Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wrcloud.cluster015.ovh.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wrcloud.cluster015.ovh.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://wrcloud.cluster015.ovh.net/ | 200 OK Content-Length: 17536 Content-Type: text/html | suspicious |
Suspicious code found <footer id="footer-wrapper"> <div class="clear"></div> <!--footer content--> <div id="footer-extra-wrapper" class="full-width-wrapper"> <div id="footer-info-content" class="fixed-width-wrapper"> <div class="copyright float-left"> © 2012 <a href="#">Akabi</a>. All Rights Reserved. Powered by <a href="http://www.pixel-it.be">Pixel IT</a>. </div> <div class="credit float-right"> <a href="#" class="back-to-top" title="Top">Top</a> </div> </div> </div> <!--footer content--> </footer> | ||
http://www.akabi.eu/libraries/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 93889 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/plugins/sweetcaptcha-revolutionary-free-captcha-service/js/swtcptcf.js?ver=3.3.1 | 200 OK Content-Length: 868 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/functions/js/twitter.js?ver=3.3.1 | 200 OK Content-Length: 1604 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/cufon-yui.js?ver=1.09i | 200 OK Content-Length: 18258 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/TitilliumText.font.js?ver=1.0 | 200 OK Content-Length: 167620 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/scripts.js?ver=1.0 | 200 OK Content-Length: 36428 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/shortcode.js?ver=1.0 | 200 OK Content-Length: 5435 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/jquery.skitter-3.8.js?ver=3.8 | 200 OK Content-Length: 99922 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/jquery.flexslider-min.js?ver=3.3.1 | 200 OK Content-Length: 38872 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/themes/akabi/js/custom.js?ver=1.0 | 200 OK Content-Length: 1818 Content-Type: application/javascript | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 145984 Content-Type: application/x-javascript | clean |
http://www.akabi.eu/libraries/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.15 | 200 OK Content-Length: 14760 Content-Type: application/javascript | clean |
http://www.akabi.eu/libraries/plugins/contact-form-7/includes/js/scripts.js?ver=3.3 | 200 OK Content-Length: 6859 Content-Type: application/javascript | clean |
http://wrcloud.cluster015.ovh.net/test404page.js | 404 Not Found Content-Length: 13683 Content-Type: text/html | suspicious |
Suspicious code found <footer id="footer-wrapper"> <div class="clear"></div> <!--footer content--> <div id="footer-extra-wrapper" class="full-width-wrapper"> <div id="footer-info-content" class="fixed-width-wrapper"> <div class="copyright float-left"> © 2012 <a href="#">Akabi</a>. All Rights Reserved. Powered by <a href="http://www.pixel-it.be">Pixel IT</a>. </div> <div class="credit float-right"> <a href="#" class="back-to-top" title="Top">Top</a> </div> </div> </div> <!--footer content--> </footer> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wrcloud.cluster015.ovh.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 17 May 2014 08:38:06 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: mailplanBAK=R2555570994; path=/; expires=Sat, 17-May-2014 09:46:24 GMT
Set-Cookie: mailplan=R3858425907; path=/; expires=Sat, 17-May-2014 09:43:00 GMT
X-Pingback: http://www.akabi.eu/xmlrpc.php
X-Powered-By: PHP/5.3.16
GET / HTTP/1.1
Host: wrcloud.cluster015.ovh.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 17 May 2014 08:38:06 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: mailplanBAK=R2555570994; path=/; expires=Sat, 17-May-2014 09:46:24 GMT
Set-Cookie: mailplan=R3858425907; path=/; expires=Sat, 17-May-2014 09:43:00 GMT
X-Pingback: http://www.akabi.eu/xmlrpc.php
X-Powered-By: PHP/5.3.16
Second query (visit from search engine):
GET / HTTP/1.1
Host: wrcloud.cluster015.ovh.net
Referer: http://www.google.com/search?q=wrcloud.cluster015.ovh.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wrcloud.cluster015.ovh.net
Referer: http://www.google.com/search?q=wrcloud.cluster015.ovh.net
Result:
The result is similar to the first query. There are no suspicious redirects found.