Scanned pages/files
Request | Server response | Status |
http://ggreiner.com/ | 200 OK Content-Length: 6231 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by ...[1939 bytes skipped]... > </head> <center> <div id="menu"> <b> <font><p> </b> </div> <img alt="Indonesia Corporation Cyber" src="http://41.media.tumblr.com/b5a6e3711ec8a75957ba85ecd44cfbbc/tumblr_mpxuu75B0U1r907jzo3_1280.jpg" height="442" width="442" /> <center><font color="White" face="courier new" size="2">Hacked by </font><font color="White" face="courier new" size="7"> Mr.Crazyxx </font><br><br></center> <br> <center><font color="White" face="courier new" size="4">We Are : </font><font color="gold" face="courier new" size="4" class="neon"> Indonesia Corporation Cyber</font><br><br></center> <center><font color="White" face="This is Comic Sans MS" size="4">Official Member : &l ...[4419 bytes skipped]... | ||
http://ggreiner.com/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ggreiner.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 20 Dec 2015 00:30:36 GMT
Accept-Ranges: bytes
Server: nginx/1.8.0
Content-Length: 6231
Content-Type: text/html
Last-Modified: Fri, 18 Dec 2015 09:10:45 GMT
...6231 bytes of data.
GET / HTTP/1.1
Host: ggreiner.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 20 Dec 2015 00:30:36 GMT
Accept-Ranges: bytes
Server: nginx/1.8.0
Content-Length: 6231
Content-Type: text/html
Last-Modified: Fri, 18 Dec 2015 09:10:45 GMT
...6231 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ggreiner.com
Referer: http://www.google.com/search?q=ggreiner.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ggreiner.com
Referer: http://www.google.com/search?q=ggreiner.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ggreiner.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ggreiner.com/
Result: ggreiner.com is not infected or malware details are not published yet.
Result: ggreiner.com is not infected or malware details are not published yet.