Scanned pages/files
Request | Server response | Status |
http://syswizard.com/ | 200 OK Content-Length: 6959 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By $ajad <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<!-- saved from url=(0038)http://www.visualbasico.com/index.html --> <HTML><HEAD><TITLE>Hacked By $ajad</TITLE> <META http-equiv=Content-Language content=en-us> <META http-equiv=Content-Type content="text/html; charset=windows-1252"> <STYLE type=text/css>BODY { SCROLLBAR-FACE-COLOR: #000000; SCROLLBAR-HIGHLIGHT-COLOR: #000000; SCROLLBAR-SHADOW-COLOR: #000000; SCROLLBAR-3DLIGHT-COLOR: #ffffff; SCROLLBAR-ARROW-COLOR: #ffffff; SCROLLBAR-TRACK-COLOR: #000000; SCROLLBAR-DARKSHADOW-COLOR: #ffff ...[8180 bytes skipped]... | ||
http://syswizard.com/test404page.js | 404 Not Found Content-Length: 5345 Content-Type: text/html | clean |
http://syswizard.com/file://faultRequestLogPath | 404 Not Found Content-Length: 5367 Content-Type: text/html | clean |
http://syswizard.com/file://file://faultRequestLogPath | 404 Not Found Content-Length: 5379 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5391 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5403 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5415 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5427 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5439 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5451 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5463 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5475 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5487 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5499 Content-Type: text/html | clean |
http://syswizard.com/file://file://file://file://file://file://file://file://file://file://file://file://file://faultRequestLogPath | 404 Not Found Content-Length: 5511 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: syswizard.com
Result:
HTTP/1.1 200 OK
Date: Fri, 31 Jul 2015 10:40:06 GMT
Accept-Ranges: bytes
ETag: "613a63e5ccb0ca1:0"
Server: Microsoft-IIS/7.5
Content-Length: 6959
Content-Type: text/html
Last-Modified: Thu, 18 Feb 2010 19:02:20 GMT
X-Powered-By: ASP.NET
...6959 bytes of data.
GET / HTTP/1.1
Host: syswizard.com
Result:
HTTP/1.1 200 OK
Date: Fri, 31 Jul 2015 10:40:06 GMT
Accept-Ranges: bytes
ETag: "613a63e5ccb0ca1:0"
Server: Microsoft-IIS/7.5
Content-Length: 6959
Content-Type: text/html
Last-Modified: Thu, 18 Feb 2010 19:02:20 GMT
X-Powered-By: ASP.NET
...6959 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: syswizard.com
Referer: http://www.google.com/search?q=syswizard.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: syswizard.com
Referer: http://www.google.com/search?q=syswizard.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=syswizard.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://syswizard.com/
Result: syswizard.com is not infected or malware details are not published yet.
Result: syswizard.com is not infected or malware details are not published yet.