Scanned pages/files
| Request | Server response | Status |
http://lady-tone.com/ | 200 OK Content-Length: 3168 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Dr.s4udi <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <!-- saved from url=(0024)http://viewcvs.morrk.de/ --> <!-- saved from url=(0033)http://www.minglemangle.org/main/ --><!-- saved from url=(0035)http://www.new-lover.com/index.html --><!-- saved from url=(0028)http://www.cdcjobs.com/pics/ --><HTML><HEAD><TITLE> Hacked By Dr.s4udi</TITLE> <META http-equiv=Content-Type content="text/html; charset=iso-8859-1"> <meta name="keywords" content="Hacked By Dr.s4udi"> <meta name="description" content="Hacked By Dr.s4udi"> <META content="MSHTML 6.00.2900.2180" name=GENERATOR></HEAD> <BODY oncontextmenu="return false" onselectstart="return false" onafterprint=onafterprint() bgColor=#000000 onbeforeprint= ...[3147 bytes skipped]... | ||
http://lady-tone.com/test404page.js | 404 Not Found Content-Length: 467 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lady-tone.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 04 May 2014 07:34:00 GMT
Accept-Ranges: bytes
ETag: "52e1ad-c60-49130c7008380"
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4
Content-Length: 3168
Content-Type: text/html
Last-Modified: Sun, 26 Sep 2010 22:03:10 GMT
...3168 bytes of data.
GET / HTTP/1.1
Host: lady-tone.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 04 May 2014 07:34:00 GMT
Accept-Ranges: bytes
ETag: "52e1ad-c60-49130c7008380"
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4
Content-Length: 3168
Content-Type: text/html
Last-Modified: Sun, 26 Sep 2010 22:03:10 GMT
...3168 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: lady-tone.com
Referer: http://www.google.com/search?q=lady-tone.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lady-tone.com
Referer: http://www.google.com/search?q=lady-tone.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=lady-tone.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://lady-tone.com/
Result: lady-tone.com is not infected or malware details are not published yet.
Result: lady-tone.com is not infected or malware details are not published yet.
