Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ram72.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ram72.net/ | HTTP/1.1 200 OK Connection: close Date: Thu, 18 Dec 2014 01:45:13 GMT Accept-Ranges: bytes Server: Apache Vary: Accept-Encoding Content-Length: 119 Content-Type: text/html Set-Cookie: 240planBAK=R2339303237; path=/; expires=Thu, 18-Dec-2014 03:05:41 GMT Set-Cookie: 240plan=R915281304; path=/; expires=Thu, 18-Dec-2014 02:46:05 GMT | clean |
http://ram1983.jimdo.com/ | 200 OK Content-Length: 29488 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ram72.net <!DOCTYPE html> <html lang="fr-FR"><head> <meta charset="utf-8"/> <meta http-equiv="X-UA-Compatible" content="IE=edge"/> <meta name="robots" content="index, follow, archive"/> <title>Accueil - Site de ram1983 !</title> <link rel="shortcut icon" href="//a2.jimstatic.com/s/img/favicon.ico"/> <link rel="alternate" type="applic ...[4052 bytes skipped]... | ||
http://ram1983.jimdo.com//a1.jimstatic.com/app/cdn/min/group/web.js?1418832264/ | 404 Not Found Content-Length: 21169 Content-Type: text/html | clean |
http://france.meteofrance.com/portlet/plugins/meteo/VignetteMeteoVille1.javascript?idLieu=721380 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 18 Dec 2014 01:45:14 GMT Location: http://www.meteofrance.com/mf3-rpc-portlet/rest/vignettepartenaire/721380/type/VILLE_FRANCE/size/MINI_VIGNETTE Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 318 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.meteofrance.com/mf3-rpc-portlet/rest/vignettepartenaire/721380/type/ville_france/size/mini_vignette | 200 OK Content-Length: 31 Content-Type: text/plain | clean |
http://www.meteofrance.com/test404page.js | HTTP/1.1 404 Introuvable Connection: close Date: Thu, 18 Dec 2014 01:45:15 GMT Server: nginx Vary: Accept-Encoding Content-Type: text/html;charset=ISO-8859-1 Set-Cookie: token=4f729a86acca27ccfeaa21a14a77e2b6 | clean |
http://www.meteofrance.com/page-non-trouvee | 400 Mauvaise RequĂȘte Content-Length: 25049 Content-Type: text/html | clean |
http://www.meteofrance.com/mf3-base-theme/js/lib/modernizr.js | 200 OK Content-Length: 12148 Content-Type: application/x-javascript | clean |
http://www.meteofrance.com//static.adserver.pm/head/METEOFRANCE/RG/ | HTTP/1.1 404 Introuvable Connection: close Date: Thu, 18 Dec 2014 01:45:16 GMT Server: nginx Vary: Accept-Encoding Content-Type: text/html;charset=ISO-8859-1 Set-Cookie: token=ab30fa2914d916a8802f62c9ab151c42 | clean |
http://www.meteofrance.com/mf3-base-theme/js/mfr/mfrloader.js?1.22.0 | 200 OK Content-Length: 39488 Content-Type: application/x-javascript | clean |
http://www.meteofrance.com/mf3-base-theme/js/lib/require.js | 200 OK Content-Length: 16278 Content-Type: application/x-javascript | clean |
http://www.clocklink.com/embed.js | 200 OK Content-Length: 1462 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ram72.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 01:45:13 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 119
Content-Type: text/html
Set-Cookie: 240planBAK=R2339303237; path=/; expires=Thu, 18-Dec-2014 03:05:41 GMT
Set-Cookie: 240plan=R915281304; path=/; expires=Thu, 18-Dec-2014 02:46:05 GMT
...119 bytes of data.
GET / HTTP/1.1
Host: ram72.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 01:45:13 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 119
Content-Type: text/html
Set-Cookie: 240planBAK=R2339303237; path=/; expires=Thu, 18-Dec-2014 03:05:41 GMT
Set-Cookie: 240plan=R915281304; path=/; expires=Thu, 18-Dec-2014 02:46:05 GMT
...119 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ram72.net
Referer: http://www.google.com/search?q=ram72.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ram72.net
Referer: http://www.google.com/search?q=ram72.net
Result:
The result is similar to the first query. There are no suspicious redirects found.