Scanned pages/files
Request | Server response | Status |
http://www.gypteak.com/ | 200 OK Content-Length: 28540 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY BÃRTEÃÄ°NE SÄ°BER TÄ°M @ ZETA ! ...[369 bytes skipped]... --> <!-- Copyright (c) 2002-2013 --> <!-- by DNN Corporation --> <!--**********************************************************************************--> <meta http-equiv="X-UA-Compatible" content="IE=edge" /><title> HACKED BY BÃRTEÃÄ°NE SÄ°BER TÄ°M @ ZETA ! </title><meta content="text/html; charset=UTF-8" http-equiv="Content-Type" /><meta content="text/javascript" http-equiv="Content-Script-Type" /><meta content="text/css" http-equiv="Content-Style-Type" /><meta id="MetaDescription" name="DESCRIPTION" content="HACKED BY BÃRTEÃÄ°NE SÄ°BER TÄ°M @ ZETA !" /><meta id="MetaKeywords" name="KEYWORDS" content="HACKED BY BÃRTEÃÄ°NE SÄ°BER TÄ°M @ ZETA !,DotNetNuke,DNN" /><me ...[30710 bytes skipped]... | ||
http://www.gypteak.com/DependencyHandler.axd/7915a9b5a53e62886e15bbc811741a07.69.js | 200 OK Content-Length: 301489 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/WebResource.axd?d=F1nKJa-u1s4TgJfwaB0QKpQlaFED-D5yUO9lXiemk6gox2_jevOefPt67BgQ6W8uUARjRkrUUTnsm8pf0&t=635589147476784022 | 200 OK Content-Length: 22346 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/Telerik.Web.UI.WebResource.axd?_TSM_HiddenField_=ScriptManager_TSM&compress=1&_TSM_CombinedScripts_=%3b%3bSystem.Web.Extensions%2c+Version%3d4.0.0.0%2c+Culture%3dneutral%2c+PublicKeyToken%3d31bf3856ad364e35%3aen-US%3a1453655a-6b8d-49b1-94c2-f77a352f5241%3aea597d4b%3ab25378d2%3bTelerik.Web.UI%2c+Version%3d2013.2.717.40%2c+Culture%3dneutral%2c+PublicKeyToken%3d121fae78165ba3d4 <span>...124 symbols skipped</span> | 200 OK Content-Length: 301794 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/js/dnn.js | 200 OK Content-Length: 15845 Content-Type: application/javascript | clean |
http://www.gypteak.com/DependencyHandler.axd/ceecaba9479ca1dd5247d48b69b3b708.69.js | 200 OK Content-Length: 300289 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/Resources/Shared/scripts/initWidgets.js | 200 OK Content-Length: 1279 Content-Type: application/javascript | clean |
http://www.gypteak.com/HACKEDBYBÃRTEÃÄ°NESÄ°BERTÄ°M@ZETA!/tabid/175/ctl/Tab/activeTab/settingTab/language/en-US/Default.aspx | 200 OK Content-Length: 186137 Content-Type: text/html | clean |
http://www.gypteak.com/WebResource.axd?d=dQKeLslh2BPxExhCbPIm-JNXVjO3irUdPu9_rO1ofAePfWi6rqZkYAjEis3CVFhqNIDEUuggOtLoVTwcVBw1aaqGZ9g3VUWHOJGIy6NLITbZOZe46RTaMXxUPDuCIBpGs_Sq3Ns8871xrQEgG9MptBirgINAsjkf-3OCKQ2&t=635211361400000000 | 200 OK Content-Length: 3759 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/ScriptResource.axd?d=JlOlz0SSqOMr3F_Sf77jBnJ3sNtV8KdGa7IXAr-01Hxuicl09lIVocOoPhSjUGNIP4B9B7_y5nSV-21PImnAjizYjCP1UHob_bZGtQsjo_2iTcZzdqMe0kIw6td4sOnW2N7rK7fNDCatx9830&t=fffffffff2209473 | 200 OK Content-Length: 26951 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/Telerik.Web.UI.WebResource.axd?_TSM_HiddenField_=ScriptManager_TSM&compress=1&_TSM_CombinedScripts_=%3b%3bSystem.Web.Extensions%2c+Version%3d4.0.0.0%2c+Culture%3dneutral%2c+PublicKeyToken%3d31bf3856ad364e35%3aen-US%3a1453655a-6b8d-49b1-94c2-f77a352f5241%3aea597d4b%3ab25378d2%3bTelerik.Web.UI%2c+Version%3d2013.2.717.40%2c+Culture%3dneutral%2c+PublicKeyToken%3d121fae78165ba3d4 <span>...211 symbols skipped</span> | 200 OK Content-Length: 301418 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/js/dnn.permissiontristate.js | 200 OK Content-Length: 1398 Content-Type: application/javascript | clean |
http://www.gypteak.com/DependencyHandler.axd/493978d064b4fa3c10e8ecaf2823724c.69.js | 200 OK Content-Length: 300289 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/DependencyHandler.axd/12aaabe91607e21c543828d2b1fbfdce.69.js | 200 OK Content-Length: 2971 Content-Type: application/x-javascript | clean |
http://www.gypteak.com/HACKEDBYBÃRTEÃÄ°NESÄ°BERTÄ°M@ZETA!/tabid/175/ctl/Tab/activeTab/settingTab/language/en-US/ | 200 OK Content-Length: 186037 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gypteak.com
Result:
GET / HTTP/1.1
Host: gypteak.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: gypteak.com
Referer: http://www.google.com/search?q=gypteak.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gypteak.com
Referer: http://www.google.com/search?q=gypteak.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gypteak.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gypteak.com/
Result: gypteak.com is not infected or malware details are not published yet.
Result: gypteak.com is not infected or malware details are not published yet.