Scanned pages/files
Request | Server response | Status |
http://www.transitcoaching.com/ | 200 OK Content-Length: 432 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED by ALIREZA_PROMIS <html><center><body bgcolor="black"><h1 style="color:green;">HACKED by ALIREZA_PROMIS </h1><h1 style="color:white;">ISG (IRAN security GROUP)</h1><h4 style="color:red;">Friends : Mr.Moein - N-Kod - JOK3R - Saeed.Jok3r </h4><p></p><p></p><img src="http://mehrvarzi.ir/wp-content/uploads/2014/02/82568_219.jpg" height="300px" width="500px"><br><h1 style="color:white;">Fuck Arabs<br>www.Iransec.net/forums</h2></center></body></html> | ||
http://www.transitcoaching.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:00:58 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.shweb-creations.com/index.php?page=404 | 200 OK Content-Length: 11141 Content-Type: text/html | clean |
http://www.shweb-creations.com/statistiques/phpmyvisites.js | 200 OK Content-Length: 4405 Content-Type: application/javascript | clean |
http://www.transitcoaching.com/./aide.html | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:00 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.shweb-creations.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:00 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./plan_site.html | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:01 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./index.php | 200 OK Content-Length: 432 Content-Type: text/html | clean |
http://www.transitcoaching.com/./solutions.html | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:02 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./portfolio.html | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:02 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./shweb.html | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:02 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./contacts.html | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:03 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./imprim.php?page=404 | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:03 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./taille_texte.php?taille=plus&page=404 | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:03 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/./taille_texte.php?taille=moins&page=404 | HTTP/1.1 302 Found Connection: close Date: Wed, 03 Jun 2015 22:01:04 GMT Location: http://www.shweb-creations.com/index.php?page=404 Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.transitcoaching.com/index.php?url= | 200 OK Content-Length: 432 Content-Type: text/html | clean |
http://www.transitcoaching.com/./index.php?page=admin&action=1 | 200 OK Content-Length: 432 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: transitcoaching.com
Result:
GET / HTTP/1.1
Host: transitcoaching.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: transitcoaching.com
Referer: http://www.google.com/search?q=transitcoaching.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: transitcoaching.com
Referer: http://www.google.com/search?q=transitcoaching.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=transitcoaching.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://transitcoaching.com/
Result: transitcoaching.com is not infected or malware details are not published yet.
Result: transitcoaching.com is not infected or malware details are not published yet.