Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xaydungso.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://xaydungso.com/ | 200 OK Content-Length: 11304 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HaCkeD By_dadaÅ ...[4076 bytes skipped]... im.com/D8V4Ov.jpg" width="600" height="600"><br /><br /><p></p><font face="Orbitron" size="100" color="7te" class="a"></font><font face="Orbitron" size="7" color="red" class="a"></font> <link href="http://fonts.googleapis.com/css?family=Metal+Mania" rel="stylesheet" type="text/css"> <center> <blink><font class="G">HaCkeD By_dadaÅ</font></blink> <link href='http://fonts.googleapis.com/css? family=Metal+Mania' rel='stylesheet' type='text/css'> <link href='http://fonts.googleapis.com/css? family=Knewave' rel='stylesheet' type='text/css'> <link href='http://fonts.googleapis.com/css? family=Cantora+One' rel='stylesheet' type='text/css'> <style> .SupGroup{ ...[9432 bytes skipped]... | ||
http://xaydungso.com/test404page.js | 404 Not Found Content-Length: 207 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xaydungso.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 25 May 2015 00:53:55 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Mon, 25 May 2015 00:53:55 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: bb9bcaf888ab8732e188c74af016ab05=mto02i857d4odbn7q6kj5oqoi6; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: xaydungso.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 25 May 2015 00:53:55 GMT
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Mon, 25 May 2015 00:53:55 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: bb9bcaf888ab8732e188c74af016ab05=mto02i857d4odbn7q6kj5oqoi6; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: xaydungso.com
Referer: http://www.google.com/search?q=xaydungso.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xaydungso.com
Referer: http://www.google.com/search?q=xaydungso.com
Result:
The result is similar to the first query. There are no suspicious redirects found.