Scanned pages/files
Request | Server response | Status |
http://biroe-innotech.com/ | 200 OK Content-Length: 38597 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Virus_Gaza ...[1914 bytes skipped]... window()",30) } window.onload=initialize </script> </span> <meta http-equiv="Content-Language" content="ar-eg"> <meta http-equiv="Content-Type" content="text/html; charset=windows-1256"> <span style="background-color: #000000"> <title>Hacked By Virus_Gaza</title> </span> <meta name="keywords" content="Hacked By Virus_Gaza"> <meta name="description" content="Hacked By Virus_Gaza"> </head> <body bgcolor="#000000" text="#FFFFFF" background="http://therunawaygroup.com/wp-content/uploads/2013/09/world.png" style="background-attachment: fixed"> <p align="center"><span lang="en-us"> <font face="Webdings" color="#FFFFFF" style="font- ...[44053 bytes skipped]... | ||
http://biroe-innotech.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: biroe-innotech.com
Result:
HTTP/1.1 200 OK
Date: Wed, 24 Sep 2014 14:12:43 GMT
Accept-Ranges: bytes
ETag: "a47c854fe5c1cf1:0"
Server: Microsoft-IIS/7.0
Content-Length: 38597
Content-Type: text/html
Last-Modified: Wed, 27 Aug 2014 10:54:44 GMT
X-Powered-By: ASP.NET
...38597 bytes of data.
GET / HTTP/1.1
Host: biroe-innotech.com
Result:
HTTP/1.1 200 OK
Date: Wed, 24 Sep 2014 14:12:43 GMT
Accept-Ranges: bytes
ETag: "a47c854fe5c1cf1:0"
Server: Microsoft-IIS/7.0
Content-Length: 38597
Content-Type: text/html
Last-Modified: Wed, 27 Aug 2014 10:54:44 GMT
X-Powered-By: ASP.NET
...38597 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: biroe-innotech.com
Referer: http://www.google.com/search?q=biroe-innotech.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: biroe-innotech.com
Referer: http://www.google.com/search?q=biroe-innotech.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=biroe-innotech.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://biroe-innotech.com/
Result: biroe-innotech.com is not infected or malware details are not published yet.
Result: biroe-innotech.com is not infected or malware details are not published yet.