Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://03.images22.51img1.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: 03.images22.51img1.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 31 Aug 2014 00:57:53 GMT Location: http://www.51.com/404.php Server: Apache/1.3.37.sa Content-Length: 165 Content-Type: text/html | malicious |
Scanned pages/files
Request | Server response | Status |
http://03.images22.51img1.com/ | 403 Forbidden Content-Length: 575 Content-Type: text/html | clean |
http://03.images22.51img1.com/test404page.js | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=315360000 Connection: close Date: Sun, 31 Aug 2014 00:57:53 GMT Location: http://www.51.com/404.php Server: Apache/1.3.37.sa Content-Length: 165 Content-Type: text/html Expires: Thu, 31 Dec 2037 23:55:55 GMT | clean |
http://www.51.com/404.php | 200 OK Content-Length: 22211 Content-Type: text/html | clean |
http://static.51img1.com/??v3/pub/js/jquery.js?v=2014051201,v5/global/public/js/foui.js?v=201405121721,v5/global/public/js/foui_dialog.js?v=2014051201,v5/passport/js/quickLogin.js?v=20140529 | 200 OK Content-Length: 103397 Content-Type: application/x-javascript | clean |
http://static.51img1.com/??v5/webim/js/game_launcher.js?v=20140603,v5/my/js/pubhead.js?v=20131230,v5/my/js/oceanus.js?v=20140324,v5/jiaoyou/js/foui_jiaoyou.js?v=20130320,v5/my/js/adsys.js?v=2014071601 | 200 OK Content-Length: 67873 Content-Type: application/x-javascript | clean |
http://static.51img1.com/v5/passport/js/quickLogin.js?v=20121127001 | 200 OK Content-Length: 313 Content-Type: application/x-javascript | clean |
http://static.51img1.com/v5/passport/js/quickLogin.js?v=20140529 | 200 OK Content-Length: 313 Content-Type: application/x-javascript | clean |
http://cbjs.baidu.com/js/m.js | 200 OK Content-Length: 30494 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=03.images22.51img1.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://03.images22.51img1.com/
Result: 03.images22.51img1.com is not infected or malware details are not published yet.
Result: 03.images22.51img1.com is not infected or malware details are not published yet.