Scanned pages/files
Request | Server response | Status |
http://pbfico.net/ | 200 OK Content-Length: 12351 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By WouNded ...[3694 bytes skipped]... ; <td><img src='images/box_right_top.gif'></td> <td background='images/box_top_tile.gif' width=100%></td> <td><img src='images/box_left_top.gif'></td> </tr> <tr> <td background='images/box_right_tile.gif'></td> <td bgcolor=white> <div id='maintextpad'><p>Hacked By WouNded</p><p><br><table width=90% align=center><tr><td align=right><span class=newsTitle>Ùر ÙÙت٠ÛÚ© ØºØ°Ø§Û ÙØ°ÛØ° با Ù ØصÙÙات کاÙداÙÙ</span> (<font dir=ltr>1389/7/17</font>)</td></tr><tr><td><p>بازدÛدکÙÙدگا٠Ùب ساÛت شرکت صÙاÛع غذاÛÛ Ù¾Ø¯Ø±Ø¨Ø²Ø±Ú¯ از اÛ٠پس Ù Û ØªÙاÙÙد Ùر ÙÙت٠دستÙر پخت ÛÚ© ØºØ°Ø§Û ÙØ°Û ...[11147 bytes skipped]... | ||
http://pbfico.net/js/ajax.js | 200 OK Content-Length: 1879 Content-Type: text/javascript | clean |
http://pbfico.net/index.php | 200 OK Content-Length: 12351 Content-Type: text/html | clean |
http://pbfico.net/?pg=products | 200 OK Content-Length: 9967 Content-Type: text/html | clean |
http://pbfico.net/js/ajaxtabs.js | 200 OK Content-Length: 11699 Content-Type: text/javascript | clean |
http://pbfico.net/?pg=resellers | 200 OK Content-Length: 24071 Content-Type: text/html | clean |
http://pbfico.net/?pg=news | 200 OK Content-Length: 10243 Content-Type: text/html | clean |
http://pbfico.net/?pg=gallery | 200 OK Content-Length: 10547 Content-Type: text/html | clean |
http://pbfico.net/?pg=production | 200 OK Content-Length: 12147 Content-Type: text/html | clean |
http://pbfico.net/?pg=lab | 200 OK Content-Length: 17255 Content-Type: text/html | clean |
http://pbfico.net/?pg=standards | 200 OK Content-Length: 18418 Content-Type: text/html | clean |
http://pbfico.net/?pg=calorie | 200 OK Content-Length: 17650 Content-Type: text/html | clean |
http://pbfico.net/?pg=order | 200 OK Content-Length: 9573 Content-Type: text/html | clean |
http://pbfico.net/?pg=about | 200 OK Content-Length: 10591 Content-Type: text/html | clean |
http://pbfico.net/?pg=comment | 200 OK Content-Length: 9429 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pbfico.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 23 Feb 2015 08:02:28 GMT
Pragma: no-cache
Server: Apache/2.2.15
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=cufs9nmvchh4ldulthinuv74q3; path=/
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: pbfico.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 23 Feb 2015 08:02:28 GMT
Pragma: no-cache
Server: Apache/2.2.15
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=cufs9nmvchh4ldulthinuv74q3; path=/
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: pbfico.net
Referer: http://www.google.com/search?q=pbfico.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pbfico.net
Referer: http://www.google.com/search?q=pbfico.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pbfico.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://pbfico.net/
Result: pbfico.net is not infected or malware details are not published yet.
Result: pbfico.net is not infected or malware details are not published yet.