Scanned pages/files
Request | Server response | Status |
http://www.studiof5.sk/ | 200 OK Content-Length: 1180 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://picosong.com/j4wm/?rel=0&autoplay=1&loop=1&playlist=sf6ld2b_kdq <iframe width="0" height="0" src="http://picosong.com/j4wm/?rel=0&autoplay=1&loop=1&playlist=sf6ld2b_kdq" frameborder="0" allowfullscreen> Deface/Content modification. The following signature was found: Hacked bY Prosox <html> <head> <meta http-equiv="Content-Language" content="fr"> <link rel="icon" type="image/png" href="http://www.zupimages.net/up/15/35/f90q.png"> <meta property="og:image" content="http://www.zupimages.net/up/15/35/f90q.png"/> <meta content="Hacked bY Prosox" name="keywords"> <meta content="Hacked bY Prosox" name="description"> <iframe width="0" height="0" src="http://picosong.com/J4wM/?rel=0&autoplay=1&loop=1&playlist=sf6LD2B_kDQ" frameborder="0" allowfullscreen></iframe> <meta http-equiv="Content-Type" content="text/html; charset=windows-1252"> <title>Hacked by Prosox</title> </head> & ...[786 bytes skipped]... | ||
http://www.studiof5.sk/test404page.js | 200 OK Content-Length: 1180 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://picosong.com/j4wm/?rel=0&autoplay=1&loop=1&playlist=sf6ld2b_kdq <iframe width="0" height="0" src="http://picosong.com/j4wm/?rel=0&autoplay=1&loop=1&playlist=sf6ld2b_kdq" frameborder="0" allowfullscreen> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: studiof5.sk
Result:
GET / HTTP/1.1
Host: studiof5.sk
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: studiof5.sk
Referer: http://www.google.com/search?q=studiof5.sk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: studiof5.sk
Referer: http://www.google.com/search?q=studiof5.sk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=studiof5.sk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://studiof5.sk/
Result: studiof5.sk is not infected or malware details are not published yet.
Result: studiof5.sk is not infected or malware details are not published yet.