Scanned pages/files
Request | Server response | Status |
http://leone-construction.com/ | 200 OK Content-Length: 2518 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Muhammad Bilal ...[1383 bytes skipped]... image1" style="position:absolute; overflow:hidden; left:242px; top:0px; width:131px; height:131px; z-index:0"> <font face="Tahoma"> <EMBED src=http://www.youtube.com/v/icduJRRmNU0&hl&autoplay=1 width=0 height=0 type=application/x-shockwave-flash></font></div> <div id="result_box" dir="ltr"> <font face="Tahoma" size="2">Hacked By Muhammad Bilal <br> Defaced Successfully. <br> <br> <font color="#FF0000">Contact Me! :</font> www.Facebook.com/BlackHatCyberArmy</font></div> <p><font face="Tahoma" size="2">One cause,One AIM,one desire: "To Eliminate anti-pakistani factors from cyber space and to answer those individuals who mess with us". Never underestimate us !! We stand for a cause,we'll always stand for it,and we ar ...[877 bytes skipped]... | ||
http://leone-construction.com/test404page.js | 200 OK Content-Length: 2518 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: leone-construction.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 24 Jul 2015 07:14:12 GMT
Server: cloudflare-nginx
Content-Type: text/html
CF-RAY: 20add3ab6fbc05e1-WAW
Set-Cookie: __cfduid=d68afa15c1531462a1281269212888be51437722052; expires=Sat, 23-Jul-16 07:14:12 GMT; path=/; domain=.leone-construction.com; HttpOnly
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: leone-construction.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 24 Jul 2015 07:14:12 GMT
Server: cloudflare-nginx
Content-Type: text/html
CF-RAY: 20add3ab6fbc05e1-WAW
Set-Cookie: __cfduid=d68afa15c1531462a1281269212888be51437722052; expires=Sat, 23-Jul-16 07:14:12 GMT; path=/; domain=.leone-construction.com; HttpOnly
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: leone-construction.com
Referer: http://www.google.com/search?q=leone-construction.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: leone-construction.com
Referer: http://www.google.com/search?q=leone-construction.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=leone-construction.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://leone-construction.com/
Result: leone-construction.com is not infected or malware details are not published yet.
Result: leone-construction.com is not infected or malware details are not published yet.