Scanned pages/files
Request | Server response | Status |
http://ratemytransport.com/ | 200 OK Content-Length: 3792 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: ~Hacked By XerXes <html><link href='http://cdn1.iconfinder.com/data/icons/Basic_set2_Png/64/user_anonymous.png' rel='SHORTCUT ICON'/> <title> ~Hacked By XerXes </title> <META NAME="description" CONTENT="Hacked By XerXes "> <META NAME="keywords" CONTENT="Hacked By XerXes , Hacked By XerXes"> <META NAME="robot" CONTENT="index,follow"><META NAME="author" CONTENT="Hacked By XerXes"> <META NAME="language" CONTENT="English"> <META NAME="revisit-after" CONTENT="1"> <meta name="Description" content="Xerxes"><body o ...[4139 bytes skipped]... | ||
http://ratemytransport.com/test404page.js | 200 OK Content-Length: 3792 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ratemytransport.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 16 Mar 2015 23:11:21 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.4.38
GET / HTTP/1.1
Host: ratemytransport.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 16 Mar 2015 23:11:21 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.4.38
Second query (visit from search engine):
GET / HTTP/1.1
Host: ratemytransport.com
Referer: http://www.google.com/search?q=ratemytransport.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ratemytransport.com
Referer: http://www.google.com/search?q=ratemytransport.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ratemytransport.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ratemytransport.com/
Result: ratemytransport.com is not infected or malware details are not published yet.
Result: ratemytransport.com is not infected or malware details are not published yet.