Author Topic: Unknown_html_RFI_shell on this blogsite....ieretrofit.js issues!  (Read 911 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34051
  • malware fighter
Unknown_html_RFI_shell on this blogsite....ieretrofit.js issues!
« on: September 17, 2015, 11:37:49 PM »
See: https://www.virustotal.com/nl/url/4c4608855c36e85cda78cd4f1671c4986c43e1d67db6e984354325c7a20b476b/analysis/1442524720/
No detection here: http://quttera.com/detailed_report/anairdameuslivros.blogspot.com
Netcraft does not like it, 7 red out of 10 risk status: http://toolbar.netcraft.com/site_report?url=http://anairdameuslivros.blogspot.com
See: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fanairdameuslivros.blogspot.com%2F
PUP flagged on IP -> https://www.reasoncoresecurity.com/ip-address-173.194.123.10.aspx
Does the webblog site have Related Searches Sidebar Malware?
I get an error for this external link:  -https://www.blogger.com/openid-server.g
Code: [Select]
error:No openid.mode ns:http://specs.openid.net/auth/2.0Poodle vulnerable - SSL v.3
And in the scripts included we see this -https://www.blogger.com/static/v1/jsbin/3161104989-ieretrofit.js
we encountered this earlier as suspicious or malicious, has several issues and code has not been updated since 2012.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!