Scanned pages/files
Request | Server response | Status |
http://puredkny.com/ | HTTP/1.1 301 Moved Permanently Date: Mon, 14 Apr 2014 20:21:04 GMT Location: http://www.dkny.com/ Server: Microsoft-IIS/7.5 Content-Length: 143 Content-Type: text/html; charset=UTF-8 Sv: 35 | clean |
http://www.dkny.com/ | 200 OK Content-Length: 96064 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var axel = Math.random() + ""; var a = axel * 10000000000000; document.write('<iframe src="https://4137152.fls.doubleclick.net/activityi;src=4137152;type=lpsit304;cat=dkny_113;ord=1;num=' + a + '?" width="1" height="1" frameborder="0" style="display:none"></iframe>'); Antivirus reports:
| ||
http://jscssecdkny.ctscdn.com/content/shared-3.20140122.1.js | 200 OK Content-Length: 302269 Content-Type: application/x-javascript | clean |
http://jscssecdkny.ctscdn.com/content/home-3.20140122.1.js | 200 OK Content-Length: 7176 Content-Type: application/x-javascript | clean |
http://jscssecdkny.ctscdn.com/content/tracking-3.20140122.1.js | 200 OK Content-Length: 31646 Content-Type: application/x-javascript | clean |
http://puredkny.com/pages/legal | HTTP/1.1 301 Moved Permanently Date: Mon, 14 Apr 2014 20:21:11 GMT Location: http://www.dkny.com/pages/legal Server: Microsoft-IIS/7.5 Content-Length: 154 Content-Type: text/html; charset=UTF-8 Sv: 36 | clean |
http://www.dkny.com/pages/legal | 200 OK Content-Length: 145564 Content-Type: text/html | clean |
http://jscssecdkny.ctscdn.com/content/document-3.20140122.1.js | 200 OK Content-Length: 1918 Content-Type: application/x-javascript | clean |
http://puredkny.com/pages/ | HTTP/1.1 301 Moved Permanently Date: Mon, 14 Apr 2014 20:21:13 GMT Location: http://www.dkny.com/pages/ Server: Microsoft-IIS/7.5 Content-Length: 149 Content-Type: text/html; charset=UTF-8 Sv: 35 | clean |
http://www.dkny.com/pages/ | 200 OK Content-Length: 96062 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var axel = Math.random() + ""; var a = axel * 10000000000000; document.write('<iframe src="https://4137152.fls.doubleclick.net/activityi;src=4137152;type=lpsit304;cat=dkny_113;ord=1;num=' + a + '?" width="1" height="1" frameborder="0" style="display:none"></iframe>'); Antivirus reports:
| ||
http://www.dkny.com/search | 200 OK Content-Length: 89330 Content-Type: text/html | clean |
http://jscssecdkny.ctscdn.com/content/product-3.20140122.1.js | 200 OK Content-Length: 20561 Content-Type: application/x-javascript | clean |
http://www.dkny.com/account/login | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 14 Apr 2014 20:21:16 GMT Location: https://www.dkny.com/account/login Server: Microsoft-IIS/7.5 Vary: Accept-Encoding, User-Agent Content-Length: 1826 Content-Type: text/html; charset=utf-8 Set-Cookie: auid=-sxQ50KvJttW6ue1mHKNbchqkGvs4AHOJQYMdloYUXvbttinB_d31LS6l0U3aVKNrNYKwv0A-rLbmek4eHV2dQFQXa06kEaTGpKjif6L1U0TLMuvMamVq-r4krDp4bgtSALrJtItdIGEn3cO-rBKD3L3bOZ_brQ-K9jgsQKp3WhRWlq-0; domain=dkny.com; expires=Mon, 23-Jun-2014 07:01:17 GMT; path=/; HttpOnly Sv: 36 | clean |
https://www.dkny.com/account/login | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.dkny.com/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.dkny.com/store | 200 OK Content-Length: 104852 Content-Type: text/html | clean |
http://jscssecdkny.ctscdn.com/content/store-3.20140122.1.js | 200 OK Content-Length: 11524 Content-Type: application/x-javascript | clean |
http://www.dkny.com/checkout/process | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 14 Apr 2014 20:21:28 GMT Location: https://www.dkny.com/checkout/process Server: Microsoft-IIS/7.5 Vary: Accept-Encoding, User-Agent Content-Length: 1833 Content-Type: text/html; charset=utf-8 Set-Cookie: auid=_Wgz0buIwzhLw1N7DHT1QBfl7_4-wf6X10OjPeaHtv-9ngK-1pSdKIyzJaTbLcekzkD4idj2zQmsVmq6TekQoNrTACJ-ji5yDiDXn4BdJdQ0HLEY_kAqphpc44G8pPNV7RmqVErcWf_oTb3r2nuu84POyL4un-uOnJW0CFOYOsTjDHcw0; domain=dkny.com; expires=Mon, 23-Jun-2014 07:01:29 GMT; path=/; HttpOnly Sv: 36 | clean |
https://www.dkny.com/checkout/process | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.dkny.com/new/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: puredkny.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Mon, 14 Apr 2014 20:21:04 GMT
Location: http://www.dkny.com/
Server: Microsoft-IIS/7.5
Content-Length: 143
Content-Type: text/html; charset=UTF-8
Sv: 35
...143 bytes of data.
GET / HTTP/1.1
Host: puredkny.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Mon, 14 Apr 2014 20:21:04 GMT
Location: http://www.dkny.com/
Server: Microsoft-IIS/7.5
Content-Length: 143
Content-Type: text/html; charset=UTF-8
Sv: 35
...143 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: puredkny.com
Referer: http://www.google.com/search?q=puredkny.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: puredkny.com
Referer: http://www.google.com/search?q=puredkny.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=puredkny.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://puredkny.com/
Result: puredkny.com is not infected or malware details are not published yet.
Result: puredkny.com is not infected or malware details are not published yet.