Scanned pages/files
Request | Server response | Status |
http://virtualgym.tv/ | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 03 Aug 2015 07:17:15 GMT Location: http://www.virtualgym.tv/index.aspx Server: Microsoft-IIS/6.0 Content-Length: 152 Content-Type: text/html; charset=utf-8 Set-Cookie: ASP.NET_SessionId=35mlzy45f01lsxixg2aqjhri; path=/; HttpOnly X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://www.virtualgym.tv/index.aspx | 200 OK Content-Length: 111222 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Cloner-47 ...[89732 bytes skipped]... <div class="n_lstr_img"> <a href="news_description.aspx?newsid=38"> <img src='CMS/Uploads/Category/1212url962b477b-6c63-43e5-aa74-dfe7fc522153_tn.jpg.jpg' onerror="this.src='CMS/Uploads/Sessions/clips/newserror/thumbno.jpg'" height="42" width="42" id="imgClip" alt="Hacked by Cloner-47" border="0" title="Hacked by Cloner-47" /></a></div> <div > <p class="n_lstr_dtl"> Hacked by Cloner-47 </p> <p> ...[38107 bytes skipped]... | ||
http://www.virtualgym.tv/Scripts/bookmark.js | 200 OK Content-Length: 894 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/scroller.js | 200 OK Content-Length: 4032 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/ScriptC.js | 200 OK Content-Length: 38125 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/Common.js | 200 OK Content-Length: 5469 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/scriptC.js | 200 OK Content-Length: 38125 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/ieupdate.js | 200 OK Content-Length: 148 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/swfobject.js | 200 OK Content-Length: 6912 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/ticker.js | 200 OK Content-Length: 2492 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/Scripts/googlebar.js | 200 OK Content-Length: 718 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/sifr/sifr.js | 200 OK Content-Length: 10361 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/sifr/sifr-addons.js | 200 OK Content-Length: 1894 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/WebResource.axd?d=jREMbpxeRzYuJFeI55KGAdVZw5LzRuibnDfaqRd58_rwK75lnJqxF99-HG87HDsaLu1YRpmIILmgI-hCs8u6Zceuvrk1&t=634777028520912123 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/ScriptResource.axd?d=Lfs2EtZw_fOOZlaf__Ab2j1eCiShRfrUYOptUGz1EVH29wvfdDVq6hXw4qZZn8tUkP0AQkJhXndumtXiyfprGrhfWGdJ5XErGHX0V0yBqr2Qq5UugnRjLc2MVey4EZg-orPwm2W3iJAHM4VLkvnlMnKd5TU1&t=634777028520912123 | 200 OK Content-Length: 21618 Content-Type: application/x-javascript | clean |
http://virtualgym.tv/ScriptResource.axd?d=a8Jwg4eCF1LhCF8fbawFM8JoHrE3bzULb_iEKvUtyOmeuFGWIdr8aPkYdbJW-le86JxmbHqQBTu_NfMxoa0H2w1jHFamChydebsh10nABq4-qxz-jC-6V2VBXeseSwUF2wSlAg2&t=633368737560000000 | 200 OK Content-Length: 260386 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: virtualgym.tv
Result:
HTTP/1.1 302 Found
Cache-Control: private
Date: Mon, 03 Aug 2015 07:17:15 GMT
Location: http://www.virtualgym.tv/index.aspx
Server: Microsoft-IIS/6.0
Content-Length: 152
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=35mlzy45f01lsxixg2aqjhri; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...152 bytes of data.
GET / HTTP/1.1
Host: virtualgym.tv
Result:
HTTP/1.1 302 Found
Cache-Control: private
Date: Mon, 03 Aug 2015 07:17:15 GMT
Location: http://www.virtualgym.tv/index.aspx
Server: Microsoft-IIS/6.0
Content-Length: 152
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=35mlzy45f01lsxixg2aqjhri; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...152 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: virtualgym.tv
Referer: http://www.google.com/search?q=virtualgym.tv
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: virtualgym.tv
Referer: http://www.google.com/search?q=virtualgym.tv
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=virtualgym.tv
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://virtualgym.tv/
Result: virtualgym.tv is not infected or malware details are not published yet.
Result: virtualgym.tv is not infected or malware details are not published yet.