Scanned pages/files
Request | Server response | Status |
http://metropolis-productions.com/ | 200 OK Content-Length: 13817 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HACKED BY Cloner-47 ...[12127 bytes skipped]... n launchSlideshow(){ var images = $('home_gallery').getElements('a'); images[0].fireEvent('click'); return false; } $('home_gallery_btm').addEvent('click',function(e){ e.stop(); launchSlideshow(); }); </script> <ul id="indexnews"> <li> <div class='meta'> <h4><a href='blog/article/34'>HACKED BY Cloner-47</a></h4> <h5>August 19, 2012</h5> </div> <p>HACKED BY Cloner-47</p> </li> <li> <div class='meta'> <h4><a href='blog/article/31'>Orlando WOW Awards . . . WOW!!!! </a></h4> <h5>June 7, 2012</h5> </div> <p>Metropolis Productions has been Nominated for TWO Orlando WOW Awards for "The Grand Tour Gala,...</p> </li> ...[3997 bytes skipped]... | ||
http://metropolis-productions.com/scripts/slimbox.js | 200 OK Content-Length: 4300 Content-Type: text/javascript | clean |
http://metropolis-productions.com/scripts/swfobject.js | 200 OK Content-Length: 6349 Content-Type: text/javascript | clean |
http://metropolis-productions.com/scripts/hijax.js | 200 OK Content-Length: 2799 Content-Type: text/javascript | clean |
http://metropolis-productions.com/scripts/global.js | 200 OK Content-Length: 9162 Content-Type: text/javascript | clean |
http://metropolis-productions.com/scripts/item_switcher.js | 404 Not Found Content-Length: 1164 Content-Type: text/html | clean |
http://metropolis-productions.com/test404page.js | 404 Not Found Content-Length: 1164 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: metropolis-productions.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 15 Oct 2015 19:16:30 GMT
Server: nginx
Content-Type: text/html
X-Powered-By: PleskLin
GET / HTTP/1.1
Host: metropolis-productions.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 15 Oct 2015 19:16:30 GMT
Server: nginx
Content-Type: text/html
X-Powered-By: PleskLin
Second query (visit from search engine):
GET / HTTP/1.1
Host: metropolis-productions.com
Referer: http://www.google.com/search?q=metropolis-productions.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: metropolis-productions.com
Referer: http://www.google.com/search?q=metropolis-productions.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=metropolis-productions.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://metropolis-productions.com/
Result: metropolis-productions.com is not infected or malware details are not published yet.
Result: metropolis-productions.com is not infected or malware details are not published yet.