Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=travel.france24.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://travel.france24.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://travel.france24.com/ | 200 OK Content-Length: 93798 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: observers.france24.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <link rel="shortcut icon" href="/misc/favicon.ico" type="ima ...[4275 bytes skipped]... | ||
http://travel.france24.com/misc/jquery.js?H | 200 OK Content-Length: 31028 Content-Type: application/javascript | clean |
http://travel.france24.com/misc/drupal.js?H | 200 OK Content-Length: 9780 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/modules/aef_utilities/aef_utilities.js?H | 200 OK Content-Length: 2063 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/modules/video/js/video.js?H | 200 OK Content-Length: 1221 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/modules/views/js/base.js?H | 200 OK Content-Length: 3929 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/modules/views/js/dependent.js?H | 200 OK Content-Length: 6648 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/modules/better_exposed_filters/better_exposed_filters.js?H | 200 OK Content-Length: 2827 Content-Type: application/javascript | clean |
http://travel.france24.com/misc/autocomplete.js?H | 200 OK Content-Length: 7078 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/themes/fr24/js/jquery.carouFredSel-2.5.2-packed.js?H | 200 OK Content-Length: 11208 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/themes/fr24/js/script.js?H | 200 OK Content-Length: 1509 Content-Type: application/javascript | clean |
http://connect.facebook.net/en_US/all.js | 200 OK Content-Length: 162593 Content-Type: application/x-javascript | clean |
http://travel.france24.com/sites/all/modules/aef_utilities/aef_utilities_views_base_override.js?H | 200 OK Content-Length: 633 Content-Type: application/javascript | clean |
http://travel.france24.com/sites/all/modules/aef_nedstat/aef_nedstat.js?H | 200 OK Content-Length: 4318 Content-Type: application/javascript | clean |
http://travel.france24.com/voyage | 200 OK Content-Length: 93798 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: observers.france24.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <link rel="shortcut icon" href="/misc/favicon.ico" type="ima ...[4275 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: travel.france24.com
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Mon, 25 Aug 2014 20:55:20 GMT
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Mon, 25 Aug 2014 20:55:20 GMT
Set-Cookie: SESS6cee1ef41163ae1d840d71f8a7c93899=bffdee4638782c10f3a91f82358638f8; expires=Thu, 18 Sep 2014 00:28:40 GMT; path=/; domain=.travel.france24.com
Set-Cookie: TS018c5aba=0106fd4bec39c51cb0df8c87a9bdc372d362eaa4bb01b055a50123bf8554d53a368bf0402b; Path=/
Set-Cookie: TS01117f0a=0106fd4bec85d8e6830d9fb91cf421ecc052d133c862ace118b4ec42d4346a2d49bfbe0f60454ec229b6a8b4b121f0e3f3e6e93776; path=/; domain=.travel.france24.com
GET / HTTP/1.1
Host: travel.france24.com
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Mon, 25 Aug 2014 20:55:20 GMT
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Mon, 25 Aug 2014 20:55:20 GMT
Set-Cookie: SESS6cee1ef41163ae1d840d71f8a7c93899=bffdee4638782c10f3a91f82358638f8; expires=Thu, 18 Sep 2014 00:28:40 GMT; path=/; domain=.travel.france24.com
Set-Cookie: TS018c5aba=0106fd4bec39c51cb0df8c87a9bdc372d362eaa4bb01b055a50123bf8554d53a368bf0402b; Path=/
Set-Cookie: TS01117f0a=0106fd4bec85d8e6830d9fb91cf421ecc052d133c862ace118b4ec42d4346a2d49bfbe0f60454ec229b6a8b4b121f0e3f3e6e93776; path=/; domain=.travel.france24.com
Second query (visit from search engine):
GET / HTTP/1.1
Host: travel.france24.com
Referer: http://www.google.com/search?q=travel.france24.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: travel.france24.com
Referer: http://www.google.com/search?q=travel.france24.com
Result:
The result is similar to the first query. There are no suspicious redirects found.