Author Topic: Only Sucuri's to detect or already cleansed?  (Read 1581 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Only Sucuri's to detect or already cleansed?
« on: December 07, 2013, 11:28:17 PM »
See: http://sitecheck.sucuri.net/results/restariaritchie.nl/fly.php
Detected SPAM SEO malcode: http://sucuri.net/malware/entry/MW:SPAM:SEO
VW has it: Up(nil):      RIPE   NL   info at antagonist.nl   195.211.73.19    to 195.211.73.19   restariaritchie dot nl   htxp://restariaritchie.nl/fly.php
Site returns a 404 error on fly.PHP the only instance of the malcode that is not been given cklosed or dead: http://support.clean-mx.de/clean-mx/viruses.php?review=195.211.73.19&sort=first%20desc
On infected sites for this IP avast! Web Shield blocks and detects: JS:Iframe-CSU[Trj]
Cleansed? -> http://evuln.com/tools/malware-scanner/restariaritchie.nl/  & http://zulu.zscaler.com/submission/show/3afb1e44104479bae397c66ebbc82ad9-1386455184
My personal verdict - cleansed!

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!