Scanned pages/files
Request | Server response | Status |
http://www.stop-style.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: close Date: Mon, 16 Jun 2014 00:13:05 GMT Pragma: private Location: http://www.stop-style.com/home.html Server: Apache Content-Length: 0 Content-Type: text/html; charset=windows-1256 Set-Cookie: bbsessionhash=537f16df0fc2ca3fd981bbed0b3e2f4b; path=/; HttpOnly Set-Cookie: bblastvisit=1402877585; expires=Tue, 16-Jun-2015 00:13:05 GMT; path=/ Set-Cookie: bblastactivity=0; expires=Tue, 16-Jun-2015 00:13:05 GMT; path=/ X-UA-Compatible: IE=7 | clean |
http://www.stop-style.com/home.html | 200 OK Content-Length: 18444 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HackeD By ...[5483 bytes skipped]... MS; font-style: normal; font-variant: normal; font-weight: normal; line-height: normal; font-size-adjust: none; font-stretch: normal; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0, 0, 0); word-spacing: 0px; background-color: rgb(0, 0, 0)" class="Apple-style-span"> <em style="font-style: normal"> <span style="font-weight: bold; text-shadow: white 0px 0px 12px; color: white;">HackeD By <span lang="en-us">Dhom501</span></span></em></span></span></span></font><span style="color: red;" class="style14"><font color="#ff0000"><b><strong><span lang="en-us"><font face="Eras Bold ITC" size="6"><br> </font></span></strong></b></font></span><p> <img border="0" src="http://store3.up-00.com/Feb12/x8Z48102.jpg" width="60 ...[16582 bytes skipped]... | ||
http://www.stop-style.com/test404page.js | 404 Not Found Content-Length: 399 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: stop-style.com
Result:
GET / HTTP/1.1
Host: stop-style.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: stop-style.com
Referer: http://www.google.com/search?q=stop-style.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: stop-style.com
Referer: http://www.google.com/search?q=stop-style.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=stop-style.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://stop-style.com/
Result: stop-style.com is not infected or malware details are not published yet.
Result: stop-style.com is not infected or malware details are not published yet.