Scanned pages/files
Request | Server response | Status |
http://stvco.biz/ | 200 OK Content-Length: 3632 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by ./SF-Resistance ...[866 bytes skipped]... ore(js,fjs);}}(document,"script","twitter-wjs");</script> <!-- twitter fin --> <center> <img src="http://i40.tinypic.com/50i3pt.jpg" border="0"> <!-- musica inicio --> <div align="center"> <p> <font face="Share Tech Mono" size="4" color="black" style="color: #000; text-shadow: 0px 1px 7px #000;"><font color="Blue">[</font>Hacked by ./SF-Resistance<font color="Blue">]</font> <br> <font face="Share Tech Mono" size="8" color="black" style="color: #000; text-shadow: 0px 1px 7px #000;"><font color="red">./</font>Single Attacker \m/<font color="red">\.</font> <br> <font size='5' face="Share Tech Mono" color='red'>Patch your SYSTEM admin</font> <br> <font size="4" face="Share Tech Mono" color='black'><font co ...[2577 bytes skipped]... | ||
http://stvco.biz/hack-db.com/search.html?q=SF-Resistance+125 | 404 Not Found Content-Length: 340 Content-Type: text/html | clean |
http://stvco.biz/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: stvco.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Apr 2014 06:50:02 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: stvco.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Apr 2014 06:50:02 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: stvco.biz
Referer: http://www.google.com/search?q=stvco.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: stvco.biz
Referer: http://www.google.com/search?q=stvco.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=stvco.biz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://stvco.biz/
Result: stvco.biz is not infected or malware details are not published yet.
Result: stvco.biz is not infected or malware details are not published yet.