Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=artalys-communication.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://artalys-communication.com/ | 200 OK Content-Length: 23807 Content-Type: text/html | clean |
http://artalys-communication.com/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://artalys-communication.com/plugins/content/highslide/highslide-full.packed.js | 200 OK Content-Length: 48267 Content-Type: application/javascript | clean |
http://artalys-communication.com/plugins/content/highslide/easing_equations.js | 200 OK Content-Length: 9105 Content-Type: application/javascript | clean |
http://artalys-communication.com/plugins/content/highslide/swfobject.js | 200 OK Content-Length: 9759 Content-Type: application/javascript | clean |
http://artalys-communication.com/plugins/content/highslide/config/js/highslide-sitesettings.js | 404 Not Found Content-Length: 259 Content-Type: text/html | clean |
http://artalys-communication.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://artalys-communication.com/plugins/system/rokbox/rokbox.js | 200 OK Content-Length: 22076 Content-Type: application/javascript | clean |
http://artalys-communication.com/plugins/system/rokbox/themes/light/rokbox-config.js | 200 OK Content-Length: 2598 Content-Type: application/javascript | clean |
http://artalys-communication.com/cache/js-67c7e218ee9073e025dfac6f1d4317de.php | 200 OK Content-Length: 16407 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var GantryBuildSpans=function(g,j,k){(g.length).times(function(i){var e="."+g[i];var f=function(a){a.setStyle('visibility','visible');var b=a.getText();var c=b.split(" ");first=c[0];rest=c.slice(1).join(" ");html=a.innerHTML;if(rest.length>0){var d=a.clone().setText(' '+rest),span=new Element('span').setText(first);span.inject(d,'top');a.replaceWith(d)}};$$(e).each(function(c){j.each(function(h){c.getElements(h).each(function(b){var a=b.getFirst();if(a&&a.getTag()=='a')f(a);else f(b)} Antivirus reports:
| ||
http://artalys-communication.com/media/com_acymailing/js/acymailing_module.js | 200 OK Content-Length: 10368 Content-Type: application/javascript | clean |
http://artalys-communication.com/modules/mod_roknewspager/tmpl/js/roknewspager.js | 200 OK Content-Length: 3952 Content-Type: application/javascript | clean |
http://artalys-communication.com/modules/mod_rokstories/tmpl/js/rokstories.js | 200 OK Content-Length: 5586 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: artalys-communication.com
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Wed, 01 Oct 2014 18:04:34 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Wed, 01 Oct 2014 18:04:34 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 60gpBAK=R1224196865; path=/; expires=Wed, 01-Oct-2014 19:24:09 GMT
Set-Cookie: 60gp=R1864103079; path=/; expires=Wed, 01-Oct-2014 19:21:09 GMT
Set-Cookie: f4d3ecf8e9088daaf3a8f8a5f2ea5342=620e88f05fdac416d417d3dc1aec4924; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: artalys-communication.com
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Wed, 01 Oct 2014 18:04:34 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Wed, 01 Oct 2014 18:04:34 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 60gpBAK=R1224196865; path=/; expires=Wed, 01-Oct-2014 19:24:09 GMT
Set-Cookie: 60gp=R1864103079; path=/; expires=Wed, 01-Oct-2014 19:21:09 GMT
Set-Cookie: f4d3ecf8e9088daaf3a8f8a5f2ea5342=620e88f05fdac416d417d3dc1aec4924; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: artalys-communication.com
Referer: http://www.google.com/search?q=artalys-communication.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: artalys-communication.com
Referer: http://www.google.com/search?q=artalys-communication.com
Result:
The result is similar to the first query. There are no suspicious redirects found.