New scan:

Malware Scanner report for kdmsigorta.com

Malicious/Suspicious/Total urls checked
0/0/15
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
Found
Probably the website is defaced. The following signature was found:

HACKED BY ANARCHY CR3W  (13 websites defaced)

See details below

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://kdmsigorta.com/
200 OK
Content-Length: 4656
Content-Type: text/html
suspicious
Deface/Content modification. The following signature was found: HACKED BY ANARCHY CR3W

...[3923 bytes skipped]...
hizmetler2">
<div class="hizmetler2"><a href="?page=talepformu">Fiyat talep formu için tıklayın.</a></div>
<div class="hizmetler3">
<div class="haberler">
<div class="haber_baslik"><a href="?page=haberdetay&haberid=11">HEWSELDE KATLÄ°AM VAR!</a></div>
<div class="haber_detay"><a href="?page=haberdetay&haberid=11">HACKED BY ANARCHY CR3W</a></div>
<div class="haber_baslik"><a href="?page=haberdetay&haberid=10">BOLUDA Kİ FAŞİZAN SALDIRILARI KINIYORUZ!</a></div>
<div class="haber_detay"><a href="?page=haberdetay&haberid=10">HACKED BY ANARCHY CR3W </a></div>
</div>
</div>
<a href="index.php?page=iletisim">
<div class="hizmetler4" style="cursor:pointer" onclick="location.href='?page=iletisim'"
...[988 bytes skipped]...


http://kdmsigorta.com/js/jquery-1.4.2.min.js
200 OK
Content-Length: 72174
Content-Type: application/javascript
clean
http://kdmsigorta.com/js/jquery.nivo.slider.pack.js
200 OK
Content-Length: 7115
Content-Type: application/javascript
clean
http://kdmsigorta.com/js/jquery.prettyPhoto.js
200 OK
Content-Length: 20273
Content-Type: application/javascript
clean
http://kdmsigorta.com/index.php
200 OK
Content-Length: 4656
Content-Type: text/html
clean
http://kdmsigorta.com/?page=hakkimizda&id=14
200 OK
Content-Length: 2974
Content-Type: text/html
clean
http://kdmsigorta.com/?page=hizmetlerimiz&id=13
200 OK
Content-Length: 3674
Content-Type: text/html
clean
http://kdmsigorta.com/?page=talepformu
200 OK
Content-Length: 6092
Content-Type: text/html
clean
http://kdmsigorta.com/?page=iletisim
200 OK
Content-Length: 7145
Content-Type: text/html
clean
http://kdmsigorta.com/test404page.js
404 Not Found
Content-Length: 331
Content-Type: text/html
clean
http://kdmsigorta.com/admin/genel_resim/1394130224_1.jpeg
200 OK
Content-Length: 3191
Content-Type: image/jpeg
clean
http://kdmsigorta.com/admin/genel_resim/1394130228_1.jpeg
200 OK
Content-Length: 3191
Content-Type: image/jpeg
clean
http://kdmsigorta.com/admin/genel_resim/
403 Forbidden
Content-Length: 339
Content-Type: text/html
clean
http://kdmsigorta.com/?page=oto_sigortasi&id=15
200 OK
Content-Length: 2968
Content-Type: text/html
clean
http://kdmsigorta.com/?page=konut_sigortasi&id=16
200 OK
Content-Length: 2979
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: kdmsigorta.com

Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 06 May 2014 00:11:05 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=a7745b6304293cae1c7963f8a851307f; path=/
X-Powered-By: PHP/5.4.23
Second query (visit from search engine):
GET / HTTP/1.1
Host: kdmsigorta.com
Referer: http://www.google.com/search?q=kdmsigorta.com

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=kdmsigorta.com

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kdmsigorta.com/

Result: kdmsigorta.com is not infected or malware details are not published yet.