Scanned pages/files
Request | Server response | Status |
http://www.metatraderassistant.hu/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 20 Jul 2015 01:23:07 GMT Location: http://metatraderassistant.hu/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: PHPSESSID=003314238f2148934dedd36cca2afc4c; path=/ X-Pingback: http://metatraderassistant.hu/xmlrpc.php | clean |
http://metatraderassistant.hu/ | 200 OK Content-Length: 33911 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by AlfabetoVirtual ...[4959 bytes skipped]... ("img").attr("title"); jQuery(this).attr('title',title); }) } // Supported file extensions var thumbnails = jQuery("a:has(img)").filter( function() { return /(jpe?g|png|gif|bmp)$/i.test(jQuery(this).attr('href')) }); jQuery("a.fancybox").fancybox({ 'cyclic': false, 'autoScale': false, 'padding': </script><script>document.title = 'Hacked by AlfabetoVirtual';</script><style>body {font-family: Lucida Console, cursive, sans-serif;background-color: #000000;color:white; text-shadow:0 0 100px black;font-size:20px;}</style><center><br /><br /><br /><br /><br /><br /><h1>Hacked by AlfabetoVirtual</h1><h2 style='color: white'>Hackeado por AlfabetoVirtual</h2>Eu sou daqueles que ando bem só do que mal acompanhado,<br />se não faz tua cara, ...[33977 bytes skipped]... | ||
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/jquery-1.3.2.min.js | 200 OK Content-Length: 124997 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/jquery.form.js | 200 OK Content-Length: 32580 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/jquery.lightbox-0.5.min.js | 200 OK Content-Length: 10221 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/coin-slider.min.js | 200 OK Content-Length: 8504 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/superfish.js | 200 OK Content-Length: 3848 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/custom.js | 200 OK Content-Length: 2776 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/cufon-yui.js | 200 OK Content-Length: 33753 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/themes/wisebusiness/js/Century_Gothic_400-Century_Gothic_700.font.js | 200 OK Content-Length: 237296 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-includes/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 93889 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15669 Content-Type: application/javascript | clean |
http://metatraderassistant.hu/index.php?ak_action=aktt_js&v=2.4 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://www.metatraderassistant.hu/video/MTA_install.exe | 200 OK Content-Length: 300400 Content-Type: application/x-msdownload | clean |
http://www.metatraderassistant.hu/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 20 Jul 2015 01:23:13 GMT Pragma: no-cache Location: http://metatraderassistant.hu/test404page.js Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Mon, 20 Jul 2015 01:23:13 GMT Set-Cookie: PHPSESSID=ecd042d95a8a69cdeb3962a6ae104726; path=/ X-Pingback: http://metatraderassistant.hu/xmlrpc.php | clean |
http://metatraderassistant.hu/test404page.js | 404 Not Found Content-Length: 14542 Content-Type: text/html | clean |
http://metatraderassistant.hu/mta-kereskedoi-asszisztens/ | 200 OK Content-Length: 27853 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: metatraderassistant.hu
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 20 Jul 2015 01:23:09 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Set-Cookie: PHPSESSID=98cffb5bf65a961c7569a93b07f55368; path=/
X-Pingback: http://metatraderassistant.hu/xmlrpc.php
GET / HTTP/1.1
Host: metatraderassistant.hu
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 20 Jul 2015 01:23:09 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Set-Cookie: PHPSESSID=98cffb5bf65a961c7569a93b07f55368; path=/
X-Pingback: http://metatraderassistant.hu/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: metatraderassistant.hu
Referer: http://www.google.com/search?q=metatraderassistant.hu
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: metatraderassistant.hu
Referer: http://www.google.com/search?q=metatraderassistant.hu
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=metatraderassistant.hu
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://metatraderassistant.hu/
Result: metatraderassistant.hu is not infected or malware details are not published yet.
Result: metatraderassistant.hu is not infected or malware details are not published yet.