Scanned pages/files
Request | Server response | Status |
http://www.internetpoker.info/ | 200 OK Content-Length: 5045 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: YOUR WEBSITE IS HAS BEEN HACKED BY Tunisian Cyber Security TELL YOUR GOV. TO KNOW ABOUT PALESTINE , <!DOCTYPE html><html dir='ltr' lang='en-US'><head><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta name="viewport" content="initial-scale = 1.0, maximum-scale = 1.0, user-scalable = no, width = device-width"> <meta name="description" content="YOUR WEBSITE IS HAS BEEN HACKED BY Tunisian Cyber Security TELL YOUR GOV. TO KNOW ABOUT PALESTINE , WE WILL CONTINUE HACKING THE SITES , TO SEND THE MESSAGE OF OUR PALESTINE , WE ARE Tunisian Cyber Security ! SO FREE WE DONT ACCEPT KILLING MUSLIM-POEPLE EVERY WHERE , STOP KILLING US ! WE ARE Tunisian Cyber Security AND WE WILL NOT END THIS WAR , THIS WAR WILL BE FOR US , INSHA ALLAH "> <meta name="keywords" content="Arab Warriors Team , The Hackers , Hacker , Arab Hackers ,"> ...[5495 bytes skipped]... | ||
http://www.internetpoker.info/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 15 Aug 2015 23:37:28 GMT Pragma: no-cache Location: http://internetpoker.info/test404page.js Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/1.0.0-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html; charset=UTF-7 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://internetpoker.info/xmlrpc.php X-Powered-By: PHP/5.3.10 | clean |
http://internetpoker.info/test404page.js | 404 Not Found Content-Length: 19661 Content-Type: text/html | clean |
http://internetpoker.info/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: application/javascript | clean |
http://internetpoker.info/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://internetpoker.info/wp-content/themes/simplemag/js/oldie.js?ver=4.2.4 | 200 OK Content-Length: 18185 Content-Type: application/javascript | clean |
http://js.affiliates.casino.mx/javascript.php?prefix=aMOt-RH8u6PUOsjNOfgKeWNd7ZgqdRLk&media=117&campaign=1 | 200 OK Content-Length: 1161 Content-Type: application/javascript | clean |
http://js.affiliates.casino.mx/javascript.php?prefix=aMOt-RH8u6PUOsjNOfgKeWNd7ZgqdRLk&media=105&campaign=1 | 200 OK Content-Length: 1151 Content-Type: application/javascript | clean |
http://js.affiliates.casino.mx/javascript.php?prefix=aMOt-RH8u6PUOsjNOfgKeWNd7ZgqdRLk&media=110&campaign=1 | 200 OK Content-Length: 1151 Content-Type: application/javascript | clean |
http://internetpoker.info/wp-content/themes/simplemag/js/jquery.flexslider-min.js?ver=2.1 | 200 OK Content-Length: 21426 Content-Type: application/javascript | clean |
http://internetpoker.info/wp-content/themes/simplemag/js/jquery.assets.js?ver=1.0 | 200 OK Content-Length: 22448 Content-Type: application/javascript | clean |
http://internetpoker.info/wp-content/themes/simplemag/js/jquery.custom.js?ver=1.0 | 200 OK Content-Length: 8544 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: internetpoker.info
Result:
GET / HTTP/1.1
Host: internetpoker.info
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: internetpoker.info
Referer: http://www.google.com/search?q=internetpoker.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: internetpoker.info
Referer: http://www.google.com/search?q=internetpoker.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=internetpoker.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://internetpoker.info/
Result: internetpoker.info is not infected or malware details are not published yet.
Result: internetpoker.info is not infected or malware details are not published yet.