Scanned pages/files
Request | Server response | Status |
http://www.mytalamarketing.com/ | 200 OK Content-Length: 30338 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: +ADw-/title+AD4-HACKED BY CANKA CYBER WARR+AN0-OR ...[4373 bytes skipped]... 300, delay: 500, animation: {height:'show'} }); jQuery("#nav a").removeAttr("title"); }); //]]> </script> </head> <body> <div id="bgwrapper"> <div id="wrap"> <div id="header"> <h1><a href="http://www.mytalamarketing.com/">+ADw-/title+AD4-HACKED BY CANKA CYBER WARR+AN0-OR +ADw-html+AD4 +ADw-title+AD4-AKINCILAR+ACE +AHw Zalimler +AN0A5w-in Ya+AP4-as+AP0-n Cehennem+ACE /CanKa +AKk 2014 +ADw-/title+AD4 +ADw-head+AD4 +ADw-META http-equiv+AD0-content-type content+AD0-text/html+ADs-charset+AD0-iso-8859-9+AD4 +ADw-META http-equiv+AD0-content-type content+AD0-text/html+ADs-charset+AD0-windows-1254+AD4 +ADw-META http-equiv+AD0-content-type content+AD0-text/html+ADs-charset+AD0-x-mac-turkish ...[29533 bytes skipped]... | ||
http://www.mytalamarketing.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://www.mytalamarketing.com/wp-content/themes/flexibility3/js/superfish.js?ver=3.5.1 | 200 OK Content-Length: 3090 Content-Type: application/javascript | clean |
http://www.mytalamarketing.com/wp-content/plugins/wp-plus-one/wp-plus-one.js?ver=3.5.1 | 200 OK Content-Length: 1138 Content-Type: application/javascript | clean |
http://skadoogle.s3.amazonaws.com/js/skaLinkSense.js | 200 OK Content-Length: 3736 Content-Type: application/x-javascript | clean |
http://skadoogle.com/cache/sa!29949/transparent/j1isc150m3kwtraffic/cat5.0 | HTTP/1.1 302 Found Connection: close Date: Sun, 07 Sep 2014 09:13:50 GMT Location: http://ocmnet.com/cache/cacheAds/powerCache.src.php?cache=sa!29949/transparent/j1isc150m3kwtraffic/cat5.0 Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.7a mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 Content-Length: 460 Content-Type: text/html; charset=iso-8859-1 | clean |
http://ocmnet.com/cache/cacheads/powercache.src.php?cache=sa!29949/transparent/j1isc150m3kwtraffic/cat5.0 | 404 Not Found Content-Length: 3382 Content-Type: text/html | clean |
http://skadoogle.com/cache/si!1/j1p5 | HTTP/1.1 302 Found Connection: close Date: Sun, 07 Sep 2014 09:13:51 GMT Location: http://ocmnet.com/cache/cacheAds/powerCache.src.php?cache=si!1/j1p5 Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.7a mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 Content-Length: 422 Content-Type: text/html; charset=iso-8859-1 | clean |
http://ocmnet.com/cache/cacheads/powercache.src.php?cache=si!1/j1p5 | 404 Not Found Content-Length: 3382 Content-Type: text/html | clean |
http://ocmnet.com/test404page.js | 404 Not Found Content-Length: 3382 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mytalamarketing.com
Result:
GET / HTTP/1.1
Host: mytalamarketing.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: mytalamarketing.com
Referer: http://www.google.com/search?q=mytalamarketing.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mytalamarketing.com
Referer: http://www.google.com/search?q=mytalamarketing.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mytalamarketing.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mytalamarketing.com/
Result: mytalamarketing.com is not infected or malware details are not published yet.
Result: mytalamarketing.com is not infected or malware details are not published yet.