Scanned pages/files
Request | Server response | Status |
http://knowit-playit.com/ | 200 OK Content-Length: 89440 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HaCKeD by EvreN ...[21525 bytes skipped]... font-size: 12px; font-weight: bold; } .style10 {color: #FF0000} .style11 {color: #FFFFFF} .style13 { font-size: 18px; font-family: Georgia, "Times New Roman", Times, serif; } a:visited { color: #FFFFFF; text-decoration: none; } a:hover { text-decoration: none; color: #FF0000; } a:active { text-decoration: none; color: #FFFFFF; } --> <p><strong> <span style="font-family: Verdana; color: white;">HaCKeD by EvreN</span><br /> </strong></p> <div><strong> <p><img src="http://www.itusozluk.com/image/21-mayis-2011-cerkes-soykirimi-eylemi_194313.jpg" border="0" width="680" height="600" /></p> </strong></div> <p><strong> <object width="0" height="0" data="http://www.youtube.com/v/EmOnof2MOLQ&autoplay=1" type="application/x-shockwave-flash"> <param name="src" value=" ...[79623 bytes skipped]... | ||
http://knowit-playit.com/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/templates/kipi/jquery.js | 200 OK Content-Length: 91668 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/templates/kipi/script.js | 200 OK Content-Length: 6995 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/index.php/knowit-playit-about-the-game | 200 OK Content-Length: 29996 Content-Type: text/html | clean |
http://knowit-playit.com/index.php/knowit-playit-photo-video-gallery | 200 OK Content-Length: 42907 Content-Type: text/html | clean |
http://www.google.com/jsapi | 200 OK Content-Length: 24558 Content-Type: text/javascript | clean |
http://knowit-playit.com/plugins/content/sigplus/js/jquery.include.min.js | 200 OK Content-Length: 736 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/plugins/content/sigplus/js/jquery.noconflict.js | 200 OK Content-Length: 492 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/plugins/content/sigplus/engines/boxplus/popup/js/boxplus.min.js | 200 OK Content-Length: 11243 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/plugins/content/sigplus/engines/boxplus/lang/boxplus.lang.min.js | 200 OK Content-Length: 4113 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/index.php/contact-us | 200 OK Content-Length: 37588 Content-Type: text/html | clean |
http://knowit-playit.com/components/com_chronoforms/js/formcheck/formcheck-yui.js | 200 OK Content-Length: 19108 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/components/com_chronoforms/js/formcheck/formcheck-max.js | 200 OK Content-Length: 2976 Content-Type: application/x-javascript | clean |
http://knowit-playit.com/components/com_chronoforms/js/formcheck/lang/en.js | 200 OK Content-Length: 1461 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: knowit-playit.com
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Tue, 16 Jun 2015 10:38:49 GMT
Pragma: no-cache
Server: Apache/2.2.3 (CentOS)
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 16 Jun 2015 10:38:50 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 9fdd3b071210473af5bd6c5db06dd5c4=keigsp423p83slkpnp5u287tl7; path=/
X-Powered-By: PHP/5.2.10
GET / HTTP/1.1
Host: knowit-playit.com
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Tue, 16 Jun 2015 10:38:49 GMT
Pragma: no-cache
Server: Apache/2.2.3 (CentOS)
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 16 Jun 2015 10:38:50 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 9fdd3b071210473af5bd6c5db06dd5c4=keigsp423p83slkpnp5u287tl7; path=/
X-Powered-By: PHP/5.2.10
Second query (visit from search engine):
GET / HTTP/1.1
Host: knowit-playit.com
Referer: http://www.google.com/search?q=knowit-playit.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: knowit-playit.com
Referer: http://www.google.com/search?q=knowit-playit.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=knowit-playit.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://knowit-playit.com/
Result: knowit-playit.com is not infected or malware details are not published yet.
Result: knowit-playit.com is not infected or malware details are not published yet.