Scanned pages/files
Request | Server response | Status |
http://nat-distribution.com/ | 200 OK Content-Length: 40207 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Mjeed <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd"> <html><head><meta content="text/html; charset=ISO-8859-1" http-equiv="content-type"><title>Hacked By Mjeed</title></head> <body style="background-color: black; color: rgb(0, 0, 0);" alink="#ee0000" link="#0000ee" vlink="#551a8b"> <div style="text-align: center;"><span style="color: white;"><br> </span><font color="#cc6600" face="Lucida Calligraphy" size="7"> </font><font color="#cc6600" face="Tahoma" size="7">~</font><font color="#808080" face="Co ...[44935 bytes skipped]... | ||
http://stats.hosting24.com/count.php | 200 OK Content-Length: 960 Content-Type: application/javascript | clean |
http://nat-distribution.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 28 Jun 2014 13:28:15 GMT Location: http://error404.000webhost.com/? Server: Apache Content-Length: 216 Content-Type: text/html; charset=iso-8859-1 | clean |
http://error404.000webhost.com/? | 200 OK Content-Length: 146 Content-Type: text/html | clean |
http://error404.000webhost.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 28 Jun 2014 13:28:15 GMT Location: http://error404.000webhost.com/? Server: Apache Content-Length: 216 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nat-distribution.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 28 Jun 2014 13:28:14 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: nat-distribution.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 28 Jun 2014 13:28:14 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: nat-distribution.com
Referer: http://www.google.com/search?q=nat-distribution.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nat-distribution.com
Referer: http://www.google.com/search?q=nat-distribution.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nat-distribution.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nat-distribution.com/
Result: nat-distribution.com is not infected or malware details are not published yet.
Result: nat-distribution.com is not infected or malware details are not published yet.