Scanned pages/files
Request | Server response | Status |
http://www.ssc.by/ | 200 OK Content-Length: 2425 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked By WolfTartous and NIGHTMARE <!DOCTYPE html> <head> <title> hacked By WolfTartous and NIGHTMARE</title> <meta name="keywords" content="[!] HaCkeD By WolfTartous"> <meta name="description" content="[!] HaCkeD By WolfTartous"> </head> <body bgcolor='black'> <font face="Iceland" style="color:red;text-shadow:0px 1px 5px #000;font-size:60px">[!]HI ADMIN HAHAHAHA CONTACT ME WWW.FACEBOOK.COM/WNH.SY HaCkeD By WOLFTARTOUS and NIGHTMARE WTB team </font> ...[2478 bytes skipped]... | ||
http://www.ssc.by/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 20 Jun 2015 06:53:00 GMT Location: http://start.hoster.by/404.html Server: nginx/1.4.4 Content-Length: 215 Content-Type: text/html; charset=iso-8859-1 | clean |
http://start.hoster.by/404.html | 200 OK Content-Length: 5074 Content-Type: text/html | clean |
http://start.hoster.by/contacts.html | 200 OK Content-Length: 5393 Content-Type: text/html | clean |
http://start.hoster.by/test404page.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ssc.by
Result:
GET / HTTP/1.1
Host: ssc.by
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: ssc.by
Referer: http://www.google.com/search?q=ssc.by
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ssc.by
Referer: http://www.google.com/search?q=ssc.by
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ssc.by
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ssc.by/
Result: ssc.by is not infected or malware details are not published yet.
Result: ssc.by is not infected or malware details are not published yet.