Author Topic: www.aniplus-asia.com blocked  (Read 2763 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
www.aniplus-asia.com blocked
« on: November 13, 2016, 05:56:24 AM »
the anime channel is being blocked by avast, can you do something

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: www.aniplus-asia.com blocked
« Reply #1 on: November 13, 2016, 06:54:13 AM »
You can report a URL here: https://www.avast.com/report-a-url.php
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31079
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: www.aniplus-asia.com blocked
« Reply #2 on: November 13, 2016, 11:49:52 AM »
Strange thing is that with the latest Beta the site is blocked, but no message is showing. :-\

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48552
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: www.aniplus-asia.com blocked
« Reply #3 on: November 13, 2016, 02:31:06 PM »
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: www.aniplus-asia.com blocked
« Reply #4 on: November 13, 2016, 02:59:59 PM »
Right, because there is Google - browser difference detected: Not identical

Google: 64362 bytes       Firefox: 64281 bytes
Diff:         81 bytes

First difference:
ntserial=1423"> <span class="img"><img src="htxp://ah9szoaj9w.ecn.cdn.infralab.net/images/tvee-admin/content/s_20140227152455.jpg" alt="" /></span> <span class="txt"...

And avast blocks "Win32:Enistery [Susp]" there! -> https://www.virustotal.com/nl/domain/0i3z252hh7.ecn.cdn.infralab.net/information/

and also this adware should come blocked: /bannerClick.asp?bannerType=sky&bannerUrl=htxp%3A%2F%2Fwww%2Ebir%2Eco%2Ekr%2Fsite%2Fpages%2Fevent%5Fclist%2Ephp%3Fmode%3Dview%26code%3Devent%26start%3D0%26keyword%3D%26nid%3D1488
/shop.asp?menuName=18

Error and three warnings: -https://asafaweb.com/Scan?Url=www.aniplus-asia.com
e.g.: Result
It looks like a cookie is being set without the "HttpOnly" flag being set (name : value):

ASPSESSIONIDCCDCDBBS : NBKHEFKDHIIGDBNNHFPGPEGP
Unless the cookie legitimately needs to be read by JavaScript on the client, the "HttpOnly" flag should always be set to ensure it cannot be read by the client and used in an XSS attack.

Avast for the moment seems the only one to flag HTML:Script-inf here: https://virustotal.com/en/file/13b87c89252da4e1b2049b53d701221e8a638b53ab64dba342625085d7ace1af/analysis/1479049423/#additional-info  (thanks to Pondus for pointing that one out - also AOS alerts inside the browser!).

polonus (volunteer website security analyst and website error-hunter)
« Last Edit: November 13, 2016, 05:42:24 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!