Scanned pages/files
Request | Server response | Status |
http://siamtrack.net/ | HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 04 Aug 2014 21:18:23 GMT Pragma: no-cache Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 6167 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=b5361cb1d5035db6a9d09fb98e9ce69c; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://siamtrack.net/intro.php | 200 OK Content-Length: 6971 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by El BaTar <!-- menu --> <title>Hacked by El BaTar</title> <link rel='shortcut icon' href='/favicon.ico' > <meta http-equiv="Content-Type" content="text/html; charset=windows-874"> <meta name="description" content="Hacked by El BaTar"> <meta name="keywords" content="Hacked by El BaTar"> <meta name="verify-v1" content="tYcDW3c47qg/mpPwHkRPigqePuISPy/vZOjxrf+z/qM=" /> <style type="text/css"> <!-- ...[8230 bytes skipped]... | ||
http://siamtrack.net/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8029 Content-Type: application/javascript | clean |
http://siamtrack.net/google.js | 200 OK Content-Length: 2577 Content-Type: application/javascript | clean |
http://siamtrack.net/js/prototype.js | 200 OK Content-Length: 47603 Content-Type: application/javascript | clean |
http://siamtrack.net/js/scriptaculous.js?load=effects | 200 OK Content-Length: 2152 Content-Type: application/javascript | clean |
http://siamtrack.net/js/lightbox.js | 200 OK Content-Length: 23381 Content-Type: application/javascript | clean |
http://siamtrack.net/ufo.js | 200 OK Content-Length: 11002 Content-Type: application/javascript | clean |
http://siamtrack.net/main.php | 200 OK Content-Length: 38878 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21269 Content-Type: text/javascript | clean |
http://siamtrack.net/index.php | HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 04 Aug 2014 21:18:38 GMT Pragma: no-cache Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 6167 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=64a90eeceeacfb01187a6b39afdb0f36; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://siamtrack.net/test404page.js | 404 Not Found Content-Length: 483 Content-Type: text/html | clean |
http://siamtrack.net/forget_pw1.php | 200 OK Content-Length: 1918 Content-Type: text/html | clean |
http://siamtrack.net/signup.php | 200 OK Content-Length: 41408 Content-Type: text/html | clean |
http://siamtrack.net/language.php?language=thai | 200 OK Content-Length: 44 Content-Type: text/html | clean |
http://siamtrack.net/language.php?language=eng | 200 OK Content-Length: 44 Content-Type: text/html | clean |
http://siamtrack.net/
main.php
| 404 Not Found Content-Length: 489 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: siamtrack.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 04 Aug 2014 21:18:23 GMT
Pragma: no-cache
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Length: 6167
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=b5361cb1d5035db6a9d09fb98e9ce69c; path=/
X-Powered-By: PHP/5.2.17
...6167 bytes of data.
GET / HTTP/1.1
Host: siamtrack.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 04 Aug 2014 21:18:23 GMT
Pragma: no-cache
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Length: 6167
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=b5361cb1d5035db6a9d09fb98e9ce69c; path=/
X-Powered-By: PHP/5.2.17
...6167 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: siamtrack.net
Referer: http://www.google.com/search?q=siamtrack.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: siamtrack.net
Referer: http://www.google.com/search?q=siamtrack.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=siamtrack.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://siamtrack.net/
Result: siamtrack.net is not infected or malware details are not published yet.
Result: siamtrack.net is not infected or malware details are not published yet.