Scanned pages/files
Request | Server response | Status |
http://koolmuslim.com/ | 200 OK Content-Length: 7594 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY Dr-Y@k ...[758 bytes skipped]... br/> timer = window.setTimeout("titlebar("+pos+")",speed); } else{ rev = "fwd"; timer = window.setTimeout("titlebar("+pos+")",speed); } } } titlebar(0); </script> <html><script>alert('Special Fuck , Admin!');</script> <embed src="http://mbob.us/mp3/last%20child%20-%20memories%20of%20you.mp3" width="0" height="0"><meta name="description"HACKED BY Dr-Y@k" /><meta name="keywords" BHG " /><meta http-equiv='Content-Type' content='text/html; charset=windows-1251'><title>SQL is Z3r0</title><link rel='SHORTCUT ICON' type='image/x-icon' href='http://srv7.mbob.us/images/favicon.jpg'><style>body{background-color: #000000; color: green; font-family: verdana; font-size: 16px;}</style></head><body><pre><center><b>HACKED BY<br><center><style type= ...[7274 bytes skipped]... | ||
http://koolmuslim.com/test404page.js | 404 Not Found Content-Length: 1363 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: koolmuslim.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Jul 2015 16:51:02 GMT
Accept-Ranges: bytes
ETag: "6c1a18-1daa-4d8810fc2ce15"
Server: Apache
Content-Length: 7594
Content-Type: text/html
Last-Modified: Fri, 22 Mar 2013 10:38:53 GMT
...7594 bytes of data.
GET / HTTP/1.1
Host: koolmuslim.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Jul 2015 16:51:02 GMT
Accept-Ranges: bytes
ETag: "6c1a18-1daa-4d8810fc2ce15"
Server: Apache
Content-Length: 7594
Content-Type: text/html
Last-Modified: Fri, 22 Mar 2013 10:38:53 GMT
...7594 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: koolmuslim.com
Referer: http://www.google.com/search?q=koolmuslim.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: koolmuslim.com
Referer: http://www.google.com/search?q=koolmuslim.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=koolmuslim.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://koolmuslim.com/
Result: koolmuslim.com is not infected or malware details are not published yet.
Result: koolmuslim.com is not infected or malware details are not published yet.