Scanned pages/files
Request | Server response | Status |
http://www.immo-actualite.com/ | 200 OK Content-Length: 1814 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Pr3d4T0r <html>
<head> <meta http-equiv="Pr3d4T0r" content="Pr3d4T0r, pr3d4t0r, h4ck3d by Pr3d4T0r,hack,hacker,hacking,swiss hacker, switzerland hacker, swiss anonymous, switzerland anonymous,msn hack,facebook hack,exploit,keylogger,stealer,rat,warez,warez script,whmcs hacking,wordpress hacking,md5 decode"> <title>Hacked By Pr3d4T0r</title> <script language=javascript> var rev = "fwd"; function titlebar(val) { var msg = "H4ck3d By Pr3d4T0r"; var res = " "; var speed = 100; var pos = val; msg = " |--- "+msg+" ---|"; var le = msg.length; if(rev == "fwd"){ if(pos < le){ pos = pos+1; scroll = msg.substr(0,pos); document.title = scroll; timer = window.setTime ...[1528 bytes skipped]... | ||
http://www.immo-actualite.com/test404page.js | 200 OK Content-Length: 1814 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: immo-actualite.com
Result:
GET / HTTP/1.1
Host: immo-actualite.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: immo-actualite.com
Referer: http://www.google.com/search?q=immo-actualite.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: immo-actualite.com
Referer: http://www.google.com/search?q=immo-actualite.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=immo-actualite.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://immo-actualite.com/
Result: immo-actualite.com is not infected or malware details are not published yet.
Result: immo-actualite.com is not infected or malware details are not published yet.