Scanned pages/files
Request | Server response | Status |
http://myozlife.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 18 Feb 2015 20:36:08 GMT Location: http://www.myozlife.com.au/ Server: Apache Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.myozlife.com.au/ | 200 OK Content-Length: 10915 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Black CyberSec Crew ...[9944 bytes skipped]... ion-content"> <div id="block-system-main" class="block block-system"> <div class="content"> <div id="node-1" class="node node-article node-promoted node-teaser clearfix" about="/content/hacked-black-cybersec-crew" typeof="sioc:Item foaf:Document"> <h2 property="dc:title" datatype=""> <a href="/content/hacked-black-cybersec-crew">Hacked by Black CyberSec Crew</a> </h2> <div class="meta submitted"> <span property="dc:date dc:created" content="2014-12-28T21:24:25+11:00" datatype="xsd:dateTime" rel="sioc:has_creator">Submitted by <span class="username" xml:lang="" about="/users/myozlife" typeof="sioc:UserAccount" property="foaf:name" datatype="">admin</span> on Sun, 12/28/2014 - 21:24</span> </div> <div class="conten ...[2246 bytes skipped]... | ||
http://www.myozlife.com.au/misc/jquery.js?v=1.4.4 | 200 OK Content-Length: 78602 Content-Type: text/javascript | clean |
http://www.myozlife.com.au/misc/jquery.once.js?v=1.2 | 200 OK Content-Length: 2974 Content-Type: text/javascript | clean |
http://www.myozlife.com.au/misc/drupal.js?nhaehe | 200 OK Content-Length: 14544 Content-Type: text/javascript | clean |
http://myozlife.com/ko | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 18 Feb 2015 20:36:13 GMT Location: http://www.myozlife.com.au/ko Server: Apache Content-Length: 299 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.myozlife.com.au/ko | 200 OK Content-Length: 11397 Content-Type: text/html | clean |
http://www.myozlife.com.au/sites/default/files/languages/ko_R2eYRH3NKy2Uqr8Il73NxzK8hoir9n8WW-dSMeeeKsQ.js?nhaehe | 200 OK Content-Length: 3491 Content-Type: text/javascript | clean |
http://myozlife.com/ko/forum | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 18 Feb 2015 20:36:16 GMT Location: http://www.myozlife.com.au/ko/forum Server: Apache Content-Length: 305 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.myozlife.com.au/ko/forum | 200 OK Content-Length: 10629 Content-Type: text/html | clean |
http://www.myozlife.com.au/ko/ | 200 OK Content-Length: 11397 Content-Type: text/html | clean |
http://www.myozlife.com.au/ko/user/register | 200 OK Content-Length: 10383 Content-Type: text/html | clean |
http://www.myozlife.com.au/misc/jquery.cookie.js?v=1.0 | 200 OK Content-Length: 961 Content-Type: text/javascript | clean |
http://www.myozlife.com.au/ko/user/ | 200 OK Content-Length: 9185 Content-Type: text/html | clean |
http://www.myozlife.com.au/user | 200 OK Content-Length: 8826 Content-Type: text/html | clean |
http://www.myozlife.com.au/ko/user | 200 OK Content-Length: 9184 Content-Type: text/html | clean |
http://www.myozlife.com.au/ko/user/password | 200 OK Content-Length: 9340 Content-Type: text/html | clean |
http://www.myozlife.com.au/user/password | 200 OK Content-Length: 8980 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: myozlife.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 18 Feb 2015 20:36:08 GMT
Location: http://www.myozlife.com.au/
Server: Apache
Content-Length: 297
Content-Type: text/html; charset=iso-8859-1
...297 bytes of data.
GET / HTTP/1.1
Host: myozlife.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 18 Feb 2015 20:36:08 GMT
Location: http://www.myozlife.com.au/
Server: Apache
Content-Length: 297
Content-Type: text/html; charset=iso-8859-1
...297 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: myozlife.com
Referer: http://www.google.com/search?q=myozlife.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: myozlife.com
Referer: http://www.google.com/search?q=myozlife.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=myozlife.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://myozlife.com/
Result: myozlife.com is not infected or malware details are not published yet.
Result: myozlife.com is not infected or malware details are not published yet.