Scanned pages/files
Request | Server response | Status |
http://westtoeastrealty.com/ | 200 OK Content-Length: 1234 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By TurkTeaM.OrG-|HeaveN| ...[191 bytes skipped]... gin="0" topmargin="0" marginwidth="0" marginheight="0"> <style type="text/css"> body{background-color:#000000;} .p{color:#ffff00;} .text{color:#999999;} </style> <br> <center><img src="http://i.hizliresim.com/e2ONDd.png" width="900" height="300">> </center> <center><h1 class="p"><code>Hacked By TurkTeaM.OrG-|HeaveN|</code></h1></center> <hr> <center><p class="Defaced"><code><font size="2" face="Arial" color="white"> <b> 18 MART | Çanakkale Zaferi Kutlu Olsun </b></font></code></p></center> <hr> <center><p class="text"><code><font size="2" face="Arial" color="red"> <b>S4cuRiTy EneMy - LAZRAİL </b></font>& ...[637 bytes skipped]... | ||
http://westtoeastrealty.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: westtoeastrealty.com
Result:
HTTP/1.1 200 OK
Date: Tue, 08 Apr 2014 23:16:08 GMT
Server: Microsoft-IIS/8.0
Content-Length: 1234
Content-Type: text/html
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...1234 bytes of data.
GET / HTTP/1.1
Host: westtoeastrealty.com
Result:
HTTP/1.1 200 OK
Date: Tue, 08 Apr 2014 23:16:08 GMT
Server: Microsoft-IIS/8.0
Content-Length: 1234
Content-Type: text/html
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...1234 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: westtoeastrealty.com
Referer: http://www.google.com/search?q=westtoeastrealty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: westtoeastrealty.com
Referer: http://www.google.com/search?q=westtoeastrealty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=westtoeastrealty.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://westtoeastrealty.com/
Result: westtoeastrealty.com is not infected or malware details are not published yet.
Result: westtoeastrealty.com is not infected or malware details are not published yet.