful ! ......", " root@bt:~$ Ops ! ", " root@bt:~$ You got Hacked By De3D M3n @U11 ", " root@bt:~$ From Cyber-71 Hacker Team ", " root@bt:~$ Your site is not secure ", " root@bt:~$ You need to secure it ", " root@bt:~$ Dont worry I didnt deleted anything ", " root@bt:~$ Greets to ........", " $ All Bangladeshi Hackers ", " $ All Muslim Hackers", " root@bt:~$ Always Remember ", " root@b ...[3361 bytes skipped]... | ||
http://www.creativeshore.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: creativeshore.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Wed, 30 Apr 2014 01:18:06 GMT
Location: http://www.creativeshore.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-7
X-Pad: avoid browser bug
X-Pingback: http://www.creativeshore.com/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: creativeshore.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Wed, 30 Apr 2014 01:18:06 GMT
Location: http://www.creativeshore.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-7
X-Pad: avoid browser bug
X-Pingback: http://www.creativeshore.com/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: creativeshore.com
Referer: http://www.google.com/search?q=creativeshore.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: creativeshore.com
Referer: http://www.google.com/search?q=creativeshore.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=creativeshore.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://creativeshore.com/
Result: creativeshore.com is not infected or malware details are not published yet.
Result: creativeshore.com is not infected or malware details are not published yet.