Scanned pages/files
Request | Server response | Status |
http://golalive.com/ | 200 OK Content-Length: 5010 Content-Type: text/html | clean |
http://golalive.com/index.php | 200 OK Content-Length: 5010 Content-Type: text/html | clean |
http://golalive.com/restaurant.php | 200 OK Content-Length: 6523 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Ashiyane Digital Security Team ...[5468 bytes skipped]... t;a href="res_details.php?id=15"><img src="upload/imgres.jpg" width="100" height="53.787878787879" border="0" /></a></td> <td width="361" align="left" valign="top"><table width="100%" border="0" cellspacing="0" cellpadding="0"> <tr> <td height="66" align="left" valign="bottom"><a href="res_details.php?id=15" class="sub_head">Hacked By Ashiyane Digital Security Team</a><br /> <span class="sub_head_white">Hacked By Ashiyane Digital Security Team</span></td> </tr> <tr> <td height="50" align="left" valign="top" class="body_txt">Hacked By Ashiyane Digital Security Team Hacked By Ashiyane Digital Security Team Hacked By Ashiyane Digital Security Team Hacked By Ashiyane Digit...</td> </tr> ...[1915 bytes skipped]... | ||
http://golalive.com/nightlife.php | 200 OK Content-Length: 10041 Content-Type: text/html | clean |
http://golalive.com/hotel_residance_list.php | 200 OK Content-Length: 7099 Content-Type: text/html | clean |
http://golalive.com/eventlist.php | 200 OK Content-Length: 6126 Content-Type: text/html | clean |
https://tm.perfb.com/eventengine/eventunitjs.php?HANDLE=rudyb484&LAYOUTID=0&&ZIP=90015&FROMDATE=2008-09-22&&WIDTH=510&LINKTEXT=Find+Tickets&LINKCOL=78b9eb&LINKFONT=1&LINKSIZE=99&LINKUNITS=%&LINKBOLD=1&LINKITALICS=1&IMAGEWIDTH=125&BACKGROUNDCOL=050505&BORDERCOL=050505&ARC=282c9a&ARF=1&ARS=105&ARU=%&ARBOLD=1&ARULINE=1&LOC=F7EDED&LOF=1&LOS=80&LOU=%&DAC=F1EBEB&DAF=1&DAS=80&DAU=%&&SHOWARTIST&SHOWLOCATI <span>...134 symbols skipped</span> | 503 Service Unavailable Content-Length: 889 Content-Type: text/html | clean |
http://tm.perfb.com/test404page.js | 503 Service Unavailable Content-Length: 889 Content-Type: text/html | clean |
http://golalive.com/contactus.php | 200 OK Content-Length: 6660 Content-Type: text/html | clean |
http://golalive.com/advertisewithus.php | 200 OK Content-Length: 5435 Content-Type: text/html | clean |
http://golalive.com/aboutsus.php | 200 OK Content-Length: 9866 Content-Type: text/html | clean |
http://golalive.com/terms.php | 200 OK Content-Length: 16602 Content-Type: text/html | clean |
http://golalive.com/function.getimagesize | 404 Not Found Content-Length: 400 Content-Type: text/html | clean |
http://golalive.com/hotel_residence_details.php?id=6 | 200 OK Content-Length: 7138 Content-Type: text/html | clean |
http://golalive.com/nightlife_detail.php?id=17 | 200 OK Content-Length: 8290 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: golalive.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Jun 2015 19:00:01 GMT
Server: Apache
Content-Type: text/html
GET / HTTP/1.1
Host: golalive.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Jun 2015 19:00:01 GMT
Server: Apache
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: golalive.com
Referer: http://www.google.com/search?q=golalive.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: golalive.com
Referer: http://www.google.com/search?q=golalive.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=golalive.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://golalive.com/
Result: golalive.com is not infected or malware details are not published yet.
Result: golalive.com is not infected or malware details are not published yet.