Scanned pages/files
Request | Server response | Status |
http://fin-audit.com/ | 200 OK Content-Length: 1481 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Kzsg ...[181 bytes skipped]... r/> <center><img src="http://f1303.hizliresim.com/17/k/l53f5.jpg"></center> </br> <pre style='text-align:center'><span style='font-family:"Digital Readout Upright"; color:white'><o:p> </o:p></span></pre><pre style='text-align:center'><span <p align="center"> <font color=red>Hacked By Kzsg</font> <font color=white> Keresteci- er0in -Eagle - SeOa Atmc - Cerberyus -Xatli - Bulls - SerO - Xeon- Badran - x-Qey-Alligator-DarkBLue-Cybernova-Virtual Hacker-AreTheiS-Suwo <br> <font color=red>________________</font> <font color=red>Kzsg Says ; Ãanakkale GEÃÄ°LMEZ ! . <font color=white>Owned</font> <font color=white> Tek Tabanca </font> ...[897 bytes skipped]... | ||
http://fin-audit.com/test404page.js | 404 Not Found Content-Length: 255 Content-Type: text/html | clean |
http://fin-audit.com/bitrix/coupon_activation.php?lang=ru | 200 OK Content-Length: 3041 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fin-audit.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Sat, 23 May 2015 11:33:56 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 1481
Content-Type: text/html; charset=windows-1251
Expires: Sat, 23 May 2015 11:33:56 GMT
...1481 bytes of data.
GET / HTTP/1.1
Host: fin-audit.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Sat, 23 May 2015 11:33:56 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 1481
Content-Type: text/html; charset=windows-1251
Expires: Sat, 23 May 2015 11:33:56 GMT
...1481 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: fin-audit.com
Referer: http://www.google.com/search?q=fin-audit.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fin-audit.com
Referer: http://www.google.com/search?q=fin-audit.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fin-audit.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fin-audit.com/
Result: fin-audit.com is not infected or malware details are not published yet.
Result: fin-audit.com is not infected or malware details are not published yet.