Scanned pages/files
| Request | Server response | Status |
http://www.kaltezioti.gr/ | 200 OK Content-Length: 1488 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By 70P-H4ck3R ..:: Libyana ::..[Single Attacker] ...[626 bytes skipped]... ef="http://fonts.googleapis.com/css?family=Iceland%3A700" rel="stylesheet" type="text/css"> <script src="/google_analytics_auto.js"></script></head> <body> <center><img src="http://www.i-inresort.com/ly.jpg" width="390" height="250" ><a/><br/><br/><p></p><font face="Iceland" size="6" color="white" class="a">Hacked By 70P-H4ck3R ..:: Libyana ::..[Single Attacker] </font><br> <hr/> <br> <br/><br/><p></p><font face="Iceland" size="5" color="Red" class="a">Group ToP-TeaM = 70P-H4CK3R + NooRy-AlGarboli + AwHeD4 AlGazalY + Hamza Alwerfly </font><br> <br/><p></p><font face="Iceland" size="3" color="red" class="a"> Bany-Walid FreeDom </font><br> </p><font face="Iceland" size="3" color=" ...[406 bytes skipped]... | ||
http://www.kaltezioti.gr/google_analytics_auto.js | HTTP/1.1 302 Found Connection: close Date: Sun, 28 Dec 2014 13:26:43 GMT Location: http://ny-discount-sales.com/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 Content-Length: 392 Content-Type: text/html; charset=iso-8859-1 | clean |
http://ny-discount-sales.com/ | HTTP/1.1 302 Found Connection: close Date: Sun, 28 Dec 2014 13:26:44 GMT Location: http://wassrootwit.ru Server: nginx Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3 | clean |
http://wassrootwit.ru/ | 500 Server closed connection without sending any data back Content-Length: 117 Content-Type: text/plain | clean |
http://wassrootwit.ru/test404page.js | 500 Server closed connection without sending any data back Content-Length: 117 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kaltezioti.gr
Result:
GET / HTTP/1.1
Host: kaltezioti.gr
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: kaltezioti.gr
Referer: http://www.google.com/search?q=kaltezioti.gr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kaltezioti.gr
Referer: http://www.google.com/search?q=kaltezioti.gr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kaltezioti.gr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kaltezioti.gr/
Result: kaltezioti.gr is not infected or malware details are not published yet.
Result: kaltezioti.gr is not infected or malware details are not published yet.
