Scanned pages/files
Request | Server response | Status |
http://tvadvertisingcleveland.com/ | 200 OK Content-Length: 11588 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by KamiSecTeam ...[9038 bytes skipped]... inbody"> <div class="component-content"> <div class="rt-blog "> <h1 class="title"> Home </h1> <div class="rt-leading-articles"> <div class="leading-0"> <div class="rt-article"><div class="rt-article-bg"> <p>Hacked by KamiSecTeam</p> <p align="center">Â </p> <p align="center"><strong><span style="color: #ff0000; font-family: Times New Roman; font-size: large;"> Hacked!! KamiSecteam</span></strong></p> <p align="center"><img src="http://i1-games.softpedia-static.com/screenshots/The-Darkness-II-Vendettas-Co-Op-Experience-Trailer_1.jpg" border="0" width="424" height="295" /></p> <h1 align="center"><s ...[4186 bytes skipped]... | ||
http://tvadvertisingcleveland.com/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/media/system/js/mootools-more.js | 200 OK Content-Length: 238128 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/libraries/gantry/js/gantry-buildspans.js | 200 OK Content-Length: 698 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_roknavmenu/themes/fusion/js/fusion.js | 200 OK Content-Length: 25425 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_ppc_simple_spotlight/js/ppc.safejquery.start.js | 200 OK Content-Length: 137 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_ppc_simple_spotlight/js/jquery-1.5.min.js | 200 OK Content-Length: 84587 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_ppc_simple_spotlight/js/ppc.safejquery.end.js | 200 OK Content-Length: 325 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_ppc_simple_spotlight/js/ppc.safejqueryplugin.start.js | 200 OK Content-Length: 222 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_ppc_simple_spotlight/js/jquery.cycle.all.2.74.js | 200 OK Content-Length: 44019 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/modules/mod_ppc_simple_spotlight/js/ppc.safejqueryplugin.end.js | 200 OK Content-Length: 228 Content-Type: application/x-javascript | clean |
http://tvadvertisingcleveland.com/index.php/television-advertising-rates-explained.html | 200 OK Content-Length: 15006 Content-Type: text/html | clean |
http://tvadvertisingcleveland.com/index.php/how-to-advertise-on-television-in-cleveland.html | 200 OK Content-Length: 12307 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tvadvertisingcleveland.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Sun, 20 Dec 2015 04:14:31 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: eb0f0302fa7bd51a2894dbdba2428309=bljd1ldho74fj7ljvk9psl6fe1; path=/
GET / HTTP/1.1
Host: tvadvertisingcleveland.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Sun, 20 Dec 2015 04:14:31 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: eb0f0302fa7bd51a2894dbdba2428309=bljd1ldho74fj7ljvk9psl6fe1; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: tvadvertisingcleveland.com
Referer: http://www.google.com/search?q=tvadvertisingcleveland.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tvadvertisingcleveland.com
Referer: http://www.google.com/search?q=tvadvertisingcleveland.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tvadvertisingcleveland.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tvadvertisingcleveland.com/
Result: tvadvertisingcleveland.com is not infected or malware details are not published yet.
Result: tvadvertisingcleveland.com is not infected or malware details are not published yet.