Author Topic: Benign website or infested with Mal/FBJack-A or I?  (Read 2383 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33923
  • malware fighter
Benign website or infested with Mal/FBJack-A or I?
« on: November 30, 2013, 03:04:30 PM »
See: https://www.virustotal.com/nl/url/9d4dbbb46b7a604ad4112b96ec8819f1cebf499fd7160d7469a6ee2e57fc981c/analysis/1385818703/
URL subjected to threat Mal/FBJack-A/ detected as Mal/FBJack-I by Sophos.
Nothing detected here: http://urlquery.net/report.php?id=8073985  nor here:  http://maldb.com/www.kalamataonline.gr/news/26-news
or here: http://zulu.zscaler.com/submission/show/c159f88910591c403fff14504282adb5-1385818812
Suspicious result on the iFrame check:
iFrame Check          Suspicious           hxtp://livemanager.eurovision.edgesuite.net/ert/index.html?tag=ahr0cdovl2xpdmvtyw5hz2vylmv1cm92axnpb'
see: http://pastebin.com/WieHfvGF  Digotel link benign? htxp://livemanager.eurovision.edgesuite.net/ert/index.html?tag=aHR0cDovL2xpdmVtYW5hZ2VyLmV1cm92aXNpb24uZWRnZXN1aXRlLm5ldC9lYnUveG1sL2VydC54bWw7MTE2NzE%3D ->http://zulu.zscaler.com/submission/show/a1590cf07f6ab7e458ca1b8a4983c182-1385819943
Excessive header info and
Joomla version outdated: Upgrade required: http://sitecheck.sucuri.net/results/kalamataonline.gr
active OVERDUE! malware found here: http://support.clean-mx.de/clean-mx/viruses?id=15505829

Potentially suspicious file detected by Quttera's:
/index.php
Severity:    Potentially Suspicious
Reason:    Detected procedure that is commonly used in suspicious activity.
Details:   Detected abnormal use of [iframe] elements. Treat it as suspicious.
File size[byte]:    130147
File type:    ASCII
MD5:    72F48311AE1FA286305876F6E566F895
Scan duration[sec]:    0.784000

polonus
« Last Edit: November 30, 2013, 03:06:59 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!