Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pronemfg.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://pronemfg.com/ | 200 OK Content-Length: 3087 Content-Type: text/html | clean |
http://pronemfg.com/js/jquery-1.4.1.min.js | 200 OK Content-Length: 81766 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(z,v){function la(){if(!c.isReady){try{r.documentElement.doScroll("left")}catch(a){setTimeout(la,1);return}c.ready()}}function Ma(a,b){b.src?c.ajax({url:b.src,async:false,dataType:"script"}):c.globalEval(b.text||b.textContent||b.innerHTML||"");b.parentNode&&b.parentNode.removeChild(b)}function X(a,b,d,f,e,i){var j=a.length;if(typeof b==="object"){for(var n in b)X(a,n,b[n],f,e,d);return a}if(d!==v){f=!i&&f&&c.isFunction(d);for(n=0;n<j;n )e(a[n],b,f?d.cal /*/a9a007*/ Antivirus reports:
| ||
http://pronemfg.com/js/jquery.easing.1.3.js | 200 OK Content-Length: 19022 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) jQuery.easing['jswing'] = jQuery.easing['swing']; jQuery.extend( jQuery.easing, { def: 'easeOutQuad', swing: function (x, t, b, c, d) { return jQuery.easing[jQuery.easing.def](x, t, b, c, d); }, easeInQuad: function (x, t, b, c, d) { return c*(t/=d)*t b; }, easeOutQuad: function (x, t, b, c, d) { return -c *(t/=d)*(t-2) b; }, easeInOutQuad: function (x, t, b, c, d) { if ((t/=d/2) < 1) Antivirus reports:
| ||
http://pronemfg.com/js/jquery.jcarousel.pack.js | 200 OK Content-Length: 19625 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) eval(function(p,a,c,k,e,r){e=function(c){return(c<a?'':e(parseInt(c/a))) ((c=c%a)>35?String.fromCharCode(c 29):c.toString(36))};if(!''.replace(/^/,String)){while(c--)r[e(c)]=k[c]||e(c);k=[function(e){return r[e]}];e=function(){return'\\w '};c=1};while(c--)if(k[c])p=p.replace(new RegExp('\\b' e(c) '\\b','g'),k[c]);return p}('(9($){$.1s.A=9(o){z 4.14(9(){2H r(4,o)})};8 q={W:F,23:1,1G:1,u:7,15:3,16:7,1H:\'2I\',24:\'2J\',1i:0,B:7,1j:7,1I:7,25:7,26:7,27:7,28:7,29:7,2a:7,2b:7,1J:\'<N> Antivirus reports:
| ||
http://pronemfg.com/index.html | 200 OK Content-Length: 3087 Content-Type: text/html | clean |
http://pronemfg.com/boards.html | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://pronemfg.com/test404page.js | 404 Not Found Content-Length: 1048 Content-Type: text/html | clean |
http://pronemfg.com/apparel.html | 200 OK Content-Length: 11261 Content-Type: text/html | clean |
http://pronemfg.com/rippers.html | 200 OK Content-Length: 3115 Content-Type: text/html | clean |
http://pronemfg.com/story.html | 200 OK Content-Length: 7164 Content-Type: text/html | clean |
http://pronemfg.com/friends.html | 200 OK Content-Length: 4210 Content-Type: text/html | clean |
http://pronemfg.com/contact.html | 200 OK Content-Length: 3411 Content-Type: text/html | clean |
http://pronemfg.com/amateurs.html | 200 OK Content-Length: 3110 Content-Type: text/html | clean |
http://pronemfg.com/hoodies.html | 200 OK Content-Length: 6057 Content-Type: text/html | clean |
http://pronemfg.com/socks.html | 200 OK Content-Length: 3754 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pronemfg.com
Result:
HTTP/1.1 200 OK
Date: Sun, 05 Oct 2014 19:55:55 GMT
Accept-Ranges: bytes
ETag: "ea1836b18ccbcf1:0"
Server: Microsoft-IIS/7.0
Content-Length: 3087
Content-Type: text/html
Last-Modified: Mon, 08 Sep 2014 17:45:34 GMT
X-Powered-By: PleskWin
...3087 bytes of data.
GET / HTTP/1.1
Host: pronemfg.com
Result:
HTTP/1.1 200 OK
Date: Sun, 05 Oct 2014 19:55:55 GMT
Accept-Ranges: bytes
ETag: "ea1836b18ccbcf1:0"
Server: Microsoft-IIS/7.0
Content-Length: 3087
Content-Type: text/html
Last-Modified: Mon, 08 Sep 2014 17:45:34 GMT
X-Powered-By: PleskWin
...3087 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: pronemfg.com
Referer: http://www.google.com/search?q=pronemfg.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pronemfg.com
Referer: http://www.google.com/search?q=pronemfg.com
Result:
The result is similar to the first query. There are no suspicious redirects found.