Scanned pages/files
Request | Server response | Status |
http://litfoam.lt/ | 200 OK Content-Length: 15771 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: // Hacked By : Scriptkiddie ...[6421 bytes skipped]... m/mmc_uploads/1780-nice-white-wallpaper.jpg); margin-left: 0px; margin-top: 0px; margin-right: 0px; margin-bottom: 0px; background-position:right top; background-repeat:no-repeat; background-size:110% } .style1 { font-family: Arial, Helvetica, sans-serif; font-size: 12px; } </style> <script type="text/javascript"> // Hacked By : Scriptkiddie TypingText = function(element, interval, cursor, finishedCallback) { if((typeof document.getElementById == "undefined") || (typeof element.innerHTML == "undefined")) { this.running = true; return; } this.element = element; this.finishedCallback = (finishedCallback ? finishedCallback : function() { return; }); this.interval = (typeof interval == "undefined" ? 100 : interval); this. ...[11995 bytes skipped]... | ||
http://litfoam.lt/js/jquery-1.3.2.min.js | 200 OK Content-Length: 57254 Content-Type: application/javascript | clean |
http://litfoam.lt/js/jquery.cycle.all.min.js | 200 OK Content-Length: 23729 Content-Type: application/javascript | clean |
http://litfoam.lt/js/jquery.color.js | 200 OK Content-Length: 3660 Content-Type: application/javascript | clean |
http://litfoam.lt/js/thickbox1.js | 200 OK Content-Length: 12346 Content-Type: application/javascript | clean |
https://engowe.com/ad.php?u=26c8690aab4ced62c49dc877ec50d92d&c=gpupdater | 200 OK Content-Length: 11793 Content-Type: application/javascript | clean |
http://litfoam.lt/?langid=1&topmenuid=3 | 200 OK Content-Length: 15771 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=7 | 200 OK Content-Length: 9607 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=8 | 200 OK Content-Length: 14022 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=9 | 200 OK Content-Length: 11497 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=10 | 200 OK Content-Length: 13997 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=11 | 200 OK Content-Length: 8538 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=12 | 200 OK Content-Length: 7814 Content-Type: text/html | clean |
http://litfoam.lt/?langid=1&topmenuid=12&menuid=&submenuid=&contentid=13 | 200 OK Content-Length: 7256 Content-Type: text/html | clean |
http://litfoam.lt/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: litfoam.lt
Result:
HTTP/1.1 200 OK
Cache-Control: private
Connection: close
Date: Mon, 20 Jul 2015 11:22:06 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=132e9628a61a465909a194acba386d23; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: litfoam.lt
Result:
HTTP/1.1 200 OK
Cache-Control: private
Connection: close
Date: Mon, 20 Jul 2015 11:22:06 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=132e9628a61a465909a194acba386d23; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: litfoam.lt
Referer: http://www.google.com/search?q=litfoam.lt
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: litfoam.lt
Referer: http://www.google.com/search?q=litfoam.lt
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=litfoam.lt
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://litfoam.lt/
Result: litfoam.lt is not infected or malware details are not published yet.
Result: litfoam.lt is not infected or malware details are not published yet.