Scanned pages/files
Request | Server response | Status |
http://showtechme.com/ | 200 OK Content-Length: 24998 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by ZeroBurnner ...[10313 bytes skipped]... "960" height="4" /></td> </tr> <tr> <td><img src="images/design_03.png" width="960" height="2" /></td> </tr> <tr> <td bgcolor="#1C1E1C"> <ul id="slideshow"> <li> <h3></h3> <span>./homegallery/37.php.txt</span> <p>Hacked by ZeroBurnner</p> <img src="./homegallery/thumb37.php.txt" height="75" width="125"/> </li> <li> <h3></h3> <span>./homegallery/36.jpg</span> <p>Dubai's Vertical Fashion Show at Burj Khalifa</p> <img src="./homegallery/" height="75" width="125"/> </li> <li> <h3></h3> <span>./homegallery/35.j ...[21118 bytes skipped]... | ||
http://showtechme.com/Scripts/swfobject_modified.js | 200 OK Content-Length: 22365 Content-Type: application/x-javascript | clean |
http://showtechme.com/compressed.js | 200 OK Content-Length: 6797 Content-Type: application/x-javascript | clean |
http://showtechme.com/gallery.php?id=22&events=Award-Ceremonies | 200 OK Content-Length: 22626 Content-Type: text/html | clean |
http://showtechme.com//ajax.googleapis.com/ajax/libs/jquery/1.8.3/jquery.min.js/ | 404 Not Found Content-Length: 5278 Content-Type: text/html | clean |
http://showtechme.com/test404page.js | 404 Not Found Content-Length: 5192 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.8/jquery-ui.min.js | 200 OK Content-Length: 200719 Content-Type: text/javascript | clean |
http://showtechme.com/js/jquery.mousewheel.min.js | 200 OK Content-Length: 1404 Content-Type: application/x-javascript | clean |
http://showtechme.com/js/jquery.mCustomScrollbar.min.js | 200 OK Content-Length: 21106 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(b){var a={init:function(c){var e={set_width:false,set_height:false,horizontalScroll:false,scrollInertia:550,scrollEasing:"easeOutCirc",mouseWheel:"pixels",mouseWheelPixels:60,autoDraggerLength:true,scrollButtons:{enable:false,scrollType:"continuous",scrollSpeed:20,scrollAmount:40},advanced:{updateOnBrowserResize:true,updateOnContentResize:false,autoExpandHorizontalScroll:false,autoScrollOnFocus:true},callbacks:{onScrollStart:function(){},onScroll:function(){},onTotalScroll:function(){} Antivirus reports:
| ||
http://showtechme.com/js/lightbox.js | 200 OK Content-Length: 11989 Content-Type: application/x-javascript | clean |
http://showtechme.com/compresed.js | 200 OK Content-Length: 1302 Content-Type: application/x-javascript | clean |
http://showtechme.com/event-production.html | 200 OK Content-Length: 16524 Content-Type: text/html | clean |
http://showtechme.com/includes/js/prototype.js | 200 OK Content-Length: 49387 Content-Type: application/x-javascript | clean |
http://showtechme.com/includes/js/scriptaculous.js?load=effects | 200 OK Content-Length: 2196 Content-Type: application/x-javascript | clean |
http://showtechme.com/includes/js/lightbox.js | 200 OK Content-Length: 11989 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: showtechme.com
Result:
HTTP/1.1 200 OK
Date: Sat, 13 Jun 2015 15:58:03 GMT
Server: Microsoft-IIS/7.0
Content-Length: 24998
Content-Type: text/html
X-Powered-By: PHP/5.2.17
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...24998 bytes of data.
GET / HTTP/1.1
Host: showtechme.com
Result:
HTTP/1.1 200 OK
Date: Sat, 13 Jun 2015 15:58:03 GMT
Server: Microsoft-IIS/7.0
Content-Length: 24998
Content-Type: text/html
X-Powered-By: PHP/5.2.17
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...24998 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: showtechme.com
Referer: http://www.google.com/search?q=showtechme.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: showtechme.com
Referer: http://www.google.com/search?q=showtechme.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=showtechme.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://showtechme.com/
Result: showtechme.com is not infected or malware details are not published yet.
Result: showtechme.com is not infected or malware details are not published yet.