Scanned pages/files
Request | Server response | Status |
http://www.ggyixia.com/ | HTTP/1.1 200 OK Date: Wed, 20 May 2015 23:42:35 GMT Accept-Ranges: bytes ETag: "5eb9832577d01:c8e5" Server: Microsoft-IIS/6.0 Content-Length: 3059 Content-Location: http://www.ggyixia.com/index.html Content-Type: text/html Last-Modified: Tue, 14 Apr 2015 22:48:59 GMT X-Powered-By: ASP.NET | clean |
http://www.ggyixia.com/index.html | 200 OK Content-Length: 3059 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://www.youtube.com/embed/eg1vof0zqag?feature=player_embedded&_s&loop=1&autoplay=1 <iframe frameborder="0" height="0" src="http://www.youtube.com/embed/eg1vof0zqag?feature=player_embedded&_s&loop=1&autoplay=1" width="0"> Deface/Content modification. The following signature was found: Hacked by ...[2675 bytes skipped]... e> </head> <body> <div class='wuc-overlay'></div> <div id="wuc-wrapper"></div> <div class="wuc-box"> <br> <font face="Electrolize"> <center> <img src="http://i.imgur.com/UvDlOoc.png"> <p style="font-size:18px;color:white;text-shadow:1px 1px 1px #000;"> <font size="12">Hacked by <font color="brown">KkK1337</font></font><br> I'M NOT <font color="brown">GONNA CHANGE</font> FOR ANYONE.<br> I DON'T CARE WHAT PEOPLE THINK, <font color="brown">BECAUSE I AM ME</font>, AND PROUD OF IT<br><br> </p> </center> </font> </div> </body> </html> | ||
http://www.ggyixia.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ggyixia.com
Result:
GET / HTTP/1.1
Host: ggyixia.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: ggyixia.com
Referer: http://www.google.com/search?q=ggyixia.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ggyixia.com
Referer: http://www.google.com/search?q=ggyixia.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ggyixia.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ggyixia.com/
Result: ggyixia.com is not infected or malware details are not published yet.
Result: ggyixia.com is not infected or malware details are not published yet.