Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.369hero.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.369hero.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Object moved Cache-Control: private Date: Fri, 09 May 2014 16:55:01 GMT Location: http://sex.dao88.info/sex.html?www.369hero.com Server: Microsoft-IIS/6.0 Content-Length: 167 Content-Type: text/html Set-Cookie: ASPSESSIONIDAQQBTBDB=AGMLKBHCJGCFENBECCCCMEKM; path=/ X-Powered-By: ASP.NET | malicious |
Scanned pages/files
Request | Server response | Status |
http://www.369hero.com/ | 200 OK Content-Length: 15806 Content-Type: text/html | clean |
http://www.369hero.com/guide.htm | HTTP/1.1 200 OK Date: Fri, 09 May 2014 16:55:03 GMT Accept-Ranges: bytes ETag: "19780d6c321cd1:16ed" Server: Microsoft-IIS/6.0 Content-Length: 2651 Content-Location: http://www.369hero.com/guide.htm Content-Type: text/html Last-Modified: Tue, 24 Apr 2012 02:42:05 GMT X-Powered-By: ASP.NET | clean |
http://www.369hero.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.369hero.com/index.asp | 200 OK Content-Length: 24447 Content-Type: text/html | clean |
http://www.369hero.com/intro.asp | 200 OK Content-Length: 12463 Content-Type: text/html | clean |
http://www.369hero.com/card.asp | 200 OK Content-Length: 13700 Content-Type: text/html | clean |
http://www.369hero.com/identity.asp?id=221 | 200 OK Content-Length: 12300 Content-Type: text/html | clean |
http://www.369hero.com/3v3.asp | 200 OK Content-Length: 13205 Content-Type: text/html | clean |
http://www.369hero.com/online.asp | 200 OK Content-Length: 13427 Content-Type: text/html | clean |
http://www.369hero.com/upload/Ó¢ÐÛÕ¶Setup.exe | HTTP/1.1 200 OK Date: Fri, 09 May 2014 16:55:16 GMT Accept-Ranges: bytes ETag: "8e9e54b5a8fccc1:16ed" Server: Microsoft-IIS/6.0 Content-Length: 72470073 Content-Location: http://www.369hero.com/upload/%D3%A2%D0%DB%D5%B6Setup.exe Content-Type: application/octet-stream Last-Modified: Wed, 07 Mar 2012 21:24:41 GMT X-Powered-By: ASP.NET | clean |
http://www.369hero.com/upload/%d3%a2%d0%db%d5%b6setup.exe | HTTP/1.1 200 OK Date: Fri, 09 May 2014 16:55:19 GMT Accept-Ranges: bytes ETag: "8e9e54b5a8fccc1:16ed" Server: Microsoft-IIS/6.0 Content-Length: 72470073 Content-Location: http://www.369hero.com/upload/%d3%a2%d0%db%d5%b6setup.exe Content-Type: application/octet-stream Last-Modified: Wed, 07 Mar 2012 21:24:41 GMT X-Powered-By: ASP.NET | clean |
http://www.369hero.com/task.asp | 200 OK Content-Length: 9657 Content-Type: text/html | clean |
http://www.369hero.com/identity.asp?id=222 | 200 OK Content-Length: 11997 Content-Type: text/html | clean |
http://www.369hero.com/identity.asp?id=223 | 200 OK Content-Length: 13270 Content-Type: text/html | clean |
http://www.369hero.com/identity.asp?id=224 | 200 OK Content-Length: 12799 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=369hero.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://369hero.com/
Result: 369hero.com is not infected or malware details are not published yet.
Result: 369hero.com is not infected or malware details are not published yet.