Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=happybabyshop.co.kr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://happybabyshop.co.kr/ | 200 OK Content-Length: 34892 Content-Type: text/html | clean |
http://happybabyshop.co.kr/common/js/jquery-1.7.1.min.js | 200 OK Content-Length: 94423 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(a,b){function cy(a){return f.isWindow(a)?a:a.nodeType===9?a.defaultView||a.parentWindow:!1}function cv(a){if(!ck[a]){var b=c.body,d=f("<"+a+">").appendTo(b),e=d.css("display");d.remove();if(e==="none"||e===""){cl||(cl=c.createElement("iframe"),cl.frameBorder=cl.width=cl.height=0),b.appendChild(cl);if(!cm||!cl.createElement)cm=(cl.contentWindow||cl.contentDocument).document,cm.write((c.compatMode==="CSS1Compat"?"<!doctype html>":"")+"<html><body>"),cm.close Antivirus reports:
| ||
http://happybabyshop.co.kr/common/js/jquery.mousewheel.js | 200 OK Content-Length: 1404 Content-Type: application/x-javascript | clean |
http://happybabyshop.co.kr/common/js/jquery.main.js | 200 OK Content-Length: 20442 Content-Type: application/x-javascript | clean |
http://happybabyshop.co.kr/common/js/front.js | 200 OK Content-Length: 12597 Content-Type: application/x-javascript | clean |
http://happybabyshop.co.kr/common/js/CommonFunctions.js | 200 OK Content-Length: 59358 Content-Type: application/x-javascript | clean |
http://happybabyshop.co.kr/index.asp | 200 OK Content-Length: 34892 Content-Type: text/html | clean |
http://happybabyshop.co.kr/huggies/huggies02.asp | 200 OK Content-Length: 25740 Content-Type: text/html | clean |
http://happybabyshop.co.kr/common/js/front.js?ver=1.1 | 200 OK Content-Length: 12597 Content-Type: application/x-javascript | clean |
http://happybabyshop.co.kr/common/js/highslide.js | 200 OK Content-Length: 70884 Content-Type: application/x-javascript | clean |
http://happybabyshop.co.kr/huggies/ | 403 Forbidden Content-Length: 223 Content-Type: text/html | clean |
http://happybabyshop.co.kr/test404page.js | 404 Not Found Content-Length: 1466 Content-Type: text/html | clean |
http://happybabyshop.co.kr/cscenter/notice_list.asp | 200 OK Content-Length: 28482 Content-Type: text/html | clean |
http://happybabyshop.co.kr/cscenter/ | 403 Forbidden Content-Length: 223 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: happybabyshop.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: private
Cache-Control: private
Date: Sat, 24 Jan 2015 11:38:36 GMT
Pragma: no-cache
Server: Microsoft-IIS/6.0
Content-Length: 34892
Content-Type: text/html; Charset=utf-8
Expires: Fri, 23 Jan 2015 11:38:36 GMT
Set-Cookie: ASPSESSIONIDCCTABDRD=JIIFJKJBGADJCKBBJEHNOIJC; path=/
X-Powered-By: ASP.NET
...34892 bytes of data.
GET / HTTP/1.1
Host: happybabyshop.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: private
Cache-Control: private
Date: Sat, 24 Jan 2015 11:38:36 GMT
Pragma: no-cache
Server: Microsoft-IIS/6.0
Content-Length: 34892
Content-Type: text/html; Charset=utf-8
Expires: Fri, 23 Jan 2015 11:38:36 GMT
Set-Cookie: ASPSESSIONIDCCTABDRD=JIIFJKJBGADJCKBBJEHNOIJC; path=/
X-Powered-By: ASP.NET
...34892 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: happybabyshop.co.kr
Referer: http://www.google.com/search?q=happybabyshop.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: happybabyshop.co.kr
Referer: http://www.google.com/search?q=happybabyshop.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.