Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=crabappleimports.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://crabappleimports.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://crabappleimports.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 20:09:46 GMT Location: http://www.crabappleimports.com/ Server: Apache Vary: Accept-Encoding Content-Length: 240 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.crabappleimports.com/ | 200 OK Content-Length: 26047 Content-Type: text/html | clean |
http://www.crabappleimports.com/wp-includes/js/jquery/jquery.js?ver=1.7.1 | 200 OK Content-Length: 96094 Content-Type: application/javascript | clean |
http://www.crabappleimports.com/wp-content/themes/eStore/epanel/shortcodes/js/et_shortcodes_frontend.js?ver=1.7 | 200 OK Content-Length: 10623 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { $.fn.et_shortcodes_switcher = function(options) { var defaults = { slides: '>div', activeClass: 'active', linksNav: '', findParent: true, lengthElement: 'li', useArrows: false, arrowLeft: 'a#prev-arrow', arrowRight: 'a#next-arrow', auto: false, autoSpeed: 5000, slidePadding: '', pauseOnHover: true, fx: 'fade', sliderT Antivirus reports:
| ||
http://crabappleimports.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 20:09:53 GMT Location: http://www.crabappleimports.com/test404page.js Server: Apache Vary: Accept-Encoding Content-Length: 254 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.crabappleimports.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: crabappleimports.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 20:09:46 GMT
Location: http://www.crabappleimports.com/
Server: Apache
Vary: Accept-Encoding
Content-Length: 240
Content-Type: text/html; charset=iso-8859-1
...240 bytes of data.
GET / HTTP/1.1
Host: crabappleimports.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 20:09:46 GMT
Location: http://www.crabappleimports.com/
Server: Apache
Vary: Accept-Encoding
Content-Length: 240
Content-Type: text/html; charset=iso-8859-1
...240 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: crabappleimports.com
Referer: http://www.google.com/search?q=crabappleimports.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: crabappleimports.com
Referer: http://www.google.com/search?q=crabappleimports.com
Result:
The result is similar to the first query. There are no suspicious redirects found.