Scanned pages/files
Request | Server response | Status |
http://parisetoile.fr/ | 200 OK Content-Length: 23112 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked by moroccan-alien ...[17905 bytes skipped]... d=5"><img src="servico/fotos/lisieux_1.jpg"/ style="border:solid 2px #CCC"></a> </li> <li> <h3>Honfleur</h3> <a href="servico.php?id=6"><img src="servico/fotos/honfleur_1.jpg"/ style="border:solid 2px #CCC"></a> </li> <li> <h3>hacked by moroccan-alien</h3> <a href="servico.php?id=7"><img src="servico/fotos/fundacao_claude_monet_1.jpg"/ style="border:solid 2px #CCC"></a> </li> <li> <h3>hacked by moroccan-alien</h3> <a href="servico.php?id=8"><img src="servico/fotos/fontainebleau_1.jpg"/ style="border:solid 2px #CCC"></a> </li> & ...[9862 bytes skipped]... | ||
http://parisetoile.fr/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: parisetoile.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 04 Dec 2015 23:11:38 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: parisetoile.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 04 Dec 2015 23:11:38 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: parisetoile.fr
Referer: http://www.google.com/search?q=parisetoile.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: parisetoile.fr
Referer: http://www.google.com/search?q=parisetoile.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=parisetoile.fr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://parisetoile.fr/
Result: parisetoile.fr is not infected or malware details are not published yet.
Result: parisetoile.fr is not infected or malware details are not published yet.