Scanned pages/files
Request | Server response | Status |
http://horatian.com/ | 200 OK Content-Length: 10694 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: ..:: Hacked By ::.. ...[803 bytes skipped]... paper.jpg "> <head><link href='http://www.hdwallpic.com/wp-content/uploads/2012/12/black-hat-wallpaper-hd.jpg' rel='http://fc07.deviantart.net/fs10/i/2006/109/5/b/V_for_Vendetta___Final_Tattoo_by_icoon.jpg'/> </head> <style> body { background-color: black; } </style> <center><br><br><font color="red" face="Impact" size="6">..:: Hacked By ::..</font><br> <font color="red" face="Fantasy" size="7">..:: Tiada Nama ::..</font><br><br> <img src="http://rs561.pbsrc.com/albums/ss58/cif_e/Flag.gif~c200" width="600" height="400"><br><br> <font color="red" face="Fantasy" size="7">..:: Please Patch Your Site Admin ::..</font><br> <font color="red" face="Impact" size="6">..:: Thank You ::..</font> <EMBED src="ht ...[10875 bytes skipped]... | ||
https://www.blogger.com/static/v1/common/js/2858158682-csitail.js | 200 OK Content-Length: 2325 Content-Type: text/javascript | clean |
http://horatian.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: horatian.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 04 Nov 2014 09:44:29 GMT
Server: Apache/2.0.63 (Unix) mod_ssl/2.0.63 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html
X-Powered-By: PHP/5.2.16
GET / HTTP/1.1
Host: horatian.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 04 Nov 2014 09:44:29 GMT
Server: Apache/2.0.63 (Unix) mod_ssl/2.0.63 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html
X-Powered-By: PHP/5.2.16
Second query (visit from search engine):
GET / HTTP/1.1
Host: horatian.com
Referer: http://www.google.com/search?q=horatian.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: horatian.com
Referer: http://www.google.com/search?q=horatian.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=horatian.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://horatian.com/
Result: horatian.com is not infected or malware details are not published yet.
Result: horatian.com is not infected or malware details are not published yet.