Scanned pages/files
Request | Server response | Status |
http://fd-kranj.si/ | 200 OK Content-Length: 409 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: ≡【 Hacked By xc0d30ffx 】≡ <html><head><title>≡【 Hacked By xc0d30ffx 】≡ </title><style type="text/css">body {background-color:#000000;color:#FFFFFF;magin:0px;padding:0px;font-family:Trebuchet MS; background-repeat: no-repeat;}</style><embed "center"></embed></head><body><p align="center"><font size="7" color="red">Happy Birthday "H1d3n Root" a small gift from xc0d30ffx, Cyb3r Command0s (Team_CC) | ||
http://fd-kranj.si/test404page.js | 200 OK Content-Length: 409 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fd-kranj.si
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Jun 2015 04:18:02 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.5.14
GET / HTTP/1.1
Host: fd-kranj.si
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Jun 2015 04:18:02 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.5.14
Second query (visit from search engine):
GET / HTTP/1.1
Host: fd-kranj.si
Referer: http://www.google.com/search?q=fd-kranj.si
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fd-kranj.si
Referer: http://www.google.com/search?q=fd-kranj.si
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fd-kranj.si
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fd-kranj.si/
Result: fd-kranj.si is not infected or malware details are not published yet.
Result: fd-kranj.si is not infected or malware details are not published yet.