New scan:

Malware Scanner report for thevisaman.com

Malicious/Suspicious/Total urls checked
0/0/10
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/1
Deface / Content modification
Found
Probably the website is defaced. The following signature was found:

-= [Hacked By v1ru5 Group Cyber Army] =-  (7 websites defaced)

See details below

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://thevisaman.com/
HTTP/1.1 200 OK
Date: Thu, 15 Jan 2015 01:06:12 GMT
Accept-Ranges: bytes
ETag: "80dd645a9888cf1:7a330d"
Content-Length: 14621
Content-Location: http://thevisaman.com/index.html
Content-Type: text/html
Last-Modified: Sun, 15 Jun 2014 12:50:15 GMT
X-Powered-By: ASP.NET
clean
http://thevisaman.com/index.html
200 OK
Content-Length: 14621
Content-Type: text/html
suspicious
Deface/Content modification. The following signature was found: -= [Hacked By v1ru5 Group Cyber Army] =-

<head>
</script>

<SCRIPT language=javascript>
msg = "-= [Hacked By v1ru5 Group Cyber Army] =-";
msg = "_ _ _ _" + msg;pos = 0;
function scrollMSG() {
document.title = msg.substring(pos, msg.length) + msg.substring(0, pos);
pos++;
if (pos > msg.length) pos = 0
window.setTimeout("scrollMSG()",200);
}
scrollMSG();
</SCRIPT>

<script type="text/javascript">
function toSpans(span) {
var str=span.firstChild.data;
var a=str.lengt
...[16609 bytes skipped]...


http://adithya.googlecode.com/files/Apctrl%2Bu.js
404 Not Found
Content-Length: 1444
Content-Type: text/html
clean
http://adithya.googlecode.com//www.google.com/
404 Not Found
Content-Length: 1425
Content-Type: text/html
clean
http://adithya.googlecode.com/test404page.js
404 Not Found
Content-Length: 1439
Content-Type: text/html
clean
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js
200 OK
Content-Length: 93868
Content-Type: text/javascript
clean
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
200 OK
Content-Length: 72174
Content-Type: text/javascript
clean
http://jqueryrotate.googlecode.com/svn/trunk/jQueryRotate.js
200 OK
Content-Length: 13892
Content-Type: text/plain
clean
http://www.p0wersurge.com/js/jquery-css-transform.js
200 OK
Content-Length: 4109
Content-Type: application/x-javascript
clean
http://www.p0wersurge.com/js/rotate3Di.js
200 OK
Content-Length: 5389
Content-Type: application/x-javascript
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: thevisaman.com

Result:
HTTP/1.1 200 OK
Date: Thu, 15 Jan 2015 01:06:12 GMT
Accept-Ranges: bytes
ETag: "80dd645a9888cf1:7a330d"
Content-Length: 14621
Content-Location: http://thevisaman.com/index.html
Content-Type: text/html
Last-Modified: Sun, 15 Jun 2014 12:50:15 GMT
X-Powered-By: ASP.NET

...14621 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: thevisaman.com
Referer: http://www.google.com/search?q=thevisaman.com

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=thevisaman.com

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://thevisaman.com/

Result: thevisaman.com is not infected or malware details are not published yet.