Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=swedishskincare.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://swedishskincare.com/ | 200 OK Content-Length: 15009 Content-Type: text/html | suspicious |
Hidden iFrame found. style: hidden src: http://www.northvillagegroup.com/analytics/embed.php?a=ssc&p=%2f&i=78.158.11.226&r=&d=1396986610&v=mozilla%2f4.0+%28compatible%3b+msie+8.0%3b+windows+nt+5.1%29 <iframe style="visibility:hidden;display:none" src="http://www.northvillagegroup.com/analytics/embed.php?a=ssc&p=%2f&i=78.158.11.226&r=&d=1396986610&v=mozilla%2f4.0+%28compatible%3b+msie+8.0%3b+windows+nt+5.1%29"> | ||
http://swedishskincare.com/javascript/chrome.js | 200 OK Content-Length: 7442 Content-Type: text/javascript | clean |
http://swedishskincare.com/javascript/tinybox2/tinybox.js | 200 OK Content-Length: 5482 Content-Type: text/javascript | clean |
http://www.swedishskincare.com/javascript/AC_RunActiveContent.js?PHPSESSID=bbfdq8kua77glqh3jdab4fsnv4 | 200 OK Content-Length: 8028 Content-Type: text/javascript | clean |
http://swedishskincare.com/js/dw_event.js | 200 OK Content-Length: 1117 Content-Type: text/javascript | clean |
http://swedishskincare.com/js/dw_rotator.js | 200 OK Content-Length: 6601 Content-Type: text/javascript | clean |
https://seal.verisign.com/getseal?host_name=www.swedishskincare.com&size=S&use_flash=NO&use_transparent=NO&lang=en | 200 OK Content-Length: 2244 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: www.swedishskincare.com <!-- dn="www.swedishskincare.com"; lang="en"; tpt="opaque"; vrsn_style="WW"; splash_url="https://sealinfo.verisign.com"; seal_url="https://seal.verisign.com"; u1=splash_url+"/splash?form_file=fdf/splash.fdf&dn="+dn+"&lang="+lang;u2=seal_url+"/getseal?at=0&sealid=2&dn="+dn+"&lang="+lang;var sopener;function vrsn_splash(){if(sopener&&!sopener.closed){sopener.focus();}else{tbar="location=yes,status=yes,resizable=yes,s ...[1945 bytes skipped]... | ||
http://swedishskincare.com/test404page.js | 200 OK Content-Length: 0 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: swedishskincare.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 08 Apr 2014 19:50:09 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=bbfdq8kua77glqh3jdab4fsnv4; path=/
GET / HTTP/1.1
Host: swedishskincare.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 08 Apr 2014 19:50:09 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=bbfdq8kua77glqh3jdab4fsnv4; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: swedishskincare.com
Referer: http://www.google.com/search?q=swedishskincare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: swedishskincare.com
Referer: http://www.google.com/search?q=swedishskincare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.