Scanned pages/files
Request | Server response | Status |
http://cdlaragon.com/ | 200 OK Content-Length: 4917 Content-Type: text/html | suspicious |
Hidden iFrame found. The same iFrame was found in 5 websites. size: 0x0 src: http://www.youtube.com/embed/_pzx11akgum?autoplay=1 <iframe src="http://www.youtube.com/embed/_pzx11akgum?autoplay=1" width="0" height="0" frameborder="0" allowfullscreen> Deface/Content modification. The following signature was found: Hacked By GrEy ViRu$ ...[3000 bytes skipped]... tTimeout("farbschrift()",30); } // Zu Demonstrationszwecken***************** var farbsatz=1; function farbtauscher() { farben = farbbibliothek[farbsatz]; while(farben.length<text.length) { farben = farben.concat(farben); } farbsatz=Math.floor(Math.random()*(farbbibliothek.length-0.0001)); } setInterval("farbtauscher()",5000); text= "Hacked By GrEy ViRu$"; //h string2array(text); divserzeugen(); //document.write(text); </SCRIPT></fonts></font> <style type="text/css">body, a:hover {cursor: url(http://cur.cursors-4u.net/cursors/cur-11/cur1021.ani), url(http://cur.cursors-4u.net/cursors/cur-11/cur1021.png), progress !important;}</style><a href="http://www.cursors-4u.com/cursor/2012/01/22/rotating-x-steel-pointer.html" target="_blank" title="Rotating X-Steel Pointer ...[1784 bytes skipped]... | ||
http://cdlaragon.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cdlaragon.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 08 Apr 2014 11:39:34 GMT
Server: Apache
Content-Length: 4917
Content-Type: text/html
X-Powered-By: PleskLin
...4917 bytes of data.
GET / HTTP/1.1
Host: cdlaragon.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 08 Apr 2014 11:39:34 GMT
Server: Apache
Content-Length: 4917
Content-Type: text/html
X-Powered-By: PleskLin
...4917 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: cdlaragon.com
Referer: http://www.google.com/search?q=cdlaragon.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cdlaragon.com
Referer: http://www.google.com/search?q=cdlaragon.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cdlaragon.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cdlaragon.com/
Result: cdlaragon.com is not infected or malware details are not published yet.
Result: cdlaragon.com is not infected or malware details are not published yet.