Scanned pages/files
Request | Server response | Status |
http://saintzak.net/ | HTTP/1.1 302 Found Connection: close Date: Sat, 28 Mar 2015 05:11:13 GMT Location: http://saintzak.com Server: Apache Content-Length: 203 Content-Type: text/html; charset=iso-8859-1 | clean |
http://saintzak.com/ | 200 OK Content-Length: 2724 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HackeD By Ashik Iqbal Chy ...[1603 bytes skipped]... 00FF00;}a:active { text-decoration: none; color: #00FF00;}.button {color: #FFFFFF; border: 1px solid #084B8E; background-color: #719BC5}.TextBox {border: 1px solid #084B8E}.style3 {color: #00FF00}.text {font-family: Courier new; font-size: 18px}.title {font-family: Courier new; font-size: 22px;}.footer {font-size: 12px;}</style></head><body><b><center><font color="5FFC62" size=6> HackeD By Ashik Iqbal Chy </font><font S</font> </br></br><center> <img alt="" src="http://4.bp.blogspot.com/_vfRBOoFARwM/SUMAk51_fLI/AAAAAAAABV0/HDXgm2BLktk/s400/Fuck+you.jpg"><body><br><center><font color="red" size=6> Hello Admin , Why So Serious !?! <img alt="" src="http://i49.tinypic.com/2vud8cn.gif"></font></br><br><font color=#CFDBD8> root@Chy[~] uid=0(root) gid=0(root) groups=0(root)<br>& ...[501 bytes skipped]... | ||
http://saintzak.com/test404page.js | 200 OK Content-Length: 2724 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: saintzak.net
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 28 Mar 2015 05:11:13 GMT
Location: http://saintzak.com
Server: Apache
Content-Length: 203
Content-Type: text/html; charset=iso-8859-1
...203 bytes of data.
GET / HTTP/1.1
Host: saintzak.net
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 28 Mar 2015 05:11:13 GMT
Location: http://saintzak.com
Server: Apache
Content-Length: 203
Content-Type: text/html; charset=iso-8859-1
...203 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: saintzak.net
Referer: http://www.google.com/search?q=saintzak.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: saintzak.net
Referer: http://www.google.com/search?q=saintzak.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=saintzak.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://saintzak.net/
Result: saintzak.net is not infected or malware details are not published yet.
Result: saintzak.net is not infected or malware details are not published yet.