Scanned pages/files
Request | Server response | Status |
http://ebogor.com/ | 200 OK Content-Length: 6761 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By SpyCoder <html> <html> <align="left"> <body background="http://belarbipro15.e-monsite.com/medias/images/484527-472811246076163-349788934-n.jpg"> <script language="JavaScript">alert("Ahla Louled Ta7chelkom Hhhh ")</script> <title> Hacked By SpyCoder </title> <link href='http://picload.org/image/igpdwal/3210-256x256x8.png' rel='SHORTCUT ICON'/> <meta name="google-site-verification" content=" [ + ] SpyCoder "/> <meta name="author" content="SpyCoder"/> <meta name="description" content="[ + ] Hacked By SpyCoder" /> <meta name="distribution" content="global"/> <meta name="goog ...[7265 bytes skipped]... | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://ebogor.com/test404page.js | 404 Not Found Content-Length: 279 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ebogor.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Dec 2015 17:10:32 GMT
Server: Apache/2.2.22
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: ebogor.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Dec 2015 17:10:32 GMT
Server: Apache/2.2.22
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: ebogor.com
Referer: http://www.google.com/search?q=ebogor.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ebogor.com
Referer: http://www.google.com/search?q=ebogor.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ebogor.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ebogor.com/
Result: ebogor.com is not infected or malware details are not published yet.
Result: ebogor.com is not infected or malware details are not published yet.