Scanned pages/files
Request | Server response | Status |
http://fetishemporium.co.uk/ | 200 OK Content-Length: 2528 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked bY UmbrellaSec <html>
<meta charset="utf-8"> <link rel="shortcut icon" href="http://www.tentaculopurpura.com/wp-content/uploads/umbrella-1-300x300.png" /> <meta property="og:image" content="http://umbrella-security.com/umbrella-security-logo-official2.png"/> <meta content="Hacked bY UmbrellaSec" name="keywords"> <meta content="Hacked bY UmbrellaSec" name="description"> <embed src="https://www.youtube.com/v/YbeovG4z-2k&autoplay=1" type="application/x-shockwave-flash" wmode="transparent" width="1" height="1"></embed> <title>Hacked by frank_rootz</title> <center> <center> <img src="https://scontent-a-mad.xx.fbcdn.net/hphotos-xap1/v/t1.0-9/s ...[2273 bytes skipped]... | ||
http://fetishemporium.co.uk/test404page.js | 200 OK Content-Length: 2528 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fetishemporium.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 29 Nov 2014 20:34:02 GMT
Server: Apache/2.2.25 (Unix) mod_ssl/2.2.25 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html
X-Powered-By: PHP/5.4.21
GET / HTTP/1.1
Host: fetishemporium.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 29 Nov 2014 20:34:02 GMT
Server: Apache/2.2.25 (Unix) mod_ssl/2.2.25 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html
X-Powered-By: PHP/5.4.21
Second query (visit from search engine):
GET / HTTP/1.1
Host: fetishemporium.co.uk
Referer: http://www.google.com/search?q=fetishemporium.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fetishemporium.co.uk
Referer: http://www.google.com/search?q=fetishemporium.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fetishemporium.co.uk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fetishemporium.co.uk/
Result: fetishemporium.co.uk is not infected or malware details are not published yet.
Result: fetishemporium.co.uk is not infected or malware details are not published yet.