Scanned pages/files
Request | Server response | Status |
http://repeta.ru/ | 200 OK Content-Length: 19098 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by RedHaT ...[19260 bytes skipped]... ;p></head></p> <p><body text="#FFFFFF" bgcolor="#000000"></p> <p align="center"> <p><a target="_blank" href="http://kizilsapkalihackerlar.blogspot.com.tr/"><br /> <img border="0" src="http://i.hizliresim.com/kkn847.gif" width="320" height="240"></a></p> <p align="center"><font face="Impact" size="5" color="#FF0000">Hacked by RedHaT<br /> </font><b><font color="#FF0000" face="Tahoma" size="5"><br /> (KızılŞapkalıHackerlar)</font></b><font face="Impact" size="5" color="#FF0000"></p> <p align="center"><font color="#808080" face="Tahoma" size="2">"Orospu; para karşılığı birlikte olan kadına denir, Senin ki kuyruk acıs&# ...[4009 bytes skipped]... | ||
http://repeta.ru/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://repeta.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://repeta.ru/wp-content/plugins/anti-spam/js/anti-spam.js?ver=1.8 | 200 OK Content-Length: 1726 Content-Type: application/javascript | clean |
http://repeta.ru/wp-content/themes/back2school/script.js | 200 OK Content-Length: 6922 Content-Type: application/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 22039 Content-Type: text/javascript | clean |
http://repeta.ru/o-nas/ | 200 OK Content-Length: 19819 Content-Type: text/html | clean |
http://repeta.ru/uslugi/ | 200 OK Content-Length: 19555 Content-Type: text/html | clean |
http://repeta.ru/voprosy-otvety/ | 200 OK Content-Length: 20096 Content-Type: text/html | clean |
http://repeta.ru/vuzy-moskvy/ | 200 OK Content-Length: 109433 Content-Type: text/html | clean |
http://repeta.ru/obrazovanie/ | 200 OK Content-Length: 66226 Content-Type: text/html | clean |
http://repeta.ru/article/redhat/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://repeta.ru/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://repeta.ru/article/kak-vibrat-horoshego-parikmahera/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://repeta.ru/article/soveti-pri-podgotovke-k-ekzamenam/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: repeta.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 19 May 2015 11:44:57 GMT
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Cache: HIT from Backend
X-Died: timeout at scan.pm line 1566.
X-Pingback: http://repeta.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: repeta.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 19 May 2015 11:44:57 GMT
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Cache: HIT from Backend
X-Died: timeout at scan.pm line 1566.
X-Pingback: http://repeta.ru/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: repeta.ru
Referer: http://www.google.com/search?q=repeta.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: repeta.ru
Referer: http://www.google.com/search?q=repeta.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=repeta.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://repeta.ru/
Result: repeta.ru is not infected or malware details are not published yet.
Result: repeta.ru is not infected or malware details are not published yet.