Scanned pages/files
Request | Server response | Status |
http://hanoofind.com/ | 200 OK Content-Length: 18684 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-0-107-2 | 200 OK Content-Length: 60469 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By KingSkrupellos Cyberizm Digital Security ...[50338 bytes skipped]... </tr> </table> </span> <div class="mainmenu_font" onclick="SwitchMenu('sub7')" style="cursor:pointer;"> <table width="230" height="31" border="0" cellpadding="0" cellspacing="0"> <tr> <td width="" height="29" align="left" bgcolor="cd81bd" class="text2" style="padding-left:20px;">Hacked By KingSkrupellos Cyberizm Digital Security</td> </tr> <tr> <td height="2"><img src="imgs/prodmenu_sep.jpg" width="185" height="2" /></td> </tr> </table> </div> <span class="submenu" id="sub7" style="display:none"> <table width="185" border="0" cellpadding="0" cellspacing="0"> <tr> <td width="10" a ...[23689 bytes skipped]... | ||
http://hanoofind.com/js/jquery.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/javascript | clean |
http://hanoofind.com/cgi-sys/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: application/javascript | clean |
http://hanoofind.com/js/ | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://hanoofind.com/test404page.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://hanoofind.com/js/jquery.lightbox-0.5.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://hanoofind.com/myjs.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-0-106-1 | 200 OK Content-Length: 60469 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-101-1 | 200 OK Content-Length: 116196 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-101-1&start=4 | 200 OK Content-Length: 116411 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-101-1&start=0 | 200 OK Content-Length: 116196 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-101-1&start=8 | 200 OK Content-Length: 88502 Content-Type: text/html | clean |
http://hanoofind.com/products.php?IDZ=0-0-0-102-1 | 200 OK Content-Length: 116251 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hanoofind.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 22 Dec 2015 10:03:32 GMT
Pragma: no-cache
Server: nginx/1.8.0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=3aa95f37d5e996f5fdce9dab9823a809; path=/
GET / HTTP/1.1
Host: hanoofind.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 22 Dec 2015 10:03:32 GMT
Pragma: no-cache
Server: nginx/1.8.0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=3aa95f37d5e996f5fdce9dab9823a809; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: hanoofind.com
Referer: http://www.google.com/search?q=hanoofind.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hanoofind.com
Referer: http://www.google.com/search?q=hanoofind.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hanoofind.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hanoofind.com/
Result: hanoofind.com is not infected or malware details are not published yet.
Result: hanoofind.com is not infected or malware details are not published yet.