Scanned pages/files
Request | Server response | Status |
http://preisvergleichstromanbieter.info/ | 200 OK Content-Length: 4410 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by ...[2753 bytes skipped]... <link href='http://fonts.googleapis.com/css?family=Advent+Pro&subset=latin,latin-ext' rel='stylesheet' type='text/css'><br><br> <link href='http://fonts.googleapis.com/css?family=Iceland' rel='stylesheet' type='text/css'> <font face="Iceland" size="7" color="#FF0000"><b><img src="http://3.bp.blogspot.com/-opjfg2llAp8/Uk80RA0MWHI/AAAAAAAABRk/kWjc2fevBgw/s1600/666.gif"> Hacked by </font><font face="Iceland" size="7" font color="#FFFAFA">Mr.Rivai_404x <img src="http://3.bp.blogspot.com/-opjfg2llAp8/Uk80RA0MWHI/AAAAAAAABRk/kWjc2fevBgw/s1600/666.gif"><b/></font><br><br> <font size="4" face="Iceland" style="color: #fff; text-shadow: 0px 1px 5px #000"><font style="color: #FF0000; text-shadow: 0px 1px 5px #fff">[</font> MUSLIM CORPORATION CYBER <font style="color: #FF0000; text-shadow: ...[1604 bytes skipped]... | ||
http://preisvergleichstromanbieter.info/test404page.js | HTTP/1.1 302 Found Connection: close Date: Tue, 28 Oct 2014 15:21:30 GMT Location: http://www.lastminutetuerkei.ch/404.html Server: Apache Content-Length: 224 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.lastminutetuerkei.ch/404.html | 200 OK Content-Length: 4410 Content-Type: text/html | clean |
http://www.lastminutetuerkei.ch/test404page.js | HTTP/1.1 302 Found Connection: close Date: Tue, 28 Oct 2014 15:21:31 GMT Location: http://www.lastminutetuerkei.ch/404.html Server: Apache Content-Length: 224 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: preisvergleichstromanbieter.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 28 Oct 2014 15:21:29 GMT
Server: Apache
Content-Length: 4410
Content-Type: text/html
...4410 bytes of data.
GET / HTTP/1.1
Host: preisvergleichstromanbieter.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 28 Oct 2014 15:21:29 GMT
Server: Apache
Content-Length: 4410
Content-Type: text/html
...4410 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: preisvergleichstromanbieter.info
Referer: http://www.google.com/search?q=preisvergleichstromanbieter.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: preisvergleichstromanbieter.info
Referer: http://www.google.com/search?q=preisvergleichstromanbieter.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=preisvergleichstromanbieter.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://preisvergleichstromanbieter.info/
Result: preisvergleichstromanbieter.info is not infected or malware details are not published yet.
Result: preisvergleichstromanbieter.info is not infected or malware details are not published yet.