Scanned pages/files
Request | Server response | Status |
http://www.fx8i.com/ | HTTP/1.1 200 OK Date: Sat, 07 Mar 2015 12:28:16 GMT Accept-Ranges: bytes ETag: "c849e0186658d01:600b" Server: Microsoft-IIS/6.0 Content-Length: 3059 Content-Location: http://www.fx8i.com/index.html Content-Type: text/html Last-Modified: Fri, 06 Mar 2015 23:34:32 GMT X-Powered-By: ASP.NET | clean |
http://www.fx8i.com/index.html | 200 OK Content-Length: 3059 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By JOK3R <title>Hacked By JOK3R</title>
<body> <pre><b><font size=5 face=Tahoma color=#00FF00><center>Hacked By JOK3R</center></font></b></pre> <script language=JavaScript>m='%3Cbr%3E%0A%3Ccenter%3E%3Cpre%3E%3Cb%3E%3Cfont%20size%3D%221%22%20face%3D%22Tahoma%22%20color%3D%22%23FFFFFF%22%3E%3Ch1%3EMy%20Friend%20Your%20Security%20Is%20High%20%21%3C/h1%3E%3C/font%3E%3C/b%3E%3C/pre%3E%0A ...[2686 bytes skipped]... | ||
http://www.fx8i.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fx8i.com
Result:
GET / HTTP/1.1
Host: fx8i.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: fx8i.com
Referer: http://www.google.com/search?q=fx8i.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fx8i.com
Referer: http://www.google.com/search?q=fx8i.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fx8i.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fx8i.com/
Result: fx8i.com is not infected or malware details are not published yet.
Result: fx8i.com is not infected or malware details are not published yet.