Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dive-marine.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://dive-marine.com/ | 200 OK Content-Length: 45683 Content-Type: text/html | clean |
http://dive-marine.com/common/js/jquery-1.8.3.min.js | 200 OK Content-Length: 93637 Content-Type: application/x-javascript | clean |
http://dive-marine.com/common/js/jquery.bxslider.min.js | 200 OK Content-Length: 19123 Content-Type: application/x-javascript | clean |
http://dive-marine.com/common/js/jquery.fitvids.js | 200 OK Content-Length: 3554 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function( $ ){ "use strict"; $.fn.fitVids = function( options ) { var settings = { customSelector: null }; var div = document.createElement('div'), ref = document.getElementsByTagName('base')[0] || document.getElementsByTagName('script')[0]; div.className = 'fit-vids-style'; div.innerHTML = '­<style> \ .fluid-width-video-wrapper { Antivirus reports:
| ||
http://dive-marine.com/common/js/jquery-cookie.js | 200 OK Content-Length: 3790 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function (factory) { if (typeof define === 'function' && define.amd) { define(['jquery'], factory); } else { factory(jQuery); } }(function ($) { var pluses = /\+/g; function encode(s) { return config.raw ? s : encodeURIComponent(s); } function decode(s) { return config.raw ? s : decodeURIComponent(s); } function stringifyCookieValue(value) { return encode(confi Antivirus reports:
| ||
http://dive-marine.com/common/js/jquery.plugin.js | 200 OK Content-Length: 80158 Content-Type: application/x-javascript | clean |
http://dive-marine.com/common/js/common.js | 200 OK Content-Length: 10263 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) $(document).ready(function(){
$('.photoGallery li:nth-child(4n)').css('margin-right','0'); $('.paging .number .on').prev().css('border-right','0'); $('.photoGallery li').hover( function () { $(this).find('div').append("<div class='thumbBorder'></div>"); }, function () { $('.thumbBorder').remove(); } ); $('.directMenu li').hover( function () { $(this).find('img').attr('src', $(th Antivirus reports:
| ||
http://dive-marine.com/common/js/jcommon.js | 200 OK Content-Length: 40739 Content-Type: application/x-javascript | clean |
http://dive-marine.com/liveaboad/similanschedule.asp | 200 OK Content-Length: 48445 Content-Type: text/html | clean |
http://counter.nesolution.com/counter.js | 200 OK Content-Length: 390 Content-Type: application/x-javascript | clean |
http://dive-marine.com/liveaboad/ | 403 Forbidden Content-Length: 223 Content-Type: text/html | clean |
http://dive-marine.com/test404page.js | 404 Not Found Content-Length: 1466 Content-Type: text/html | clean |
http://dive-marine.com/divemarin/intro.asp | 200 OK Content-Length: 24623 Content-Type: text/html | clean |
http://dive-marine.com/divemarin/ | 403 Forbidden Content-Length: 223 Content-Type: text/html | clean |
http://dive-marine.com/divemarin/staff.asp | 200 OK Content-Length: 24557 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dive-marine.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Cache-Control: private
Date: Wed, 23 Jul 2014 22:11:19 GMT
Pragma: no-cache
Server: Microsoft-IIS/6.0
Content-Length: 45683
Content-Type: text/html; Charset=euc-kr
Expires: Tue, 22 Jul 2014 22:11:18 GMT
Set-Cookie: ASPSESSIONIDQQQBATAS=HMIHDKAAOCPOKCDBGAMGOHEO; path=/
X-Powered-By: ASP.NET
...45683 bytes of data.
GET / HTTP/1.1
Host: dive-marine.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Cache-Control: private
Date: Wed, 23 Jul 2014 22:11:19 GMT
Pragma: no-cache
Server: Microsoft-IIS/6.0
Content-Length: 45683
Content-Type: text/html; Charset=euc-kr
Expires: Tue, 22 Jul 2014 22:11:18 GMT
Set-Cookie: ASPSESSIONIDQQQBATAS=HMIHDKAAOCPOKCDBGAMGOHEO; path=/
X-Powered-By: ASP.NET
...45683 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: dive-marine.com
Referer: http://www.google.com/search?q=dive-marine.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dive-marine.com
Referer: http://www.google.com/search?q=dive-marine.com
Result:
The result is similar to the first query. There are no suspicious redirects found.