Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://kotakfilms.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: kotakfilms.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Tue, 01 Apr 2014 06:19:17 GMT Location: http://39115.thebandradioflyer.com/url?sa=N&source=web&cd=38&ved=0osrTcPk5&url=http://kotakfilms.com/&ei=2ZEufqzI46a3pI2LzVUw9Jq1pA==&usg=ND3yeQucBcEyYsdG4ZaZh9&sig2=FeSX8hXvZFx2ksYa8ZQGd5 Server: Apache/2.2.25 (Unix) mod_ssl/2.2.25 OpenSSL/1.0.0-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 Content-Length: 576 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: gRU=35; path=/; domain=kotakfilms.com; expires=Wed, 09-Apr-2014 05:24:17 GMT | suspicious |
Scanned pages/files
Request | Server response | Status |
http://kotakfilms.com/ | 200 OK Content-Length: 4546 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Cgt_Yakuza <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html><head><link rel="shortcut icon" href="http://www.iconj.com/ico/z/p/zpsi90lfc7.ico" type="image/x-icon" /><meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /><title>Hacked by Cgt_Yakuza</title><style type="text/css"><!--body { background-color: #050505; background-image: url(http://i952.photobucket.com/albums/ae1/virusaworm/fond21_zps7df73fca.jpg); margin-left: 0px; margin-top: 0px; text-align: center; background-repeat: repeat-x;}--><!-- Made By Virusa Worm --></style></head><body bgColor="#101010" onload="teclear();"oncontextmenu='return false;' onkeydo ...[4509 bytes skipped]... | ||
http://kotakfilms.com/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kotakfilms.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://kotakfilms.com/
Result: kotakfilms.com is not infected or malware details are not published yet.
Result: kotakfilms.com is not infected or malware details are not published yet.