Scanned pages/files
Request | Server response | Status |
http://thelittlestcoder.com/ | 200 OK Content-Length: 7377 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Dasilva ...[183 bytes skipped]... onesia3.gif" type="image"> <EMBED SRC="http://divine-music.info/musicfiles/01 The Lazy Song.swf" AUTOSTART="TRUE" LOOP="TRUE" WIDTH="1" HEIGHT="1" ALIGN="CENTER"></EMBED> <meta http-equiv="content-type" content="text/html; <meta content='text/html; charset=utf-8' http-equiv='Content-Type'/> <meta content='index, follow' name='robots'/> <meta content='Hacked By Dasilva' name='description'/> <meta content='Dasilva Biang kerox Hacker Team' name='keywords'/> <meta content='Dasilva Hacker ' http-equiv='Copyright'/> <meta content='Dasilva Deface , indonesia hacker , indonesia defacer , deface indonesia , biang kerox hacker team , biang kerox team ' name='author'/> <meta content='no' http-equiv='imagetoolbar'/> <meta content='Indonesia' name='language'/> <meta content='7' name= ...[7524 bytes skipped]... | ||
http://thelittlestcoder.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 04 Aug 2015 00:14:09 GMT Pragma: no-cache Location: http://www.thelittlestcoder.com/test404page.js Server: Apache/2.4.12 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Tue, 04 Aug 2015 00:14:09 GMT X-Pingback: http://www.thelittlestcoder.com/xmlrpc.php X-Powered-By: PHP/5.3.29 | clean |
http://www.thelittlestcoder.com/test404page.js | 404 Not Found Content-Length: 4437 Content-Type: text/html | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/cufon-yui.js | 200 OK Content-Length: 18263 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/fonts/Museo.font.js | 200 OK Content-Length: 201596 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/DD_roundies.js | 200 OK Content-Length: 8429 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/jquery.js | 200 OK Content-Length: 57272 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/hoverIntent.js | 200 OK Content-Length: 3257 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/superfish.js | 200 OK Content-Length: 3830 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/s3Slider.js | 200 OK Content-Length: 4227 Content-Type: application/javascript | clean |
http://www.thelittlestcoder.com/wp-content/themes/simplefolio/js/custom.js | 200 OK Content-Length: 1140 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: thelittlestcoder.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 04 Aug 2015 00:14:09 GMT
Accept-Ranges: bytes
ETag: "1cd1-4dbd3b0f0dc00"
Server: Apache/2.4.12 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Length: 7377
Content-Type: text/html
Last-Modified: Fri, 03 May 2013 17:29:20 GMT
...7377 bytes of data.
GET / HTTP/1.1
Host: thelittlestcoder.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 04 Aug 2015 00:14:09 GMT
Accept-Ranges: bytes
ETag: "1cd1-4dbd3b0f0dc00"
Server: Apache/2.4.12 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Length: 7377
Content-Type: text/html
Last-Modified: Fri, 03 May 2013 17:29:20 GMT
...7377 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: thelittlestcoder.com
Referer: http://www.google.com/search?q=thelittlestcoder.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: thelittlestcoder.com
Referer: http://www.google.com/search?q=thelittlestcoder.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=thelittlestcoder.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://thelittlestcoder.com/
Result: thelittlestcoder.com is not infected or malware details are not published yet.
Result: thelittlestcoder.com is not infected or malware details are not published yet.