Scanned pages/files
Request | Server response | Status |
http://mehakenterprises.com/ | 200 OK Content-Length: 129446 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HacKeD By Maheer Haxor ...[57380 bytes skipped]... </div> </div> <div class="left-penal3" style="margin:0px 0px 0px 10px;"> <div class="heading"> <span id="ctl00_ContentPlaceHolder1_heading">Welcome To Our Website</span> </div> <div style="padding: 5px;"> <head> <title>HacKeD By Maheer Haxor</title> <style> body { background: url(https://dl.dropboxusercontent.com/s/02ht5xoec1ie7jw/bg.gif) no-repeat center center fixed; -webkit-background-size: cover; -moz-background-size: cover; -o-background-size: cover; background-size: cover; color: white; } .twitter a{ text-decoration: none; font-family: Arial, sans-serif ; font-size: 50px; text-shadow: grey 0px 0px 10 ...[93929 bytes skipped]... | ||
http://mehakenterprises.com/js/jquery.js | 200 OK Content-Length: 94842 Content-Type: application/javascript | clean |
http://mehakenterprises.com/js/fade.js | 200 OK Content-Length: 2736 Content-Type: application/javascript | clean |
http://mehakenterprises.com/js/jquery_002.js | 200 OK Content-Length: 24102 Content-Type: application/javascript | clean |
http://mehakenterprises.com/js/jQuery_old.js | 200 OK Content-Length: 36230 Content-Type: application/javascript | clean |
http://mehakenterprises.com/js/menu.js | 200 OK Content-Length: 1301 Content-Type: application/javascript | clean |
http://mehakenterprises.com/js/jcarousellite_1.0.1c4.js | 200 OK Content-Length: 5947 Content-Type: application/javascript | clean |
http://mehakenterprises.com/Default.aspx | 200 OK Content-Length: 129458 Content-Type: text/html | clean |
http://mehakenterprises.com/AboutUs.aspx | 200 OK Content-Length: 91576 Content-Type: text/html | clean |
http://mehakenterprises.com/Product.aspx?Name=Corporate Gifts&Id=1 | 200 OK Content-Length: 100362 Content-Type: text/html | clean |
http://mehakenterprises.com/Jquery/lightbox-2.6.min.js | 200 OK Content-Length: 7380 Content-Type: application/javascript | clean |
http://mehakenterprises.com/Jquery/modernizr.custom.js | 200 OK Content-Length: 5329 Content-Type: application/javascript | clean |
http://mehakenterprises.com/Product.aspx?Name=Gifts For All Ocasion&Id=2 | 200 OK Content-Length: 103008 Content-Type: text/html | clean |
http://mehakenterprises.com/Product.aspx?Name=Religious Books&Id=3 | 200 OK Content-Length: 94542 Content-Type: text/html | clean |
http://mehakenterprises.com/Product.aspx?Name=Birthday Gifts&Id=4 | 200 OK Content-Length: 122463 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mehakenterprises.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 28 Nov 2015 13:46:32 GMT
Server: Microsoft-IIS/8.0
Content-Length: 129446
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...129446 bytes of data.
GET / HTTP/1.1
Host: mehakenterprises.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 28 Nov 2015 13:46:32 GMT
Server: Microsoft-IIS/8.0
Content-Length: 129446
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...129446 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mehakenterprises.com
Referer: http://www.google.com/search?q=mehakenterprises.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mehakenterprises.com
Referer: http://www.google.com/search?q=mehakenterprises.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mehakenterprises.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mehakenterprises.com/
Result: mehakenterprises.com is not infected or malware details are not published yet.
Result: mehakenterprises.com is not infected or malware details are not published yet.