Scanned pages/files
Request | Server response | Status |
http://studios-beauty.com/ | 200 OK Content-Length: 8024 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED by TheZero ...[5828 bytes skipped]... p" >ÐÐÐТÐÐТÐ</a> <div class="spacer"></div> </div> </div> <div id="content"> <h1 style="margin-bottom: 5px;"><span style="color: #e83b70; font-size: 16px;">ÐÐÐÐ Ð ÐÐШÐÐ</span> в наÑÐ¸Ñ Ñеб ÑÐ°Ð¹Ñ !</h1> <div id="tiny_content"><p> </p> <h1>HACKED by TheZero</h1> <p><img src="http://i.imgur.com/axg1rfV.jpg" border="0" alt="" width="100%" height="280" /></p> <p>HACKED by TheZero</p> <p><br /> <img src="http://www.totallyfreecounter.com/666729djpqof/counter.img?digits=8" border="0" alt="HACKED by TheZero" hspace="0" /><br /> <br /> <a href="http://www.zone-h.org/archive/defacer=TheZero">www.zone-h.org</a> <br /></p> < ...[2856 bytes skipped]... | ||
http://studios-beauty.com/js/prototype.js | 200 OK Content-Length: 126132 Content-Type: application/x-javascript | clean |
http://studios-beauty.com/js/scriptaculous.js?load=effects,builder | 200 OK Content-Length: 2654 Content-Type: application/x-javascript | clean |
http://studios-beauty.com/floatbox/floatbox.js | 200 OK Content-Length: 94274 Content-Type: application/x-javascript | clean |
http://studios-beauty.com/uslugi.php?category_id=48 | 200 OK Content-Length: 5797 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=9 | 200 OK Content-Length: 16209 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=10 | 200 OK Content-Length: 9804 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=19 | 200 OK Content-Length: 18215 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=20 | 200 OK Content-Length: 12678 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=21 | 200 OK Content-Length: 5215 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=23 | 200 OK Content-Length: 14664 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=24 | 200 OK Content-Length: 6350 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=25 | 200 OK Content-Length: 7555 Content-Type: text/html | clean |
http://studios-beauty.com/uslugi.php?category_id=26 | 200 OK Content-Length: 9306 Content-Type: text/html | clean |
http://studios-beauty.com/svatben_den.php | 200 OK Content-Length: 6309 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: studios-beauty.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 18 Jun 2015 05:03:59 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=rb9fcifod83k7pg86ag9vr93u3; path=/
GET / HTTP/1.1
Host: studios-beauty.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 18 Jun 2015 05:03:59 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=rb9fcifod83k7pg86ag9vr93u3; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: studios-beauty.com
Referer: http://www.google.com/search?q=studios-beauty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: studios-beauty.com
Referer: http://www.google.com/search?q=studios-beauty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=studios-beauty.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://studios-beauty.com/
Result: studios-beauty.com is not infected or malware details are not published yet.
Result: studios-beauty.com is not infected or malware details are not published yet.