Scanned pages/files
Request | Server response | Status |
http://kursybialystok.pl/ | 200 OK Content-Length: 1273 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by panimin ardiansyah -- <!-- Zone-H Accept Hacked by panimin ardiansyah --> <!-- Zone-H Accept Hacked by panimin ardiansyah --> <!-- Zone-H Accept Hacked by panimin ardiansyah --> <!-- Zone-H Accept Hacked by panimin ardiansyah --> <HTML> <head> <body BGCOLOR="black"> <title>Lamer Sakit Hati</title> <link rel="SHORTCUT ICON" href="http://jember-hacker.or ...[1232 bytes skipped]... | ||
http://kursybialystok.pl/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:47 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://www.cal.pl/ | 200 OK Content-Length: 20443 Content-Type: text/html | clean |
http://www.cal.pl/includes/contentslider.js | 200 OK Content-Length: 10725 Content-Type: application/javascript | clean |
https://ssl.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
https://www.cal.pl/includes/contentslider.js | 200 OK Content-Length: 10725 Content-Type: application/javascript | clean |
http://kursybialystok.pl/js/jquery.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://www.cal.pl/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:50:31 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 61 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-transition.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-carousel.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-alert.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-modal.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-dropdown.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-scrollspy.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-tab.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:48 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-tooltip.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:49 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-popover.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:49 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-button.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:49 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-collapse.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:49 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/bootstrap-typeahead.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:49 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
http://kursybialystok.pl/js/index.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 11 Dec 2014 09:51:49 GMT Accept-Ranges: bytes Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 1862 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kursybialystok.pl
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 11 Dec 2014 09:51:47 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: kursybialystok.pl
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 11 Dec 2014 09:51:47 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: kursybialystok.pl
Referer: http://www.google.com/search?q=kursybialystok.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kursybialystok.pl
Referer: http://www.google.com/search?q=kursybialystok.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kursybialystok.pl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kursybialystok.pl/
Result: kursybialystok.pl is not infected or malware details are not published yet.
Result: kursybialystok.pl is not infected or malware details are not published yet.