Scanned pages/files
Request | Server response | Status |
http://financelab.co.za/ | 200 OK Content-Length: 1372 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Arab Sec Team <html> <meta name=\"keywords\" content=\"S@NT3T3\"> <meta name=\"description\" content=\"S@NT3T3\"> <link rel=\"shortcut icon\" href=\"https://scontent-b- ord.xx.fbcdn.net/hphotos-xpa1/v/t1.0- 9/10351606_812131055512240_3818246588173981771_n.png? oh=7794982d81818b26a1fdf6614947799d&oe=551E9707\" type=\"image/x-icon\"> <title>Hacked By Arab Sec Team</title> </head><body bgcolor=\"#000000\"> <center><img src=\"http://im81.gulfup.com/Os3FmA.png\" width=\"766\" height=\"400\"><br><br><br><br> <table width=\"100%\" height=\"10%\"> <tbody><tr><td align=\"center\"> <span style=\"font: 50px tahoma;size:100px;color:red;text-shadow: 0px 0px 60px;\"><strong&g ...[984 bytes skipped]... | ||
http://financelab.co.za/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
http://financelab.co.za/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/\"https://www.facebook.com/ArabSecTeam\" | 200 OK Content-Length: 1372 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: financelab.co.za
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 15 Dec 2014 15:06:22 GMT
Server: Apache
Content-Length: 1372
Content-Type: text/html
X-Powered-By: PHP/5.3.27
...1372 bytes of data.
GET / HTTP/1.1
Host: financelab.co.za
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 15 Dec 2014 15:06:22 GMT
Server: Apache
Content-Length: 1372
Content-Type: text/html
X-Powered-By: PHP/5.3.27
...1372 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: financelab.co.za
Referer: http://www.google.com/search?q=financelab.co.za
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: financelab.co.za
Referer: http://www.google.com/search?q=financelab.co.za
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=financelab.co.za
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://financelab.co.za/
Result: financelab.co.za is not infected or malware details are not published yet.
Result: financelab.co.za is not infected or malware details are not published yet.