Scanned pages/files
Request | Server response | Status |
http://geldverdienenmetjeweblog.com/ | 200 OK Content-Length: 8879 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.youtube.com/embed/rzb22z7dnjm? <iframe width="1" height="1" src="http://www.youtube.com/embed/rzb22z7dnjm? autoplay=1" frameborder="0" allowfullscreen=""> Deface/Content modification. The following signature was found: hacked,defaced,owned,hacked by F4lc0n (Indonesian Security Tester) a<title>./Hacked F4lc0n (Indonesian Security Tester) ~ Indonesian Cyber Army</title> <meta name="robots" content="index, follow"> <meta name="keywords" content="hacked,defaced,owned,hacked by F4lc0n (Indonesian Security Tester)"> <meta name="description" content="Sorry admin, your system not secure. Please fix your system now !"> <meta name="author" content="F4lc0n (Indonesian Security Tester)"> <meta name="googlebot" content="index, follow"> <meta name="rating" content="general"> <meta name="copyright" content="F4lc0n (Indonesian Security Tester) @ 2012. All rights reserved."> <meta name="lang ...[9110 bytes skipped]... | ||
http://K4C3-Undetected.googlecode.com/files/K4C3 Undetected.js | 404 Not Found Content-Length: 1451 Content-Type: text/html | clean |
http://K4C3-Undetected.googlecode.com//www.google.com/ | 404 Not Found Content-Length: 1425 Content-Type: text/html | clean |
http://K4C3-Undetected.googlecode.com/test404page.js | 404 Not Found Content-Length: 1439 Content-Type: text/html | clean |
http://geldverdienenmetjeweblog.com//www.google.com/ | HTTP/1.1 302 Found Connection: close Date: Wed, 22 Jul 2015 11:36:10 GMT Location: http://www.gogvo.com/404.html Server: Apache Content-Length: 213 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.gogvo.com/404.html | HTTP/1.1 200 OK Connection: close Date: Wed, 22 Jul 2015 11:36:11 GMT Accept-Ranges: bytes ETag: "2bd014d-cd-513d7733fa300" Server: Apache Content-Length: 205 Content-Type: text/html; charset=UTF-8 Last-Modified: Thu, 16 Apr 2015 13:29:16 GMT | clean |
http://www.joeltherien.com/go/404 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 22 Jul 2015 11:36:15 GMT Location: http://www.7minuteworkout.com/offer/get_started/ Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.13 | clean |
http://www.7minuteworkout.com/offer/get_started/ | 200 OK Content-Length: 5188 Content-Type: text/html | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://www.7minuteworkout.com/js/jquery.backstretch.min.js | 200 OK Content-Length: 4233 Content-Type: application/javascript | clean |
http://www.7minuteworkout.com/js/cpa.js | 200 OK Content-Length: 368 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geldverdienenmetjeweblog.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 22 Jul 2015 11:36:07 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: geldverdienenmetjeweblog.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 22 Jul 2015 11:36:07 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: geldverdienenmetjeweblog.com
Referer: http://www.google.com/search?q=geldverdienenmetjeweblog.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geldverdienenmetjeweblog.com
Referer: http://www.google.com/search?q=geldverdienenmetjeweblog.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geldverdienenmetjeweblog.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://geldverdienenmetjeweblog.com/
Result: geldverdienenmetjeweblog.com is not infected or malware details are not published yet.
Result: geldverdienenmetjeweblog.com is not infected or malware details are not published yet.