Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=skipanorama.pl
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.skipanorama.pl/ | 200 OK Content-Length: 33043 Content-Type: text/html | clean |
http://www.skipanorama.pl/js/prototype161.js?lm=1388145341 | 200 OK Content-Length: 140910 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/scriptaculous/1.8.1/scriptaculous.js?load=effects | 200 OK Content-Length: 2654 Content-Type: text/javascript | clean |
http://www.skipanorama.pl/js/skipanorama.js?lm=1399112887 | 200 OK Content-Length: 28482 Content-Type: application/javascript | clean |
http://www.skipanorama.pl/js/lightview.js?lm=1407680923 | 200 OK Content-Length: 29831 Content-Type: application/javascript | clean |
http://www.skipanorama.pl/js/starbox.js?lm=1411472234 | 200 OK Content-Length: 9565 Content-Type: application/javascript | clean |
http://www.skipanorama.pl/js/comparer.js?lm=1397439375 | 200 OK Content-Length: 4740 Content-Type: application/javascript | clean |
http://partner.googleadservices.com/gampad/google_service.js | 200 OK Content-Length: 3868 Content-Type: text/javascript | clean |
http://skipanorama.disqus.com/recent_comments_widget.js?num_items=5&hide_avatars=0&avatar_size=48&excerpt_length=150 | 200 OK Content-Length: 4261 Content-Type: application/javascript | clean |
http://app.sugester.pl/skipanorama/widget.js | 200 OK Content-Length: 22694 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if (typeof uid == 'undefined'){uid='';};if (typeof uid_email == 'undefined'){uid_email='';};if (typeof sugester_tab == 'undefined'){sugester_tab=1;}; var sx_={};sx_.lib=function(){var F={};var C=/(-[a-z])/gi;var B=function(H,I){return I.charAt(1).toUpperCase()};var G=function(I){var H;if(!(H=F[I])){H=F[I]=I.replace(C,B)}return H};var A=document.defaultView;var E=/alpha\([^\)]*\)/gi;var D=function(J,H){var I=J.style;if(window.ActiveXObject){I.zoom=1;I.filter=(I.filter||"").replace(E,"")+(H==1 sx_.loadSkin('sugester','http://app.sugester.pl/stylesheets');f1=window.onload;window.onload=function(){sx_.init();if (sugester_tab==1) {document.getElementById('sugester_widget').style.display="block"};if(f1!=undefined)f1()}; Antivirus reports:
| ||
http://connect.facebook.net/pl_PL/all.js | 200 OK Content-Length: 163679 Content-Type: application/x-javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12489 Content-Type: application/javascript | clean |
http://www.skipanorama.pl/artykuly.html | 200 OK Content-Length: 36553 Content-Type: text/html | clean |
http://www.skipanorama.pl/sprzet.html | 200 OK Content-Length: 45964 Content-Type: text/html | clean |
http://www.skipanorama.pl/noclegi.html | 200 OK Content-Length: 6335 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: skipanorama.pl
Result:
GET / HTTP/1.1
Host: skipanorama.pl
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: skipanorama.pl
Referer: http://www.google.com/search?q=skipanorama.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: skipanorama.pl
Referer: http://www.google.com/search?q=skipanorama.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.