Scanned pages/files
Request | Server response | Status |
http://unmaskme.com/ | 200 OK Content-Length: 6672 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HackeD bY z0mb13 ...[566 bytes skipped]... oration: none; } A:Hover, A:Visited:Hover , A.no:Hover, A.no:Visited:Hover { color: #88aace; background-color:#2e2e2e; text-decoration: overline underline; } .style1 {color: #88aace} .style2 {color: 1f1f1f} .jh { color: #F00; } .fghfghf { text-align: center; color: #F6F6F6; } .asdasdasd { color: #F00; } </style> <TITLE>HackeD bY z0mb13</TITLE> <meta name="Keywords" content=""/> </head> <BODY bgColor="#000000" text="#FFFFFF" class="fghfghf" onload="teclear();" oncontextmenu="return false" onselectstart="return false"> <DIV align="center"><SPAN style="FILTER: blur(add=1,direction=170,strength=30); HEIGHT: 50px"> <STYLE>.layermensaje { FONT-SIZE: 10pt; COLOR: #2e2e2e; LINE-HEIGHT: 10pt; FONT-FAMILY: ...[6560 bytes skipped]... | ||
http://unmaskme.com/test404page.js | 404 Not Found Content-Length: 326 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: unmaskme.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 01 Aug 2015 08:25:09 GMT
Accept-Ranges: bytes
ETag: "1a10-4867162b07300"
Server: Apache/2.4.16 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Length: 6672
Content-Type: text/html
Last-Modified: Thu, 13 May 2010 03:30:52 GMT
...6672 bytes of data.
GET / HTTP/1.1
Host: unmaskme.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 01 Aug 2015 08:25:09 GMT
Accept-Ranges: bytes
ETag: "1a10-4867162b07300"
Server: Apache/2.4.16 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Length: 6672
Content-Type: text/html
Last-Modified: Thu, 13 May 2010 03:30:52 GMT
...6672 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: unmaskme.com
Referer: http://www.google.com/search?q=unmaskme.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: unmaskme.com
Referer: http://www.google.com/search?q=unmaskme.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=unmaskme.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://unmaskme.com/
Result: unmaskme.com is not infected or malware details are not published yet.
Result: unmaskme.com is not infected or malware details are not published yet.