Scanned pages/files
Request | Server response | Status |
http://denhartogvastgoed.nl/ | 200 OK Content-Length: 12769 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://w.soundcloud.com/player/?url=http%3a%2f%2fapi.soundcloud.com%2ftracks%2f77915716&auto_play=true&show_artwork=true&color=ff7700 <iframe width="1" height="1" scrolling="no" frameborder="no" src="http://w.soundcloud.com/player/?url=http%3a%2f%2fapi.soundcloud.com%2ftracks%2f77915716&auto_play=true&show_artwork=true&color=ff7700" target="_blank"> Deface/Content modification. The following signature was found: Hacked By FHMAWE ATTACKER ...[204 bytes skipped]... 160px-Anonymous_emblem.svg.png"> <iframe width="1" height="1" scrolling="no" frameborder="no" src="http://w.soundcloud.com/player/?url=http%3A%2F%2Fapi.soundcloud.com%2Ftracks%2F77915716&auto_play=true&show_artwork=true&color=ff7700" target="_blank"></iframe> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"> <title>Hacked By FHMAWE ATTACKER </title> <style type="text/css"> <!-- .style1 {color: #FFFFFF} .style2 {color: #00FF33} .style3 {color: #FF0000} .style6 {color: #FFFFFF; font-style: Bold; } .style7 {color: #FFFFFF; font-size: 18px; } body { background-color:#000000; background-image:url(''); background-repeat:no-repeat; background-position:center top; ...[15105 bytes skipped]... | ||
http://denhartogvastgoed.nl/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: denhartogvastgoed.nl
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 07 Dec 2014 15:07:16 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
X-Powered-By: PHP/5.4.27
GET / HTTP/1.1
Host: denhartogvastgoed.nl
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 07 Dec 2014 15:07:16 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
X-Powered-By: PHP/5.4.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: denhartogvastgoed.nl
Referer: http://www.google.com/search?q=denhartogvastgoed.nl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: denhartogvastgoed.nl
Referer: http://www.google.com/search?q=denhartogvastgoed.nl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=denhartogvastgoed.nl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://denhartogvastgoed.nl/
Result: denhartogvastgoed.nl is not infected or malware details are not published yet.
Result: denhartogvastgoed.nl is not infected or malware details are not published yet.