Scanned pages/files
Request | Server response | Status |
http://mudskip.org/ | 200 OK Content-Length: 9069 Content-Type: text/html | clean |
http://mudskip.org/misc/jquery.js?v=1.4.4 | 200 OK Content-Length: 78602 Content-Type: application/javascript | clean |
http://mudskip.org/misc/jquery.once.js?v=1.2 | 200 OK Content-Length: 2974 Content-Type: application/javascript | clean |
http://mudskip.org/misc/drupal.js?nntyn2 | 200 OK Content-Length: 14544 Content-Type: application/javascript | clean |
http://mudskip.org/misc/jquery.cookie.js?v=1.0 | 200 OK Content-Length: 961 Content-Type: application/javascript | clean |
http://mudskip.org/modules/openid/openid.js?nntyn2 | 200 OK Content-Length: 1829 Content-Type: application/javascript | clean |
http://mudskip.org/?q=forum | 200 OK Content-Length: 10000 Content-Type: text/html | clean |
http://mudskip.org/?q=tracker | 200 OK Content-Length: 10064 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Daya iLLi ...[10376 bytes skipped]... lass="content"> <table class="sticky-enabled"> <thead><tr><th>Type</th><th>Title</th><th>Author</th><th>Replies</th><th>Last updated</th> </tr></thead> <tbody> <tr about="/?q=node/1" class="odd"><td>Basic page</td><td property="dc:title" datatype=""><a href="/?q=node/1">Hacked By Daya iLLi</a> </td><td rel="sioc:has_creator"><span class="username" xml:lang="" about="/?q=user/1" typeof="sioc:UserAccount" property="foaf:name" datatype="">anonghost</span></td><td class="replies" property="sioc:num_replies" datatype="xsd:integer" content="0">0</td><td property="sioc:last_activity_date dc:modified" content="2015-05-04T14:39:44+00:00" datatype="xsd:dateTime">1 month 3 weeks ago</td> </tr> </t ...[935 bytes skipped]... | ||
http://mudskip.org/misc/tableheader.js?nntyn2 | 200 OK Content-Length: 5330 Content-Type: application/javascript | clean |
http://mudskip.org/?q=user/register | 200 OK Content-Length: 8718 Content-Type: text/html | clean |
http://mudskip.org/?q=user/ | 200 OK Content-Length: 9135 Content-Type: text/html | clean |
http://mudskip.org/?q=user | 200 OK Content-Length: 9134 Content-Type: text/html | clean |
http://mudskip.org/?q=user/password | 200 OK Content-Length: 7725 Content-Type: text/html | clean |
http://mudskip.org/test404page.js | 404 Not Found Content-Length: 297 Content-Type: text/html | clean |
http://mudskip.org/?q=node/1 | 200 OK Content-Length: 10514 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mudskip.org
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 26 Jun 2015 02:14:09 GMT
ETag: "1435284849"
Server: Apache/2.4.7 (Unix) PHP/5.5.9
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Fri, 26 Jun 2015 02:14:09 +0000
X-Generator: Drupal 7 (http://drupal.org)
X-Powered-By: PHP/5.5.9
GET / HTTP/1.1
Host: mudskip.org
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 26 Jun 2015 02:14:09 GMT
ETag: "1435284849"
Server: Apache/2.4.7 (Unix) PHP/5.5.9
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Fri, 26 Jun 2015 02:14:09 +0000
X-Generator: Drupal 7 (http://drupal.org)
X-Powered-By: PHP/5.5.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: mudskip.org
Referer: http://www.google.com/search?q=mudskip.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mudskip.org
Referer: http://www.google.com/search?q=mudskip.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mudskip.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mudskip.org/
Result: mudskip.org is not infected or malware details are not published yet.
Result: mudskip.org is not infected or malware details are not published yet.