Scanned pages/files
Request | Server response | Status |
http://dataranmedia.com/ | 200 OK Content-Length: 8056 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By 7codeCrew <html>
<meta charset="utf-8"> <head> <link rel="shortcut icon" href="http://upload.wikimedia.org/wikipedia/commons/e/ed/Animated-Flag-Malaysia.gif"> <title>Hacked By 7codeCrew</title> <style type="text/css"> body { background: url(https://www.facebook.com/ajax/messaging/attachment.php?attach_id=623814784407093&mid=mid.1417219504665%3A6149e2e958ffeaa096&cancel=AYaQFObcxFG4dHAVmXCcZzwLeoLnB_zhYiOfXRiDcbuVMfZ-rwHxgIEnzwnPuDbe2U_z35gV88J1OFMbxbKslWL06gmchitlIpcA9jdjCFQ9JtBHtQsvhszaKJgyPqCetzwyHSXAttMGy5GSsmhkuMhquY-EctFbbLbFlihfmSWSjw) no-repeat center center fixed ...[8972 bytes skipped]... | ||
http://dataranmedia.com/fr/?lv=charpe-lv | 200 OK Content-Length: 7982 Content-Type: text/html | clean |
http://js.ssmarque.fr/fr/zh01.js | 200 OK Content-Length: 806 Content-Type: application/javascript | clean |
http://dataranmedia.com/fr/?lv=lv-en-solde | 200 OK Content-Length: 8430 Content-Type: text/html | clean |
http://dataranmedia.com/fr/?lv=jeans-lv-pas-cher | 200 OK Content-Length: 10694 Content-Type: text/html | clean |
http://dataranmedia.com/fr/?lv=acheter-sac-louis-vuitton-homme | 200 OK Content-Length: 11536 Content-Type: text/html | clean |
http://dataranmedia.com/fr/?nike=nike-blazer-basse-homme | 200 OK Content-Length: 9118 Content-Type: text/html | clean |
http://js.ssmarque.fr/fr/nike01.js | 200 OK Content-Length: 812 Content-Type: application/javascript | clean |
http://dataranmedia.com/fr/?nike=nike-hyperfuse-fireberry | 200 OK Content-Length: 8891 Content-Type: text/html | clean |
http://dataranmedia.com/fr/?nike=nike-air-force-bia?e-42 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://dataranmedia.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://dataranmedia.com/fr/?dg=veste-dg-homme-hivers-2012 | 200 OK Content-Length: 9590 Content-Type: text/html | clean |
http://js.ssmarque.fr/fr/dg01.js | 200 OK Content-Length: 806 Content-Type: application/javascript | clean |
http://dataranmedia.com/fr/?burberry=la-chemise-burberry-homme | 200 OK Content-Length: 10376 Content-Type: text/html | clean |
http://dataranmedia.com/fr/?burberry=fashion-sweat-burberry-enfant | 200 OK Content-Length: 9341 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dataranmedia.com
Result:
HTTP/1.1 200 OK
Date: Sat, 28 Feb 2015 08:05:20 GMT
Accept-Ranges: bytes
ETag: "219d1f4873fd01:0"
Server: Microsoft-IIS/7.0
Content-Length: 8056
Content-Type: text/html
Last-Modified: Tue, 03 Feb 2015 08:03:55 GMT
X-Powered-By: ASP.NET
...8056 bytes of data.
GET / HTTP/1.1
Host: dataranmedia.com
Result:
HTTP/1.1 200 OK
Date: Sat, 28 Feb 2015 08:05:20 GMT
Accept-Ranges: bytes
ETag: "219d1f4873fd01:0"
Server: Microsoft-IIS/7.0
Content-Length: 8056
Content-Type: text/html
Last-Modified: Tue, 03 Feb 2015 08:03:55 GMT
X-Powered-By: ASP.NET
...8056 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: dataranmedia.com
Referer: http://www.google.com/search?q=dataranmedia.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dataranmedia.com
Referer: http://www.google.com/search?q=dataranmedia.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dataranmedia.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dataranmedia.com/
Result: dataranmedia.com is not infected or malware details are not published yet.
Result: dataranmedia.com is not infected or malware details are not published yet.