Scanned pages/files
Request | Server response | Status |
http://topmarine.eu/ | 200 OK Content-Length: 19493 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Alarg53 ...[18643 bytes skipped]... lt;/div><!-- /.block --> <div id="block-custom-blocks-news-block" class="block block-custom-blocks"> <h2>News</h2> <div class="content"> <div class="uudised uudised-block-1"><div class="item"> <span class="date">09.07.2015</span> <div class="title"><a href="/eng/node/158">Hacked By Alarg53</a></div> <div class="content">Hacked By Alarg53</div> <span class="extra"><a href="/eng/node/158">Read more...</a></span> </div><div class="item"> <span class="date">15.06.2015</span> <div class="title"><a href="/eng/node/154">Vergi Marina</a></div> ...[5163 bytes skipped]... | ||
http://topmarine.eu/misc/jquery.js?v=1.4.4 | 200 OK Content-Length: 78602 Content-Type: application/javascript | clean |
http://topmarine.eu/misc/jquery.once.js?v=1.2 | 200 OK Content-Length: 2974 Content-Type: application/javascript | clean |
http://topmarine.eu/misc/drupal.js?no6aed | 200 OK Content-Length: 13852 Content-Type: application/javascript | clean |
http://topmarine.eu/sites/all/modules/lightbox2/js/auto_image_handling.js?no6aed | 200 OK Content-Length: 10320 Content-Type: application/javascript | clean |
http://topmarine.eu/sites/all/modules/lightbox2/js/scriptaculous.js?no6aed | 200 OK Content-Length: 2623 Content-Type: application/javascript | clean |
http://topmarine.eu/sites/all/modules/lightbox2/js/lightbox.js?no6aed | 200 OK Content-Length: 45167 Content-Type: application/javascript | clean |
http://topmarine.eu/sites/all/themes/topmarine/jquery-1.6.4.min.js?no6aed | 200 OK Content-Length: 91670 Content-Type: application/javascript | clean |
http://topmarine.eu/est/node/1 | 200 OK Content-Length: 19850 Content-Type: text/html | clean |
http://topmarine.eu/sites/default/files/languages/et_qiXj20hQ4MAiVdKy5ZcAGglvM2B7jKD_8XRkxUL1IvQ.js?no6aed | 200 OK Content-Length: 53 Content-Type: application/javascript | clean |
http://topmarine.eu/eng/node/1 | 200 OK Content-Length: 19493 Content-Type: text/html | clean |
http://topmarine.eu/fi/node/1 | 200 OK Content-Length: 19258 Content-Type: text/html | clean |
http://topmarine.eu/swe/node/1 | 200 OK Content-Length: 20379 Content-Type: text/html | clean |
http://topmarine.eu/sites/default/files/languages/sv_qiXj20hQ4MAiVdKy5ZcAGglvM2B7jKD_8XRkxUL1IvQ.js?no6aed | 200 OK Content-Length: 53 Content-Type: application/javascript | clean |
http://topmarine.eu/swe | 200 OK Content-Length: 20379 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: topmarine.eu
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 23 Jul 2015 21:25:18 GMT
Via: 1.1 varnish
Age: 0
ETag: "1437686767"
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Thu, 23 Jul 2015 21:26:07 GMT
Link: <http://topmarine.eu/eng>; rel="canonical",</eng/node/1>; rel="shortlink"
Set-Cookie: BIGipServerklm_suhtlus_http_pool=rd10o00000000000000000000ffffc27e7c8bo80; path=/
X-Cache: MISS
X-Generator: Drupal 7 (http://drupal.org)
X-Powered-By: PHP/5.3.3-7+squeeze25
X-Varnish: 2143404004
GET / HTTP/1.1
Host: topmarine.eu
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 23 Jul 2015 21:25:18 GMT
Via: 1.1 varnish
Age: 0
ETag: "1437686767"
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Language: en
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Thu, 23 Jul 2015 21:26:07 GMT
Link: <http://topmarine.eu/eng>; rel="canonical",</eng/node/1>; rel="shortlink"
Set-Cookie: BIGipServerklm_suhtlus_http_pool=rd10o00000000000000000000ffffc27e7c8bo80; path=/
X-Cache: MISS
X-Generator: Drupal 7 (http://drupal.org)
X-Powered-By: PHP/5.3.3-7+squeeze25
X-Varnish: 2143404004
Second query (visit from search engine):
GET / HTTP/1.1
Host: topmarine.eu
Referer: http://www.google.com/search?q=topmarine.eu
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: topmarine.eu
Referer: http://www.google.com/search?q=topmarine.eu
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=topmarine.eu
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://topmarine.eu/
Result: topmarine.eu is not infected or malware details are not published yet.
Result: topmarine.eu is not infected or malware details are not published yet.