Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=188daikuan.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://188daikuan.com/ | HTTP/1.1 200 OK Date: Wed, 07 Jan 2015 21:50:50 GMT Accept-Ranges: bytes ETag: "6b6e6bbbe126d01:564" Server: Microsoft-IIS/6.0 Content-Length: 190531 Content-Location: http://188daikuan.com/index.htm Content-Type: text/html Last-Modified: Fri, 02 Jan 2015 23:13:34 GMT X-Powered-By: ASP.NET | clean |
http://188daikuan.com/index.htm | 200 OK Content-Length: 190531 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/js/MSClass.js | 200 OK Content-Length: 6987 Content-Type: application/x-javascript | clean |
http://188daikuan.com/js/WebBaseJs.js | 200 OK Content-Length: 1449 Content-Type: application/x-javascript | clean |
http://js.users.51.la/4109445.js | 200 OK Content-Length: 1978 Content-Type: application/x-javascript | clean |
http://code.54kefu.net/kefu/js/93/278693.js | 200 OK Content-Length: 517 Content-Type: application/x-javascript | clean |
http://188daikuan.com/contact.htm | 200 OK Content-Length: 181069 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/Car | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 21:51:02 GMT Location: http://188daikuan.com/Car/ Server: Microsoft-IIS/6.0 Content-Length: 149 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://188daikuan.com/car/ | HTTP/1.1 200 OK Date: Wed, 07 Jan 2015 21:51:02 GMT Accept-Ranges: bytes ETag: "c9bce693e126d01:564" Server: Microsoft-IIS/6.0 Content-Length: 181310 Content-Location: http://188daikuan.com/car/index.htm Content-Type: text/html Last-Modified: Fri, 02 Jan 2015 23:12:28 GMT X-Powered-By: ASP.NET | clean |
http://188daikuan.com/car/index.htm | 200 OK Content-Length: 181310 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/company.htm | 200 OK Content-Length: 182184 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/CompanyNews/ | HTTP/1.1 200 OK Date: Wed, 07 Jan 2015 21:51:08 GMT Accept-Ranges: bytes ETag: "a1a28495e126d01:564" Server: Microsoft-IIS/6.0 Content-Length: 180524 Content-Location: http://188daikuan.com/CompanyNews/index.htm Content-Type: text/html Last-Modified: Fri, 02 Jan 2015 23:12:31 GMT X-Powered-By: ASP.NET | clean |
http://188daikuan.com/companynews/index.htm | 200 OK Content-Length: 180524 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/companynews/ | HTTP/1.1 200 OK Date: Wed, 07 Jan 2015 21:51:12 GMT Accept-Ranges: bytes ETag: "a1a28495e126d01:564" Server: Microsoft-IIS/6.0 Content-Length: 180524 Content-Location: http://188daikuan.com/companynews/index.htm Content-Type: text/html Last-Modified: Fri, 02 Jan 2015 23:12:31 GMT X-Powered-By: ASP.NET | clean |
http://188daikuan.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://188daikuan.com/IndustryNews/ | HTTP/1.1 200 OK Date: Wed, 07 Jan 2015 21:51:14 GMT Accept-Ranges: bytes ETag: "4fb66ebce126d01:564" Server: Microsoft-IIS/6.0 Content-Length: 180525 Content-Location: http://188daikuan.com/IndustryNews/index.htm Content-Type: text/html Last-Modified: Fri, 02 Jan 2015 23:13:36 GMT X-Powered-By: ASP.NET | clean |
http://188daikuan.com/industrynews/index.htm | 200 OK Content-Length: 180525 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/industrynews/ | HTTP/1.1 200 OK Date: Wed, 07 Jan 2015 21:51:18 GMT Accept-Ranges: bytes ETag: "4fb66ebce126d01:564" Server: Microsoft-IIS/6.0 Content-Length: 180525 Content-Location: http://188daikuan.com/industrynews/index.htm Content-Type: text/html Last-Modified: Fri, 02 Jan 2015 23:13:36 GMT X-Powered-By: ASP.NET | clean |
http://188daikuan.com/rentcar.htm | 200 OK Content-Length: 184129 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/price.htm | 200 OK Content-Length: 180849 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/Message.htm | 200 OK Content-Length: 182250 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
DropFileName = "svchost.exe" WriteData = "4D5A90000300000004000000FFFF0000B800000000000000400000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ...[3622 bytes skipped]... Antivirus reports:
| ||
http://188daikuan.com/inc/sdcms.js | 200 OK Content-Length: 7570 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 188daikuan.com
Result:
HTTP/1.1 200 OK
Date: Wed, 07 Jan 2015 21:50:50 GMT
Accept-Ranges: bytes
ETag: "6b6e6bbbe126d01:564"
Server: Microsoft-IIS/6.0
Content-Length: 190531
Content-Location: http://188daikuan.com/index.htm
Content-Type: text/html
Last-Modified: Fri, 02 Jan 2015 23:13:34 GMT
X-Powered-By: ASP.NET
...190531 bytes of data.
GET / HTTP/1.1
Host: 188daikuan.com
Result:
HTTP/1.1 200 OK
Date: Wed, 07 Jan 2015 21:50:50 GMT
Accept-Ranges: bytes
ETag: "6b6e6bbbe126d01:564"
Server: Microsoft-IIS/6.0
Content-Length: 190531
Content-Location: http://188daikuan.com/index.htm
Content-Type: text/html
Last-Modified: Fri, 02 Jan 2015 23:13:34 GMT
X-Powered-By: ASP.NET
...190531 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 188daikuan.com
Referer: http://www.google.com/search?q=188daikuan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 188daikuan.com
Referer: http://www.google.com/search?q=188daikuan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.