Scanned pages/files
Request | Server response | Status |
http://www.reyhantanitim.com.tr/ | 200 OK Content-Length: 7694 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: .:: Hacked by Win32SystemDown ::. ...[515 bytes skipped]... ;body, a:hover {cursor: url(http://cur.cursors-4u.net/cursors/cur-11/cur1054.cur), progress !important;}</style><a href="http://www.cursors-4u.com/cursor/2012/02/11/chrome-pointer.html" target="_blank" title="Chrome Pointer"><img src="http://cur.cursors-4u.net/cursor.png" border="0" alt="Chrome Pointer" style="position:absolute; top: 0px; right: 0px;" /></a> <title>.:: Hacked by Win32SystemDown ::.</title> <link href='http://fonts.googleapis.com/css?family=Orbitron:700' rel='stylesheet' type='text/css'> <link href='http://fonts.googleapis.com/css?family=Titillium+Web' rel='stylesheet' type='text/css'> <meta name="Description" content=" Hacked By Win32SystemDown, JokerTeam Child Team"> <style> body { background: #000000 url(http://farm9.staticflickr.com/8044/8149686179_780ba9a3e0_b.jp ...[7975 bytes skipped]... | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.4.1/jquery.min.js | 200 OK Content-Length: 70843 Content-Type: text/javascript | clean |
http://www.reyhantanitim.com.tr/test404page.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://www.reyhantanitim.com.tr/cgi-sys/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: reyhantanitim.com.tr
Result:
GET / HTTP/1.1
Host: reyhantanitim.com.tr
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: reyhantanitim.com.tr
Referer: http://www.google.com/search?q=reyhantanitim.com.tr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: reyhantanitim.com.tr
Referer: http://www.google.com/search?q=reyhantanitim.com.tr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=reyhantanitim.com.tr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://reyhantanitim.com.tr/
Result: reyhantanitim.com.tr is not infected or malware details are not published yet.
Result: reyhantanitim.com.tr is not infected or malware details are not published yet.