Scanned pages/files
Request | Server response | Status |
http://oraappsforum.com/ | 200 OK Content-Length: 2996 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by TURK BEY ...[679 bytes skipped]... th colspan="2" scope="col"><img src="http://img534.imageshack.us/img534/2024/amerkanndexn.jpg" width="800" height="99" /></th> </tr> <tr> <td width="310"><font color="white" size="+1" face="Arial"><center>Biz Vataný Karþýlýksýz Sevdik!<img src="http://img708.imageshack.us/img708/8224/expendables1923logo.png" width="372" height="280" /><br />Hacked by TURK BEY</font></center></td> <td width="486" align="left" valign="top"><font color="white" size="2" face="Arial">TÜRK milleti büyük bir arslandýr..<br />Biz hepimiz onun tüyleri arasýna sýkýþmýþ ve sýðýnmýþ göz ile görülmez küçük varlýklarýz.<br />O arslanýn büyük hareketleri ve hamleleri ise inkýlâp hareketleri ve hamleleridir.<br />Bu arslaný tahrik edebilmek...<br />Ýþte bizim için iftihar edebilecek rol budur. < ...[1987 bytes skipped]... | ||
http://oraappsforum.com/test404page.js | 200 OK Content-Length: 2996 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: oraappsforum.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 30 Jul 2015 04:08:08 GMT
Server: nginx/1.7.9
Content-Type: text/html; charset=UTF-8
Host-Header: 192fc2e7e50945beb8231a492d6a8024
X-Proxy-Cache: MISS
GET / HTTP/1.1
Host: oraappsforum.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 30 Jul 2015 04:08:08 GMT
Server: nginx/1.7.9
Content-Type: text/html; charset=UTF-8
Host-Header: 192fc2e7e50945beb8231a492d6a8024
X-Proxy-Cache: MISS
Second query (visit from search engine):
GET / HTTP/1.1
Host: oraappsforum.com
Referer: http://www.google.com/search?q=oraappsforum.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: oraappsforum.com
Referer: http://www.google.com/search?q=oraappsforum.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=oraappsforum.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://oraappsforum.com/
Result: oraappsforum.com is not infected or malware details are not published yet.
Result: oraappsforum.com is not infected or malware details are not published yet.