Scanned pages/files
Request | Server response | Status |
http://realspycams.com/ | 200 OK Content-Length: 3046 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked by ./RootFound404 , Cirebon Cyber Crime <html> <head> <title>Why?</title> <link href='http://llwproductions.files.wordpress.com/2012/02/anonymous.png' rel='SHORTCUT ICON'/> <link href='http://fonts.googleapis.com/css?family=Orbitron:700' rel='stylesheet' type='text/css'> <meta content='hacked by ./RootFound404 , Cirebon Cyber Crime' name='description'/> <meta content='hacked by ./RootFound404 , Cirebon Cyber Crime' name='keywords'/> <meta content='hacked by ./RootFound404 , Cirebon Cyber Crime' name='Abstract'/> </head> <style> body{ cursor:no-drop; background:url(../3.bp.blogspot.com/-D6nQQ3d_wfw/Ts31QI5aQPI/AAAAAAAAAgA/mMEBDufqDpk/s1600/0_1_1.gif) repeat center center fixed black; ...[2897 bytes skipped]... | ||
http://realspycams.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: realspycams.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 07 Jul 2015 11:03:08 GMT
Accept-Ranges: bytes
ETag: "2bdf2829-be6-5189f39ca9e00"
Server: Apache
Content-Length: 3046
Content-Type: text/html
Last-Modified: Tue, 16 Jun 2015 09:30:32 GMT
...3046 bytes of data.
GET / HTTP/1.1
Host: realspycams.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 07 Jul 2015 11:03:08 GMT
Accept-Ranges: bytes
ETag: "2bdf2829-be6-5189f39ca9e00"
Server: Apache
Content-Length: 3046
Content-Type: text/html
Last-Modified: Tue, 16 Jun 2015 09:30:32 GMT
...3046 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: realspycams.com
Referer: http://www.google.com/search?q=realspycams.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: realspycams.com
Referer: http://www.google.com/search?q=realspycams.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=realspycams.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://realspycams.com/
Result: realspycams.com is not infected or malware details are not published yet.
Result: realspycams.com is not infected or malware details are not published yet.