Scanned pages/files
Request | Server response | Status |
http://marchedesvivants.org/ | 200 OK Content-Length: 38682 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked by bl4ck-t3rrorist ...[15670 bytes skipped]... class="spiffy2"><b></b></b> <b class="spiffy3"></b> <b class="spiffy4"></b> <b class="spiffy5"></b></b> <div class="spiffyfg"> <div> <h2>Derniers posts du blog â</h2> <ul class="lastpostday"> <li><a href="/index.php/blog/25-hacked-by-bl4ck-t3rrorist">hacked by bl4ck-t3rrorist</a></li> <li><a href="/index.php/blog/24-hacked-by-bl4ck-t3rrorist">hacked by bl4ck-t3rrorist</a></li> <li><a href="/index.php/blog/23-marche-des-vivants-2014">MARCHE DES VIVANTS 2014</a></li> <li><a href="/index.php/blog/19-inauguration-du-memorial-de-drancy">Inauguration du Memorial de Drancy</a></li> <li><a href="/index. ...[27931 bytes skipped]... | ||
http://marchedesvivants.org/jelix/jquery/jquery.js | 200 OK Content-Length: 55774 Content-Type: application/x-javascript | clean |
http://marchedesvivants.org/js/jquery.fancybox/jquery.easing.1.3.js | 200 OK Content-Length: 8097 Content-Type: application/x-javascript | clean |
http://marchedesvivants.org/js/jquery.fancybox/jquery.fancybox-1.2.1.pack.js | 200 OK Content-Length: 8303 Content-Type: application/x-javascript | clean |
http://marchedesvivants.org/js/jquery.cycle.all.min.js | 200 OK Content-Length: 27746 Content-Type: application/x-javascript | clean |
http://marchedesvivants.org/js/app.js | 200 OK Content-Length: 316 Content-Type: application/x-javascript | clean |
http://marchedesvivants.org/js/swfobject.js | 200 OK Content-Length: 6880 Content-Type: application/x-javascript | clean |
http://marchedesvivants.org/index.php | 200 OK Content-Length: 38682 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/ | 200 OK Content-Length: 38682 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/index.php | 200 OK Content-Length: 38682 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/page/presentation | 200 OK Content-Length: 41209 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/page/index.php | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 13 Oct 2015 22:34:29 GMT Pragma: no-cache Location: /index.php/ Server: Apache/2.2.20 (Unix) mod_ssl/2.2.20 OpenSSL/0.9.8o Vary: User-Agent Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=d617b173ede5a894a7f3d5e68bd66861; path=/ X-Powered-By: PHP/5.2.13-pl1-gentoo | clean |
http://marchedesvivants.org/test404page.js | 404 Not Found Content-Length: 326 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/page/groupe | 200 OK Content-Length: 47401 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/page/individuel | 200 OK Content-Length: 43619 Content-Type: text/html | clean |
http://marchedesvivants.org/index.php/page/documentation | 200 OK Content-Length: 41885 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: marchedesvivants.org
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 13 Oct 2015 22:34:26 GMT
Pragma: no-cache
Server: Apache/2.2.20 (Unix) mod_ssl/2.2.20 OpenSSL/0.9.8o
Vary: User-Agent
Content-Type: text/html;charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=7b426d6162566cd07429f09581bdf21f; path=/
X-Powered-By: PHP/5.2.13-pl1-gentoo
GET / HTTP/1.1
Host: marchedesvivants.org
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 13 Oct 2015 22:34:26 GMT
Pragma: no-cache
Server: Apache/2.2.20 (Unix) mod_ssl/2.2.20 OpenSSL/0.9.8o
Vary: User-Agent
Content-Type: text/html;charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=7b426d6162566cd07429f09581bdf21f; path=/
X-Powered-By: PHP/5.2.13-pl1-gentoo
Second query (visit from search engine):
GET / HTTP/1.1
Host: marchedesvivants.org
Referer: http://www.google.com/search?q=marchedesvivants.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: marchedesvivants.org
Referer: http://www.google.com/search?q=marchedesvivants.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=marchedesvivants.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://marchedesvivants.org/
Result: marchedesvivants.org is not infected or malware details are not published yet.
Result: marchedesvivants.org is not infected or malware details are not published yet.