Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=telecart17.free.fr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://telecart17.free.fr/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://telecart17.free.fr/ | 200 OK Content-Length: 31301 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: perso0.free.fr ...[1952 bytes skipped]... r/><div align="center"> <center> <table border="0" height="36" width="98%"> <tr> <td align="center" height="21" width="16%"> </td> <td colspan="4" height="21" width="58%" bgcolor="#00FFFF"> <p ali/span><b> <font color="#008000" size="2"> <span lang="fr"> </span> <img src="http://perso0.free.fr/cgi-bin/wwwcount.cgi?df=telecart17.dat&dd=D&ft=0" height="16" width="54"></font></b></p> </td> </tr> <tr> <td align="center" height="21" width="145"> <p align="center"><b><font color="#008080">**********</font> </b> </p> </td> <td align="center" height="21" width="232"> <p align="center"><b& ...[2197 bytes skipped]... | ||
http://www.hebdotop.com/cgi-bin/hebdotop.eur?id=261073 | 200 OK Content-Length: 1151 Content-Type: text/html | clean |
http://www.hebdotop.com/ | 200 OK Content-Length: 23143 Content-Type: text/html | clean |
http://www.allosponsor.com/cgi-bin/iframe_sponsor.eur?num_site_aff=30&type=1&popinto=1 | 200 OK Content-Length: 5283 Content-Type: text/html | clean |
http://www.allosponsor.com/ | 200 OK Content-Length: 13541 Content-Type: text/html | clean |
http://www.hebdotop.com/cgi-bin/hebdotop.eur?id=20284 | 200 OK Content-Length: 1150 Content-Type: text/html | clean |
http://www.hebdotop.com/test404page.js | 404 Not Found Content-Length: 294 Content-Type: text/html | clean |
http://www.hebdotop.com/cgi-bin/nbinscr.pl | 200 OK Content-Length: 26 Content-Type: text/html | clean |
http://www.hebdotop.com/javascripts/topgen_accueil.js | 200 OK Content-Length: 3732 Content-Type: application/javascript | clean |
http://www.hebdotop.com/javascripts/topcat19_accueil.js | 200 OK Content-Length: 1952 Content-Type: application/javascript | clean |
http://s11.histats.com/js9.js | 200 OK Content-Length: 7417 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: telecart17.free.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 12 Dec 2014 16:46:08 GMT
Accept-Ranges: bytes
ETag: "f53d89-7a45-54509f28"
Server: Apache/ProXad [Sep 23 2014 15:26:28]
Content-Length: 31301
Content-Type: text/html
Last-Modified: Wed, 29 Oct 2014 08:02:48 GMT
...31301 bytes of data.
GET / HTTP/1.1
Host: telecart17.free.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 12 Dec 2014 16:46:08 GMT
Accept-Ranges: bytes
ETag: "f53d89-7a45-54509f28"
Server: Apache/ProXad [Sep 23 2014 15:26:28]
Content-Length: 31301
Content-Type: text/html
Last-Modified: Wed, 29 Oct 2014 08:02:48 GMT
...31301 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: telecart17.free.fr
Referer: http://www.google.com/search?q=telecart17.free.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: telecart17.free.fr
Referer: http://www.google.com/search?q=telecart17.free.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.