Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=19303.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://19303.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 04 Mar 2015 07:11:18 GMT Location: forum.php Server: IIS Content-Type: text/html X-Powered-By: WAF/2.0 X-Powered-By: WAF/2.0 | clean |
http://19303.com/forum.php | 200 OK Content-Length: 17139 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.660306.com ...[2838 bytes skipped]... gt; </div> <div id="ft" class="wp cl"> <div id="flk" class="y"> <p> <a href="archiver/" >Archiver</a><span class="pipe">|</span><a href="forum.php?mobile=yes" >ææºç</a><span class="pipe">|</span><a href="forum.php?mod=misc&action=showdarkroom" >å°é»å±</a><span class="pipe">|</span><strong><a href="http://www.660306.com/" target="_blank">660306æ注娱ä¹å</a></strong> <script language="javascript" src="http://count38.51yes.com/click.aspx?id=381326633&logo=1" charset="gb2312"></script></p> <p class="xs0"> GMT+8, 2015-3-4 15:11<span id="debuginfo"> , Processed in 1.131591 second(s), 37 queries . </span> </p> </div> <div id="frt"> <p>Powered by <strong><a href= ...[1124 bytes skipped]... | ||
http://19303.com/static/js/common.js?kNN | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:25 GMT Accept-Ranges: bytes ETag: "0ac9d38ae20d01:d3c" Server: IIS Content-Length: 63412 Content-Location: http://19303.com/static/js/common.js?kNN Content-Type: application/x-javascript Last-Modified: Fri, 26 Dec 2014 01:49:44 GMT X-Died: timeout at scan.pm line 1566. X-Powered-By: WAF/2.0 | clean |
http://19303.com/static/js/common.js?knn | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:29 GMT Accept-Ranges: bytes ETag: "0ac9d38ae20d01:d3c" Server: IIS Content-Length: 63412 Content-Location: http://19303.com/static/js/common.js?knn Content-Type: application/x-javascript Last-Modified: Fri, 26 Dec 2014 01:49:44 GMT X-Powered-By: WAF/2.0 | clean |
http://19303.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://19303.com/static/js/forum.js?kNN | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:36 GMT Accept-Ranges: bytes ETag: "0ac9d38ae20d01:d3c" Server: IIS Content-Length: 22844 Content-Location: http://19303.com/static/js/forum.js?kNN Content-Type: application/x-javascript Last-Modified: Fri, 26 Dec 2014 01:49:44 GMT X-Powered-By: WAF/2.0 | clean |
http://19303.com/static/js/forum.js?knn | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:39 GMT Accept-Ranges: bytes ETag: "0ac9d38ae20d01:d3c" Server: IIS Content-Length: 22844 Content-Location: http://19303.com/static/js/forum.js?knn Content-Type: application/x-javascript Last-Modified: Fri, 26 Dec 2014 01:49:44 GMT X-Powered-By: WAF/2.0 | clean |
http://www.660306.com/guangguao.js | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:42 GMT Accept-Ranges: bytes ETag: "66bb6714393dd01:d3c" Server: IIS Content-Length: 121 Content-Location: http://www.660306.com/guangguao.js Content-Type: application/x-javascript Last-Modified: Sat, 31 Jan 2015 09:34:15 GMT X-Powered-By: WAF/2.0 | clean |
http://19303.com/static/js/logging.js?kNN | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:43 GMT Accept-Ranges: bytes ETag: "0ac9d38ae20d01:d3c" Server: IIS Content-Length: 603 Content-Location: http://19303.com/static/js/logging.js?kNN Content-Type: application/x-javascript Last-Modified: Fri, 26 Dec 2014 01:49:44 GMT X-Powered-By: WAF/2.0 | clean |
http://19303.com/static/js/logging.js?knn | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 07:11:46 GMT Accept-Ranges: bytes ETag: "0ac9d38ae20d01:d3c" Server: IIS Content-Length: 603 Content-Location: http://19303.com/static/js/logging.js?knn Content-Type: application/x-javascript Last-Modified: Fri, 26 Dec 2014 01:49:44 GMT X-Powered-By: WAF/2.0 | clean |
http://count38.51yes.com/click.aspx?id=381326633&logo=1 | 200 OK Content-Length: 1777 Content-Type: text/html | clean |
http://19303.com/home.php?mod=misc&ac=sendmail&rand=1425453080 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://discuz.gtimg.cn/cloud/scripts/discuz_tips.js?v=1 | 200 OK Content-Length: 6173 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 19303.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 04 Mar 2015 07:11:18 GMT
Location: forum.php
Server: IIS
Content-Type: text/html
X-Powered-By: WAF/2.0
X-Powered-By: WAF/2.0
GET / HTTP/1.1
Host: 19303.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 04 Mar 2015 07:11:18 GMT
Location: forum.php
Server: IIS
Content-Type: text/html
X-Powered-By: WAF/2.0
X-Powered-By: WAF/2.0
Second query (visit from search engine):
GET / HTTP/1.1
Host: 19303.com
Referer: http://www.google.com/search?q=19303.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 19303.com
Referer: http://www.google.com/search?q=19303.com
Result:
The result is similar to the first query. There are no suspicious redirects found.