Scanned pages/files
Request | Server response | Status |
http://nlp4all.biz/ | 200 OK Content-Length: 18971 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HackeD BY Rebel Team Hackers ...[620 bytes skipped]... ;meta content="general" name="rating"> <meta content="Copyright 2014" name="copyright"> <meta content="Personal Website" name="web_content_type"> <meta content="Codersleet" name="contact"> <meta content="global" name="distribution"> <meta content="Copyright 2015" name="copyright"> <meta name="author" content="Codersleet"> <meta content="en" name="language"> <title>HackeD BY Rebel Team Hackers</title> </head> <body style="background: black url(http://i.imgur.com/8zV4BAo.jpg) no-repeat fixed center; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial;" marginheight="0" marginwidth="0"> <div> <header class="settings-header"> </header> <center> <pre id="sualmukuna_cugh"><font color="red" face="Narkisim" size="6"><font color="green">[&l ...[19584 bytes skipped]... | ||
http://nlp4all.biz/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nlp4all.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 29 Nov 2015 19:24:30 GMT
Accept-Ranges: bytes
ETag: "4a1b-51cf4b6ade180"
Server: Apache
Vary: Accept-Encoding
Content-Length: 18971
Content-Type: text/html
Last-Modified: Mon, 10 Aug 2015 13:10:46 GMT
X-Pad: avoid browser bug
...18971 bytes of data.
GET / HTTP/1.1
Host: nlp4all.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 29 Nov 2015 19:24:30 GMT
Accept-Ranges: bytes
ETag: "4a1b-51cf4b6ade180"
Server: Apache
Vary: Accept-Encoding
Content-Length: 18971
Content-Type: text/html
Last-Modified: Mon, 10 Aug 2015 13:10:46 GMT
X-Pad: avoid browser bug
...18971 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: nlp4all.biz
Referer: http://www.google.com/search?q=nlp4all.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nlp4all.biz
Referer: http://www.google.com/search?q=nlp4all.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nlp4all.biz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nlp4all.biz/
Result: nlp4all.biz is not infected or malware details are not published yet.
Result: nlp4all.biz is not infected or malware details are not published yet.