Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tuxway.fr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tuxway.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 05 Oct 2014 10:36:29 GMT
Server: Apache/2.4.7 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: ci_session=a%3A5%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%227713cdb3bff2ace965327bc4996ded9c%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bi%3A1412505390%3Bs%3A9%3A%22user_data%22%3Bs%3A0%3A%22%22%3B%7D8e3579a40fec9b5e81c97db3064638df; expires=Sun, 05-Oct-2014 12:36:30 GMT; path=/
X-Powered-By: PHP/5.4.6-1ubuntu1
GET / HTTP/1.1
Host: tuxway.fr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 05 Oct 2014 10:36:29 GMT
Server: Apache/2.4.7 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: ci_session=a%3A5%3A%7Bs%3A10%3A%22session_id%22%3Bs%3A32%3A%227713cdb3bff2ace965327bc4996ded9c%22%3Bs%3A10%3A%22ip_address%22%3Bs%3A13%3A%2278.158.11.226%22%3Bs%3A10%3A%22user_agent%22%3Bs%3A50%3A%22Mozilla%2F4.0+%28compatible%3B+MSIE+8.0%3B+Windows+NT+5.1%29%22%3Bs%3A13%3A%22last_activity%22%3Bi%3A1412505390%3Bs%3A9%3A%22user_data%22%3Bs%3A0%3A%22%22%3B%7D8e3579a40fec9b5e81c97db3064638df; expires=Sun, 05-Oct-2014 12:36:30 GMT; path=/
X-Powered-By: PHP/5.4.6-1ubuntu1
Second query (visit from search engine):
GET / HTTP/1.1
Host: tuxway.fr
Referer: http://www.google.com/search?q=tuxway.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tuxway.fr
Referer: http://www.google.com/search?q=tuxway.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tuxway.fr/ | 200 OK Content-Length: 10313 Content-Type: text/html | clean |
http://tuxway.fr/js/modernizr.custom.28468.js | 200 OK Content-Length: 7521 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://tuxway.fr/js/jquery.lightbox_me.js | 200 OK Content-Length: 10540 Content-Type: application/javascript | clean |
http://tuxway.fr/admin/javavalidation/jquery.validate.min.js | 200 OK Content-Length: 21654 Content-Type: application/javascript | clean |
http://tuxway.fr/js/jquery.cslider.js | 200 OK Content-Length: 6841 Content-Type: application/javascript | clean |
http://tuxway.fr/admin/javavalidation/validation_new.js | 200 OK Content-Length: 4451 Content-Type: application/javascript | clean |
http://irishmoc.org/api.js | 404 Not found Content-Length: 1187 Content-Type: text/html | clean |
http://irishmoc.org/ | HTTP/1.1 303 See Other Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 05 Oct 2014 10:36:38 GMT Pragma: no-cache Location: http://www.irishmoc.org/activity.php?s=131475aa9041a42d2503d3ced582c77f Server: Zeus/4.3 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: X-Mapping-cajbdpgf=51A78A9F367C0A8CB409A1E621BC6EDB; path=/ Set-Cookie: bb_sessionhash=131475aa9041a42d2503d3ced582c77f; path=/; HttpOnly Set-Cookie: bb_lastvisit=1412505397; expires=Mon, 05-Oct-2015 10:36:37 GMT; path=/ Set-Cookie: bb_lastactivity=0; expires=Mon, 05-Oct-2015 10:36:37 GMT; path=/ Set-Cookie: PHPSESSID=148k8r89huj0tjdpifas4rksq3; path=/ | clean |
http://www.irishmoc.org/activity.php?s=131475aa9041a42d2503d3ced582c77f | 200 OK Content-Length: 18250 Content-Type: text/html | clean |
http://www.irishmoc.org/clientscript/vbulletin-core.js?v=422 | 200 OK Content-Length: 51946 Content-Type: application/x-javascript | clean |
http://irishmoc.org/clientscript/vbulletin_activitystream.js?v=422 | 200 OK Content-Length: 10072 Content-Type: application/x-javascript | clean |
http://irishmoc.org/clientscript/vbulletin_md5.js?v=422 | 200 OK Content-Length: 5464 Content-Type: application/x-javascript | clean |
http://www.irishmoc.org/clientscript/vbulletin_facebook.js?v=422 | 200 OK Content-Length: 6501 Content-Type: application/x-javascript | clean |
http://irishmoc.org/forum.php?s=131475aa9041a42d2503d3ced582c77f | 200 OK Content-Length: 60800 Content-Type: text/html | clean |
http://irishmoc.org/clientscript/vbulletin_read_marker.js?v=422 | 200 OK Content-Length: 4460 Content-Type: application/x-javascript | clean |