Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=galeriechantal.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://galeriechantal.com/ | 200 OK Content-Length: 7057 Content-Type: text/html | clean |
http://galeriechantal.com/SpryAssets/SpryMenuBar.js | 200 OK Content-Length: 21270 Content-Type: application/javascript | clean |
http://galeriechantal.com/Scripts/swfobject_modified.js | 200 OK Content-Length: 21718 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('');
var swfobject = function() { var UNDEF = "undefined", OBJECT = "object", SHOCKWAVE_FLASH = "Shockwave Flash", SHOCKWAVE_FLASH_AX = "ShockwaveFlash.ShockwaveFlash", FLASH_MIME_TYPE = "application/x-shockwave-flash", EXPRESS_INSTALL_ID = "SWFObjectExprInst", win = window, doc = document, nav = navigator, domLoadFnArr = [], regObjArr = [], timer = null, storedAltContent = var obj = getElementById(EXPRESS_INSTALL_ID); if (obj) { obj.parentNode.replaceChild(storedAltContent, obj); if (storedAltContentId) { setVisibility(storedAltContentId, true); if (ua.ie && ua.win) { storedAltContent.style.display = "block"; } } storedAltContent = null; storedAltContentId = null; isExpressInstallActive = false; } } } }; }(); Antivirus reports:
| ||
http://galeriechantal.com/index.html | 200 OK Content-Length: 7057 Content-Type: text/html | clean |
http://galeriechantal.com/tableaux.php | 200 OK Content-Length: 54013 Content-Type: text/html | clean |
http://galeriechantal.com/SpryAssets/SpryAccordion.js | 200 OK Content-Length: 15375 Content-Type: application/javascript | clean |
http://galeriechantal.com/portrait.html | 200 OK Content-Length: 4357 Content-Type: text/html | clean |
http://galeriechantal.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?1= | 200 OK Content-Length: 4489 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?tableauxID=1 | 200 OK Content-Length: 4612 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?2= | 200 OK Content-Length: 4489 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?tableauxID=2 | 200 OK Content-Length: 4593 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?3= | 200 OK Content-Length: 4489 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?tableauxID=3 | 200 OK Content-Length: 4598 Content-Type: text/html | clean |
http://galeriechantal.com/details.php?4= | 200 OK Content-Length: 4489 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: galeriechantal.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 04 Jun 2014 01:10:09 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 7057
Content-Type: text/html
Set-Cookie: 60gpBAK=R1224195776; path=/; expires=Wed, 04-Jun-2014 02:31:17 GMT
Set-Cookie: 60gp=R4049193360; path=/; expires=Wed, 04-Jun-2014 02:17:14 GMT
...7057 bytes of data.
GET / HTTP/1.1
Host: galeriechantal.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 04 Jun 2014 01:10:09 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 7057
Content-Type: text/html
Set-Cookie: 60gpBAK=R1224195776; path=/; expires=Wed, 04-Jun-2014 02:31:17 GMT
Set-Cookie: 60gp=R4049193360; path=/; expires=Wed, 04-Jun-2014 02:17:14 GMT
...7057 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: galeriechantal.com
Referer: http://www.google.com/search?q=galeriechantal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: galeriechantal.com
Referer: http://www.google.com/search?q=galeriechantal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.