Scanned pages/files
Request | Server response | Status |
http://hestavorur.is/ | 200 OK Content-Length: 51069 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Sh4d0w-26 ...[31093 bytes skipped]... iew-categories view-id-categories view-display-id-block_1 block-categories view-dom-id-4bf704f735abb1e62b01a83be3547a02"> <div class="view-content"> <div class="views-row views-row-1 views-row-odd views-row-first"> <div class="views-field views-field-name"> <span class="field-content"><a href="/category/bilavorur">Hacked By Sh4d0w-26</a></span> </div> </div> <div class="views-row views-row-2 views-row-even"> <div class="views-field views-field-name"> <span class="field-content"><a href="/category/p%C3%BA%C3%B0ar">Púðar</a></span> </div> </div> <div class="views-row views-row-3 views-row-odd"> <div class="views-field views-field-name"> <span class="fiel ...[27529 bytes skipped]... | ||
http://hestavorur.is/misc/jquery.js?v=1.4.4 | 200 OK Content-Length: 78602 Content-Type: application/javascript | clean |
http://hestavorur.is/misc/jquery.once.js?v=1.2 | 200 OK Content-Length: 2974 Content-Type: application/javascript | clean |
http://hestavorur.is/misc/drupal.js?mu44p8 | 200 OK Content-Length: 14544 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/nice_menus/js/jquery.bgiframe.js?v=2.1 | 200 OK Content-Length: 1521 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/nice_menus/js/jquery.hoverIntent.js?v=0.5 | 200 OK Content-Length: 1606 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/nice_menus/js/superfish.js?v=1.4.8 | 200 OK Content-Length: 4136 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/nice_menus/js/nice_menus.js?v=1.0 | 200 OK Content-Length: 1117 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/libraries/colorbox/colorbox/jquery.colorbox-min.js?mu44p8 | 200 OK Content-Length: 9514 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/colorbox/js/colorbox.js?mu44p8 | 200 OK Content-Length: 373 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/colorbox/styles/default/colorbox_default_style.js?mu44p8 | 200 OK Content-Length: 693 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/views_slideshow/js/views_slideshow.js?mu44p8 | 200 OK Content-Length: 19256 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/google_analytics/googleanalytics.js?mu44p8 | 200 OK Content-Length: 3422 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/libraries/jquery.cycle/jquery.cycle.all.min.js?mu44p8 | 200 OK Content-Length: 31032 Content-Type: application/javascript | clean |
http://hestavorur.is/sites/all/modules/views_slideshow/contrib/views_slideshow_cycle/js/views_slideshow_cycle.js?mu44p8 | 200 OK Content-Length: 22528 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hestavorur.is
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 21:18:09 GMT
ETag: "1424985489"
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Thu, 26 Feb 2015 21:18:09 GMT
X-Generator: Drupal 7 (http://drupal.org)
GET / HTTP/1.1
Host: hestavorur.is
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 26 Feb 2015 21:18:09 GMT
ETag: "1424985489"
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Thu, 26 Feb 2015 21:18:09 GMT
X-Generator: Drupal 7 (http://drupal.org)
Second query (visit from search engine):
GET / HTTP/1.1
Host: hestavorur.is
Referer: http://www.google.com/search?q=hestavorur.is
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hestavorur.is
Referer: http://www.google.com/search?q=hestavorur.is
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hestavorur.is
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hestavorur.is/
Result: hestavorur.is is not infected or malware details are not published yet.
Result: hestavorur.is is not infected or malware details are not published yet.