Scanned pages/files
Request | Server response | Status |
http://naviland.com.ua/ | 200 OK Content-Length: 33773 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: ..::Hacked by X-Sec Team::.. ...[20681 bytes skipped]... { if(currentStyle=='inline') { currentStyle='none'; } else { currentStyle='inline'; } document.getElementById('blink').style.display = currentStyle; setTimeout('blinkSpan()',400); }msg = "..::Hacked by X-Sec Team::.."; msg = " " + msg;pos = 0; function scrollMSG() { document.title = msg.substring(pos, msg.length) + msg.substring(0, pos); pos++; if (pos > msg.length) pos = 0 window.setTimeout("scrollMSG()",100); } scrollMSG(); </script> <img src="http://store2.up-00.co ...[17674 bytes skipped]... | ||
http://naviland.com.ua/misc/jquery.js?v=1.4.4 | 200 OK Content-Length: 78602 Content-Type: application/javascript | clean |
http://naviland.com.ua/misc/jquery.once.js?v=1.2 | 200 OK Content-Length: 2974 Content-Type: application/javascript | clean |
http://naviland.com.ua/misc/drupal.js?nmglyd | 200 OK Content-Length: 14544 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/modules/admin_menu/admin_devel/admin_devel.js?nmglyd | 200 OK Content-Length: 982 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/modules/views_slideshow_xtra/views_slideshow_xtra_overlay/js/views_slideshow_xtra_overlay.js?nmglyd | 200 OK Content-Length: 4797 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/default/files/languages/ru_WXLzFOBbNatHB-zxEFDr0aoyPoXRzqpv7bSghM9T7Bg.js?nmglyd | 200 OK Content-Length: 3910 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/themes/danland-7.x-1.0/danland/scripts/jquery.cycle.all.js?nmglyd | 200 OK Content-Length: 45274 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/modules/lightbox2-7.x-1.0-beta1/lightbox2/js/lightbox.js?1433608034 | 200 OK Content-Length: 45178 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/modules/views_slideshow/js/views_slideshow.js?nmglyd | 200 OK Content-Length: 19256 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/modules/views_slideshow_xtra/views_slideshow_xtra.js?nmglyd | 200 OK Content-Length: 5046 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/themes/danland-7.x-1.0/danland/scripts/hoverIntent.js?nmglyd | 200 OK Content-Length: 3238 Content-Type: application/javascript | clean |
http://naviland.com.ua/sites/all/themes/danland-7.x-1.0/danland/scripts/superfish.js?nmglyd | 200 OK Content-Length: 4159 Content-Type: application/javascript | clean |
http://naviland.com.ua/ua/ | 200 OK Content-Length: 33498 Content-Type: text/html | clean |
http://naviland.com.ua/sites/all/modules/lightbox2-7.x-1.0-beta1/lightbox2/js/lightbox.js?1433608037 | 200 OK Content-Length: 45178 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: naviland.com.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 06 Jun 2015 16:27:13 GMT
ETag: "1433608034"
Server: Apache
Content-Language: ru
Content-Length: 33773
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sat, 06 Jun 2015 16:27:14 GMT
X-Generator: Drupal 7 (http://drupal.org)
X-Powered-By: PHP/5.2.17
...33773 bytes of data.
GET / HTTP/1.1
Host: naviland.com.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 06 Jun 2015 16:27:13 GMT
ETag: "1433608034"
Server: Apache
Content-Language: ru
Content-Length: 33773
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sat, 06 Jun 2015 16:27:14 GMT
X-Generator: Drupal 7 (http://drupal.org)
X-Powered-By: PHP/5.2.17
...33773 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: naviland.com.ua
Referer: http://www.google.com/search?q=naviland.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: naviland.com.ua
Referer: http://www.google.com/search?q=naviland.com.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=naviland.com.ua
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://naviland.com.ua/
Result: naviland.com.ua is not infected or malware details are not published yet.
Result: naviland.com.ua is not infected or malware details are not published yet.