Scanned pages/files
Request | Server response | Status |
http://tshirtcannon.com/ | 200 OK Content-Length: 8505 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By xT4runG ...[4577 bytes skipped]... style16">w</span>n<span class="style16">e</span>d</span><span class="style18">,</span></strong></p> <div align="center"> <center> <img src="http://sd.keepcalm-o-matic.co.uk/i/wes-karepmu-aku-ora-urus.png" height="290" width="500"> </center> <p align="center" class="teks-bayangan style6 style20"><span class="style26">Hacked By xT4runG</span> <br /> <span class="style25"><b>RaUrus cR3w</b></span><br /> <p align="center" class="teks-bayangan style6">Hahahaha website jelek, pepes aja dah :v</p> </div> <div id="example1"></div> <div id="example2"> <p align="center" class="teks-bayangan style6">JeJeJKT48 | xT4runG | IRCemip | Bobngops | SimpleS | Cindivers | ShaniaJunianantha40 ...[4847 bytes skipped]... | ||
http://www.baributz.com/js/TipingText.js | 500 Can't connect to www.baributz.com:80 (Bad hostname) Content-Length: 164 Content-Type: text/plain | clean |
http://www.baributz.com/test404page.js | 500 Can't connect to www.baributz.com:80 (Bad hostname) Content-Length: 164 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tshirtcannon.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 23 Jun 2014 13:29:14 GMT
Server: nginx/1.6.0
Content-Type: text/html; charset=UTF-8
GET / HTTP/1.1
Host: tshirtcannon.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 23 Jun 2014 13:29:14 GMT
Server: nginx/1.6.0
Content-Type: text/html; charset=UTF-8
Second query (visit from search engine):
GET / HTTP/1.1
Host: tshirtcannon.com
Referer: http://www.google.com/search?q=tshirtcannon.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tshirtcannon.com
Referer: http://www.google.com/search?q=tshirtcannon.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tshirtcannon.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tshirtcannon.com/
Result: tshirtcannon.com is not infected or malware details are not published yet.
Result: tshirtcannon.com is not infected or malware details are not published yet.