Scanned pages/files
Request | Server response | Status |
http://suryaent.com/ | 200 OK Content-Length: 5368 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HaCkeD By ...[3128 bytes skipped]... the new string count = 0; if (count2 != 4) { //write 4 strings count2++; text2 += "<p>"; //a new line text = eval('msg['+count2+'].split("")'); //get the new string to text setTimeout('writetext()', 25); } } } </script> <div id="nothing" style="font-family: 'Courier';"><h2> <p><b><font face="Courier"> HaCkeD By </font> aMIr-FucKeR </b></p></div> <a href="http://farshid.farhat.googlepages.com/"> <body style="background-image: url('animated_60.gif')"></body><script language="JavaScript">var backgroundOffset = 0;var bgObject = eval('document.body');function scrollBG(maxSize) {backgroundOffset = backgroundOffset + 1;if (backgroundOffset > maxSize) backgroundOffset = 0;bgObject.style.backgroundPosition = "0 " + backgroundOf ...[2609 bytes skipped]... | ||
http://suryaent.com/www.musice.ir | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: text/javascript | clean |
http://suryaent.com/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: suryaent.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 11 Jul 2015 14:45:09 GMT
Server: nginx/1.8.0
Content-Type: text/html
GET / HTTP/1.1
Host: suryaent.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 11 Jul 2015 14:45:09 GMT
Server: nginx/1.8.0
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: suryaent.com
Referer: http://www.google.com/search?q=suryaent.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: suryaent.com
Referer: http://www.google.com/search?q=suryaent.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=suryaent.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://suryaent.com/
Result: suryaent.com is not infected or malware details are not published yet.
Result: suryaent.com is not infected or malware details are not published yet.