Scanned pages/files
Request | Server response | Status |
http://spinwin.co.il/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 25 Mar 2015 16:10:27 GMT Location: http://www.spinwin.co.il/ Server: Apache Vary: Accept-Encoding Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.spinwin.co.il/ | 200 OK Content-Length: 12850 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Ayyıldız Tim International Force | Sessizce Nöbetteyiz! <!DOCTYPE html>
<html lang="tr"> <head> <meta name="apple-mobile-web-app-capable" content="yes"> <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1, user-scalable=no"> <meta charset="utf-8"> <!-- FAVICON --> <!-- PAGE TITLE --> <title>Hack ...[15186 bytes skipped]... | ||
http://www.uploadhosting.co/uploads/81.17.23.197/jquery-1.11.1.min.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:17:54 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
https://soundcloud.com/3ssh | 200 OK Content-Length: 61270 Content-Type: text/html | clean |
https://a-v2.sndcdn.com/assets/vendor-783a4-98ef9aa.js | 200 OK Content-Length: 303078 Content-Type: application/javascript | clean |
https://a-v2.sndcdn.com/assets/views-ee654-ad7447c.js | 200 OK Content-Length: 303034 Content-Type: application/javascript | clean |
https://a-v2.sndcdn.com/assets/app-f9639-6838224.js | 200 OK Content-Length: 303070 Content-Type: application/javascript | clean |
https://a-v2.sndcdn.com/assets/5-ae97b-73ec289.js | 200 OK Content-Length: 85529 Content-Type: application/javascript | clean |
http://www.uploadhosting.co/ | HTTP/1.1 200 OK Connection: close Date: Wed, 25 Mar 2015 16:17:57 GMT Accept-Ranges: bytes ETag: "6a0ab4-18d-50e2fca49befc" Server: Apache/2.2.15 (CentOS) Content-Length: 397 Content-Type: text/html; charset=UTF-8 Last-Modified: Tue, 03 Feb 2015 14:21:43 GMT | clean |
http://soundcloud.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:10:32 GMT Location: https://soundcloud.com/test404page.js Server: am/2 Content-Length: 0 X-Frame-Options: SAMEORIGIN | clean |
https://soundcloud.com/test404page.js | 404 Not Found Content-Length: 0 | clean |
http://www.uploadhosting.co/3ssh | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:17:58 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/a-sky-full-of-stars-hardwell-vs-cordycept-remix | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:17:58 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/a-trak-blend-out-remix-wip | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:17:58 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/coldplay-sky-full-of-stars-3ssh-remix | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:17:59 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/dubvision-feenixpawl-destination-3ssh-radio-remix | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:00 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:00 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/3ssh-excision-codenamex-live-mix-cordycept | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:00 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/hanging-tree-remix | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:00 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix-day-7 | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:01 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/borgeous-this-could-be-love-remix-day-6 | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:01 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/freakazoid-1-17-2015 | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:01 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/likes | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:02 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/sets | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:02 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/tracks | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:02 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/3ssh/comments | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:02 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/bootstrap.min.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:03 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/jquery.cycle.min.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:03 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/jquery.parallax.min.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:03 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/81.17.23.197/jquery.backstretch.min.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:04 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.uploadhosting.co/uploads/31.7.62.162/scripts.js | HTTP/1.1 302 Found Connection: close Date: Wed, 25 Mar 2015 16:18:04 GMT Location: https://soundcloud.com/3ssh Server: Apache/2.2.15 (CentOS) Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: spinwin.co.il
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 25 Mar 2015 16:10:27 GMT
Location: http://www.spinwin.co.il/
Server: Apache
Vary: Accept-Encoding
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
...233 bytes of data.
GET / HTTP/1.1
Host: spinwin.co.il
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 25 Mar 2015 16:10:27 GMT
Location: http://www.spinwin.co.il/
Server: Apache
Vary: Accept-Encoding
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
...233 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: spinwin.co.il
Referer: http://www.google.com/search?q=spinwin.co.il
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: spinwin.co.il
Referer: http://www.google.com/search?q=spinwin.co.il
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=spinwin.co.il
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://spinwin.co.il/
Result: spinwin.co.il is not infected or malware details are not published yet.
Result: spinwin.co.il is not infected or malware details are not published yet.