Scanned pages/files
Request | Server response | Status |
http://dohanational.com/ | 200 OK Content-Length: 7972 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Moroccan Hassan ...[148 bytes skipped]... tml; charset=utf-8" /> <meta name="keywords" content="natural horsemanship, l?l?ik?z?,suttog?join-up,hooking-on,monty roberts,ray hunt,buck brannaman,john lyons,horse,riding,lovagl?,pat parelli," /> <meta name="description" content="Eroszakmentes l?ik?z?, tanfolyamok, oktat?" /> <meta name="generator" content="Joomla! - Open Source Content Management" /> <title>Hacked by Moroccan Hassan</title> <link href="/index.php/en?format=feed&type=rss" rel="alternate" type="application/rss+xml" title="RSS 2.0" /> <link href="/index.php/en?format=feed&type=atom" rel="alternate" type="application/atom+xml" title="Atom 1.0" /> <link rel="stylesheet" href="/plugins/editors/jckeditor/typography/typography2.php" type="text/css" /> <link rel="stylesheet" href="/templates/system/css/system.css" type ...[8425 bytes skipped]... | ||
http://dohanational.com/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: text/javascript | clean |
http://dohanational.com/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: text/javascript | clean |
http://dohanational.com/media/system/js/mootools-more.js | 200 OK Content-Length: 238128 Content-Type: text/javascript | clean |
http://dohanational.com/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: text/javascript | clean |
http://dohanational.com/plugins/system/jat3/jat3/base-themes/default/js/core.js | 404 Not Found Content-Length: 438 Content-Type: text/html | clean |
http://dohanational.com/test404page.js | 404 Not Found Content-Length: 397 Content-Type: text/html | clean |
http://dohanational.com/plugins/system/jat3/jat3/base-themes/default/js/menu/mega.js | 404 Not Found Content-Length: 443 Content-Type: text/html | clean |
http://dohanational.com/media/mod_pwebfblikebox/js/mootools.likebox.js | 404 Not Found Content-Length: 429 Content-Type: text/html | clean |
http://dohanational.com/media/mod_vt_nivo_slider/js/jquery/latest/jquery.min.js | 404 Not Found Content-Length: 438 Content-Type: text/html | clean |
http://dohanational.com/media/mod_vt_nivo_slider/js/jquery.nivo.slider.min.js | 404 Not Found Content-Length: 436 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dohanational.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Apr 2014 22:49:06 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 7972
Content-Type: text/html
Last-Modified: Fri, 23 Aug 2013 17:32:37 GMT
...7972 bytes of data.
GET / HTTP/1.1
Host: dohanational.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Apr 2014 22:49:06 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 7972
Content-Type: text/html
Last-Modified: Fri, 23 Aug 2013 17:32:37 GMT
...7972 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: dohanational.com
Referer: http://www.google.com/search?q=dohanational.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dohanational.com
Referer: http://www.google.com/search?q=dohanational.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dohanational.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dohanational.com/
Result: dohanational.com is not infected or malware details are not published yet.
Result: dohanational.com is not infected or malware details are not published yet.