Scanned pages/files
Request | Server response | Status |
http://francais-new-york.com/ | 200 OK Content-Length: 1428 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By Mauritania C <html idmmzcc-ext-docid="583608320" class="no-js seed-csp4" lang="en"><head>
<meta http-equiv="content-type" content="text/html; charset=UTF-8"> <style id="igtranslator-color" type="text/css"></style></head><body background="http://thepaperwall.com/wallpapers/video_games/big/big_d3d6de56352dde008aecf7679ece688356d3e340.jpg"><center></center> <title>Hacked By Mauritania C'?Ãérs</title> <meta charset="utf-8"> <p id="embed"> <iframe scrolling="no" src="Hacked%20By%20n00berox_files/ieWmeHhlAHgautoplay1" frameborder="no" height="450" hidden="true" width="100%"></iframe> </p> <style type="text/css">body, a:hover {cursor: url(http://cur.cursors-4u.net/cursors/cur-11/cur1027.png), progress !important ...[896 bytes skipped]... | ||
http://francais-new-york.com/test404page.js | 200 OK Content-Length: 1428 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: francais-new-york.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 03 Dec 2015 03:24:37 GMT
Server: cloudflare-nginx
Content-Type: text/html; charset=UTF-8
CF-RAY: 24ec28df390c2adf-WAW
Set-Cookie: __cfduid=d1958e68687f8937988d06026fe0f848e1449113077; expires=Fri, 02-Dec-16 03:24:37 GMT; path=/; domain=.francais-new-york.com; HttpOnly
Set-Cookie: X-Mapping-mlknngpl=46DF8DE093A102DCCF801B66AE546F6E; path=/
GET / HTTP/1.1
Host: francais-new-york.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 03 Dec 2015 03:24:37 GMT
Server: cloudflare-nginx
Content-Type: text/html; charset=UTF-8
CF-RAY: 24ec28df390c2adf-WAW
Set-Cookie: __cfduid=d1958e68687f8937988d06026fe0f848e1449113077; expires=Fri, 02-Dec-16 03:24:37 GMT; path=/; domain=.francais-new-york.com; HttpOnly
Set-Cookie: X-Mapping-mlknngpl=46DF8DE093A102DCCF801B66AE546F6E; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: francais-new-york.com
Referer: http://www.google.com/search?q=francais-new-york.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: francais-new-york.com
Referer: http://www.google.com/search?q=francais-new-york.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=francais-new-york.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://francais-new-york.com/
Result: francais-new-york.com is not infected or malware details are not published yet.
Result: francais-new-york.com is not infected or malware details are not published yet.