Scanned pages/files
Request | Server response | Status |
http://wilderness-travel.net/ | 200 OK Content-Length: 1360 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Arab Sec Team <html>
<meta name="keywords" content="S@NT3T3"> <meta name="description" content="S@NT3T3"> <link rel="shortcut icon" href="https://scontent-b- ord.xx.fbcdn.net/hphotos-xpa1/v/t1.0- 9/10351606_812131055512240_3818246588173981771_n.png? oh=7794982d81818b26a1fdf6614947799d&oe=551E9707" type="image/x-icon"> <title>Hacked By Arab Sec Team</title> </head><body bgcolor="#000000"> <center><img src="http://im81.gulfup.com/Os3FmA.png" width="766" height="400"><br><br><br><br> <table width="100%" height="10%"> <tbody><tr><td align="center"> <span style="font: 50px tahoma;size:100px;color:red;text-shadow: 0px 0px 60px;">&l ...[1022 bytes skipped]... | ||
http://wilderness-travel.net/test404page.js | 200 OK Content-Length: 1360 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wilderness-travel.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 31 Dec 2014 13:37:23 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 1360
Content-Type: text/html
...1360 bytes of data.
GET / HTTP/1.1
Host: wilderness-travel.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 31 Dec 2014 13:37:23 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 1360
Content-Type: text/html
...1360 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: wilderness-travel.net
Referer: http://www.google.com/search?q=wilderness-travel.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wilderness-travel.net
Referer: http://www.google.com/search?q=wilderness-travel.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wilderness-travel.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wilderness-travel.net/
Result: wilderness-travel.net is not infected or malware details are not published yet.
Result: wilderness-travel.net is not infected or malware details are not published yet.