Scanned pages/files
Request | Server response | Status |
http://sensa.co.zw/ | 200 OK Content-Length: 20968 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked by milad hack ...[11459 bytes skipped]... ption value='gas fryers '>gas fryers </option><option value='gearboxes '>gearboxes </option><option value='goats for sale '>goats for sale </option><option value='grader blades '>grader blades </option><option value='h4ck3d by cyb3rgh05 '>h4ck3d by cyb3rgh05 </option><option value='h4ck3d bycyb3rgh05t '>h4ck3d bycyb3rgh05t </option><option value='hacked by milad hack '>hacked by milad hack </option><option value='health '>health </option><option value='health and beauty '>health and beauty </option><option value='house home '>house home </option><option value='house to let '>house to let </option><option value='houses '>houses </option><option value='houses to buy '>houses to buy </option><option value='hr expert available '>hr expert available < ...[13811 bytes skipped]... | ||
http://sensa.co.zw/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8321 Content-Type: application/javascript | clean |
http://sensa.co.zw/login/ | 200 OK Content-Length: 1898 Content-Type: text/html | clean |
http://sensa.co.zw/login/register-form.php | 200 OK Content-Length: 4130 Content-Type: text/html | clean |
http://sensa.co.zw/test404page.js | 404 Not Found Content-Length: 1806 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/ | 200 OK Content-Length: 2200 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../index.php | 200 OK Content-Length: 20968 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8321 Content-Type: application/javascript | clean |
http://sensa.co.zw/loginots/../login/ | 200 OK Content-Length: 1898 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../login/register-form.php | 200 OK Content-Length: 4130 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../loginots/ | 200 OK Content-Length: 2200 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../loginots/../index.php | 200 OK Content-Length: 20968 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../loginots/../Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8321 Content-Type: application/javascript | clean |
http://sensa.co.zw/loginots/../loginots/../login/ | 200 OK Content-Length: 1898 Content-Type: text/html | clean |
http://sensa.co.zw/loginots/../loginots/../login/register-form.php | 200 OK Content-Length: 4130 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sensa.co.zw
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 22 Mar 2015 00:25:12 GMT
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/5.4.36-0+deb7u3
GET / HTTP/1.1
Host: sensa.co.zw
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 22 Mar 2015 00:25:12 GMT
Server: Apache/2.2.22 (Debian)
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/5.4.36-0+deb7u3
Second query (visit from search engine):
GET / HTTP/1.1
Host: sensa.co.zw
Referer: http://www.google.com/search?q=sensa.co.zw
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sensa.co.zw
Referer: http://www.google.com/search?q=sensa.co.zw
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sensa.co.zw
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://sensa.co.zw/
Result: sensa.co.zw is not infected or malware details are not published yet.
Result: sensa.co.zw is not infected or malware details are not published yet.