Scanned pages/files
Request | Server response | Status |
http://moviemax-hannover.de/ | 200 OK Content-Length: 14698 Content-Type: text/html | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
https://ajax.googleapis.com/ajax/libs/jqueryui/1.8.6/jquery-ui.min.js | 200 OK Content-Length: 196578 Content-Type: text/javascript | clean |
http://moviemax-hannover.de/backend/1.0/js/external/jquery.zrssfeed.min.js | 200 OK Content-Length: 3057 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/js/fancybox/jquery.fancybox-1.3.4.pack.js | 200 OK Content-Length: 15669 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/backend/1.0/js/global/base.js | 200 OK Content-Length: 3514 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/backend/1.0/js/libs/ego.libs.global.js | 200 OK Content-Length: 154498 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/backend/1.0/js/global/ego.frontend.js | 200 OK Content-Length: 5560 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/js/superfish/js/hoverIntent.js | 200 OK Content-Length: 3257 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/js/superfish/js/jquery.bgiframe.min.js | 200 OK Content-Length: 1526 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/js/superfish/js/supersubs.js | 200 OK Content-Length: 3713 Content-Type: application/javascript | suspicious |
Deface/Content modification. The following signature was found: /*Fix problem with IE hacked by Nils Drescher*/ ...[2387 bytes skipped]... ) - thanks Dan Switzer .end().end()[0].clientWidth / fontsize; // add more width to ensure lines don't turn over at certain sizes in various browsers emWidth += o.extraWidth; // restrict to at least minWidth and at most maxWidth if (emWidth > o.maxWidth) { emWidth = o.maxWidth; } else if (emWidth < o.minWidth) { emWidth = o.minWidth; } /*Fix problem with IE hacked by Nils Drescher*/ if($.browser.msie==true) { if($.browser.version.substr(0,1) > 6) emLeft = emWidth - 0.7; else emLeft = emWidth; } else emLeft = emWidth; emLeft += 'em'; emWidth += 'em'; // set ul to width in ems $ul.css('width',emWidth); // restore li floats to avoid IE bugs // set li width to full width of this ul ...[852 bytes skipped]... | ||
http://moviemax-hannover.de/js/superfish/js/superfish.js | 200 OK Content-Length: 5453 Content-Type: application/javascript | clean |
http://moviemax-hannover.de/startseite.html | 200 OK Content-Length: 14698 Content-Type: text/html | clean |
http://moviemax-hannover.de/test404page.js | 404 Not Found Content-Length: 289 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: moviemax-hannover.de
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 17 Jun 2014 05:13:08 GMT
Accept-Ranges: bytes
ETag: "2571831-396a-4fa9c1a10e680"
Server: Apache/2.2.27
Content-Length: 14698
Content-Type: text/html
Last-Modified: Fri, 30 May 2014 11:11:06 GMT
Strict-Transport-Security: max-age=63072000; includeSubDomains
...14698 bytes of data.
GET / HTTP/1.1
Host: moviemax-hannover.de
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 17 Jun 2014 05:13:08 GMT
Accept-Ranges: bytes
ETag: "2571831-396a-4fa9c1a10e680"
Server: Apache/2.2.27
Content-Length: 14698
Content-Type: text/html
Last-Modified: Fri, 30 May 2014 11:11:06 GMT
Strict-Transport-Security: max-age=63072000; includeSubDomains
...14698 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: moviemax-hannover.de
Referer: http://www.google.com/search?q=moviemax-hannover.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: moviemax-hannover.de
Referer: http://www.google.com/search?q=moviemax-hannover.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=moviemax-hannover.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://moviemax-hannover.de/
Result: moviemax-hannover.de is not infected or malware details are not published yet.
Result: moviemax-hannover.de is not infected or malware details are not published yet.