Scanned pages/files
Request | Server response | Status |
http://lykkener.no/ | 200 OK Content-Length: 5820 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Sul6an Hacker ...[1747 bytes skipped]... 0.0.8a-min.js"></script> <script type="text/javascript"> DD_belatedPNG.fix('#logo img'); </script> <![endif]--> </head> <body> <div id="container"> <div id="header"> <div id="logo"><a href="http://lykkener.no/index.php?route=common/home"><img src="http://lykkener.no/image/data/lykken_er_logo.png" title="Hacked By Sul6an Hacker " alt="Hacked By Sul6an Hacker " /></a></div> <!-- --> <!-- --> <div id="cart"> <div class="heading"> <h4>Handlekurv</h4> <a><span id="cart-total">0 vare(r) - kr. 0,00</span></a></div> <div class="content"> <div class="empty">Din handlekurv er tom!</div> </div> </div> <div ...[4704 bytes skipped]... | ||
http://lykkener.no/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/javascript | clean |
http://lykkener.no/catalog/view/javascript/jquery/ui/jquery-ui-1.8.16.custom.min.js | 200 OK Content-Length: 210463 Content-Type: application/javascript | clean |
http://lykkener.no/catalog/view/javascript/jquery/ui/external/jquery.cookie.js | 200 OK Content-Length: 3655 Content-Type: application/javascript | clean |
http://lykkener.no/catalog/view/javascript/jquery/colorbox/jquery.colorbox.js | 200 OK Content-Length: 27813 Content-Type: application/javascript | clean |
http://lykkener.no/catalog/view/javascript/jquery/tabs.js | 200 OK Content-Length: 476 Content-Type: application/javascript | clean |
http://lykkener.no/catalog/view/javascript/common.js | 200 OK Content-Length: 5056 Content-Type: application/javascript | clean |
http://lykkener.no/index.php?route=common/home | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
http://lykkener.no/index.php?route=common/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 5820 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lykkener.no
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 25 Apr 2014 21:15:06 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d839a1d82dece398b2709d514d43b31a; path=/
Set-Cookie: language=no; expires=Sun, 25-May-2014 21:15:06 GMT; path=/; domain=lykkener.no
Set-Cookie: currency=NOK; expires=Sun, 25-May-2014 21:15:06 GMT; path=/; domain=lykkener.no
X-Powered-By: PHP/5.3.10
GET / HTTP/1.1
Host: lykkener.no
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 25 Apr 2014 21:15:06 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d839a1d82dece398b2709d514d43b31a; path=/
Set-Cookie: language=no; expires=Sun, 25-May-2014 21:15:06 GMT; path=/; domain=lykkener.no
Set-Cookie: currency=NOK; expires=Sun, 25-May-2014 21:15:06 GMT; path=/; domain=lykkener.no
X-Powered-By: PHP/5.3.10
Second query (visit from search engine):
GET / HTTP/1.1
Host: lykkener.no
Referer: http://www.google.com/search?q=lykkener.no
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lykkener.no
Referer: http://www.google.com/search?q=lykkener.no
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=lykkener.no
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://lykkener.no/
Result: lykkener.no is not infected or malware details are not published yet.
Result: lykkener.no is not infected or malware details are not published yet.