Scanned pages/files
Request | Server response | Status |
http://www.filmfundingsecrets.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 30 Aug 2014 19:37:26 GMT Location: http://www.filmmakerforum.org/ Server: nginx/1.6.1 Content-Length: 314 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.filmmakerforum.org/ | 200 OK Content-Length: 45596 Content-Type: text/html | clean |
http://www.filmmakerforum.org/clientscript/vbulletin-core.js?v=420 | 200 OK Content-Length: 51945 Content-Type: application/x-javascript | clean |
http://www.filmfundingsecrets.com/clientscript/vbulletin_md5.js?v=420 | 200 OK Content-Length: 2456 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: TouchDown By rona404, Hacked By rona404 , Deface By rona404 <html>
<meta content="TouchDown By rona404" name="subject"> <meta content="Owned By rona404" name="Abstract"> <meta name="keywords" content="TouchDown By rona404, Hacked By rona404 , Deface By rona404"> <meta content="Why So serious? you know? you have no choice! you have owned! im owned you" name="description"> <meta content="TouchDown BY rona404" name="copyright"> <meta content="TouchDown BY rona404" name="author"> <title>TouchDown By rona404</title> <link rel="shortcut icon" href="http://th09.deviantart.net/fs71/PRE/i/2010/130/7/1/Indonesia_Gr ...[2266 bytes skipped]... | ||
http://www.filmfundingsecrets.com/test404page.js | 200 OK Content-Length: 2456 Content-Type: text/html | clean |
http://www.filmmakerforum.org/clientscript/vbulletin_md5.js?420 | 200 OK Content-Length: 5464 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: filmfundingsecrets.com
Result:
GET / HTTP/1.1
Host: filmfundingsecrets.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: filmfundingsecrets.com
Referer: http://www.google.com/search?q=filmfundingsecrets.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: filmfundingsecrets.com
Referer: http://www.google.com/search?q=filmfundingsecrets.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=filmfundingsecrets.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://filmfundingsecrets.com/
Result: filmfundingsecrets.com is not infected or malware details are not published yet.
Result: filmfundingsecrets.com is not infected or malware details are not published yet.