Scanned pages/files
Request | Server response | Status |
http://shiramaru.net/ | 200 OK Content-Length: 47320 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Krad Xin <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en"> <head> <meta name="google-site-verification" content="7IsCsInN6isuuV3skSRMydtmxCx4VI-7ttvxziHpKaY" /> <title>Hacked by Krad Xin</title><meta name="keywords" content="italiasw, italia sw, www.italiasw.com, recensioni, web2, web 2, apps, applicativi, software, windows, windows xp, windows vista, vista, ict, recensioni ict, recensioni software, news, news high tech, blog italia, blog software, italia software, sw, blog informatica, news informatica, articoli informatica, recensioni web 2.0" /><meta name="description" content="BD GREY HAT HACKE ...[57893 bytes skipped]... | ||
http://shiramaru.net/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/x-javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 20008 Content-Type: text/javascript | clean |
http://shiramaru.net/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.25.0-2013.01.18 | 200 OK Content-Length: 15158 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.3.3 | 200 OK Content-Length: 6933 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.9.2 | 200 OK Content-Length: 4693 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.widget.min.js?ver=1.9.2 | 200 OK Content-Length: 6759 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.accordion.min.js?ver=1.9.2 | 200 OK Content-Length: 10454 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.position.min.js?ver=1.9.2 | 200 OK Content-Length: 6645 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.menu.min.js?ver=1.9.2 | 200 OK Content-Length: 9225 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.autocomplete.min.js?ver=1.9.2 | 200 OK Content-Length: 7723 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.button.min.js?ver=1.9.2 | 200 OK Content-Length: 7222 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.datepicker.min.js?ver=1.9.2 | 200 OK Content-Length: 37629 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.mouse.min.js?ver=1.9.2 | 200 OK Content-Length: 2864 Content-Type: application/x-javascript | clean |
http://shiramaru.net/wp-includes/js/jquery/ui/jquery.ui.resizable.min.js?ver=1.9.2 | 200 OK Content-Length: 17325 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: shiramaru.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 28 Feb 2015 22:16:09 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-7
X-Pingback: http://shiramaru.net/xmlrpc.php
X-Powered-By: PHP/5.3.15
GET / HTTP/1.1
Host: shiramaru.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 28 Feb 2015 22:16:09 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-7
X-Pingback: http://shiramaru.net/xmlrpc.php
X-Powered-By: PHP/5.3.15
Second query (visit from search engine):
GET / HTTP/1.1
Host: shiramaru.net
Referer: http://www.google.com/search?q=shiramaru.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: shiramaru.net
Referer: http://www.google.com/search?q=shiramaru.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=shiramaru.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://shiramaru.net/
Result: shiramaru.net is not infected or malware details are not published yet.
Result: shiramaru.net is not infected or malware details are not published yet.