Scanned pages/files
Request | Server response | Status |
http://searchyderabad.com/ | 200 OK Content-Length: 72789 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Doctor Nitrogen ...[47977 bytes skipped]... adding="0" cellspacing="0" > <tr> <td width="38%" valign="top" align="center"><img src="images/17d8e1c74f9c1321e14f105593d69ed4.JPG" width="90" border="0" /></td> <td width="62%" valign="top"> <table width="100%" border="0" cellspacing="0" cellpadding="0"> <tr> <td class="orange" align="left" style="padding-left:5px">Hacked by Doctor Nitrogen</td> </tr> <tr> <td style="padding-bottom:2px;padding-left:5px" align="left" ><span class="cast">Cast :</span> <span class="cast-names">Sundeep Kishan, Raku...</span></td> </tr> <tr valign="top"> <td align="center"><img src="images/intersect.gif" /></td> </tr> <tr> <td height="5"></td> & ...[45635 bytes skipped]... | ||
http://searchyderabad.com/js/tabs.js | 200 OK Content-Length: 9611 Content-Type: application/javascript | clean |
http://searchyderabad.com/js/jquery.js | 200 OK Content-Length: 55774 Content-Type: application/javascript | clean |
http://searchyderabad.com/js/scripts.js | 200 OK Content-Length: 5042 Content-Type: application/javascript | clean |
http://searchyderabad.com/js/general.js | 200 OK Content-Length: 18694 Content-Type: application/javascript | clean |
http://searchyderabad.com/css/ddlevelsmenu.js | 200 OK Content-Length: 9571 Content-Type: application/javascript | clean |
http://searchyderabad.com/Scripts/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/javascript | clean |
http://searchyderabad.com/news_slider/bjqs-1.3.js | 200 OK Content-Length: 25041 Content-Type: application/javascript | clean |
http://searchyderabad.com/news_slider/bjqs-1.3.min.js | 200 OK Content-Length: 6990 Content-Type: application/javascript | clean |
http://searchyderabad.com/js/jquery-ui-1.7.2.custom.min.js | 200 OK Content-Length: 192628 Content-Type: application/javascript | clean |
http://searchyderabad.com/index.php | 200 OK Content-Length: 72789 Content-Type: text/html | clean |
http://searchyderabad.com/siteSeeing.php | 200 OK Content-Length: 47360 Content-Type: text/html | clean |
http://searchyderabad.com/classifieds.php | 200 OK Content-Length: 71923 Content-Type: text/html | clean |
http://searchyderabad.com/hspcat.php | 200 OK Content-Length: 88571 Content-Type: text/html | clean |
http://searchyderabad.com/healthStyle.php | 200 OK Content-Length: 36321 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: searchyderabad.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Tue, 29 Apr 2014 19:55:03 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Sat, 26 Jul 1997 05:00:00 GMT
Set-Cookie: PHPSESSID=mf4apmgqeqfjui0g28ta6fpem4; path=/
GET / HTTP/1.1
Host: searchyderabad.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Tue, 29 Apr 2014 19:55:03 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Sat, 26 Jul 1997 05:00:00 GMT
Set-Cookie: PHPSESSID=mf4apmgqeqfjui0g28ta6fpem4; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: searchyderabad.com
Referer: http://www.google.com/search?q=searchyderabad.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: searchyderabad.com
Referer: http://www.google.com/search?q=searchyderabad.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=searchyderabad.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://searchyderabad.com/
Result: searchyderabad.com is not infected or malware details are not published yet.
Result: searchyderabad.com is not infected or malware details are not published yet.