Scanned pages/files
Request | Server response | Status |
http://technocraftpu.com/ | 200 OK Content-Length: 1071 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By K4m3l-Dz <html> <head> <meta http-equiv="Content-Language" content="fr"> <meta http-equiv="Content-Type" content="text/html; charset=windows-1252"> <title>Hacked By K4m3l-Dz</title> </head> <body> <p align="right"> </p> <p> </p> <p align="center"><font style="font-size: 40pt; font-weight: 700">Hacked By 0qk0q</font><img border="0" src="http://zonehmirrors.org/defaced/2014/08/25/www.unv.org.ma/fbcdn-profile-a.akamaihd.net/hprofile-ak-xpf1/t1.0-1/p160x160/10334249_588764317896220_882354 ...[813 bytes skipped]... | ||
http://technocraftpu.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: technocraftpu.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Apr 2015 09:10:13 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 1071
Content-Type: text/html
Last-Modified: Mon, 02 Mar 2015 14:00:08 GMT
...1071 bytes of data.
GET / HTTP/1.1
Host: technocraftpu.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Apr 2015 09:10:13 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 1071
Content-Type: text/html
Last-Modified: Mon, 02 Mar 2015 14:00:08 GMT
...1071 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: technocraftpu.com
Referer: http://www.google.com/search?q=technocraftpu.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: technocraftpu.com
Referer: http://www.google.com/search?q=technocraftpu.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=technocraftpu.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://technocraftpu.com/
Result: technocraftpu.com is not infected or malware details are not published yet.
Result: technocraftpu.com is not infected or malware details are not published yet.