Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=3mi2.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.3mi2.com/ | 200 OK Content-Length: 83715 Content-Type: text/html | clean |
http://l.tbcdn.cn/apps/top/x/sdk.js?appkey=21207373 | 200 OK Content-Length: 30014 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/data/js/index_index_1864322495.js | 200 OK Content-Length: 250240 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/template/jian_wanzheng_advantage/js/jquery.KinSlideshow-1.2.1.min.js | 200 OK Content-Length: 16825 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/index.php?index=jian | 200 OK Content-Length: 31348 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 2855761160.zuomiao.com ...[2439 bytes skipped]... ($.cookie("NLRAF") == null && !/favorite|desk|zt11/.test(location.search)) { if (!$("#afp").length) { $("body").prepend('<div id="afp" style="display:none;"><div class="afpc"><p>ç½è´ï¼ä¸è¦å¿äºç¨3ç±³2è¿å©ååçé±å¦ï¼æ¨å¯ä»¥æ3ç±³2è¿å©ç»¼åååï¼<a id="af" class="afpa" href="javascript:void(0)" onclick="addFavorite(true)">å å ¥æ¶è夹</a><a href="http://2855761160.zuomiao.com/comm/shortcut.php" class="desktop">æ·»å å°æ¡é¢</a></p></div><div class="close_area"><label id="nlraf" onclick="CloseNLRAF(true)" for="check_nlraf" ><input type="checkbox" id="check_nlraf" />ä¸åæé</label><a id="cafp" href="javascript:void(0)" onclick="CloseNLRAF(false)"></a></div></div>') } $("#afp").slideDown("slow") } }); /*]]>*/ </script> <script ...[1422 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.3mi2.com/data/js/index_index_3763452458.js | 200 OK Content-Length: 247577 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/index.php?mod=tao&act=index | 200 OK Content-Length: 69494 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 2855761160.zuomiao.com ...[2586 bytes skipped]... ><div class="goTopBtn"> <a class="leyu" id="kefu4"></a> <a class="nbook" href="javascript:;" onClick="AddFavorite(document.location.href,document.title)"></a> <a class="nrebtn" onclick="indextop();"></a> </div> <script type="text/javascript"> /*<![CDATA[*/ function addFavorite(b){CloseNLRAF(true);var a=null;if(b=="childreTop"){var a="http://2855761160.zuomiao.com"}else{if(b=="welcomefavorite"){var a="http://2855761160.zuomiao.com?from=fav"}else{var a=location.href+(b==true?"?from=topfavorite":"")}}if($.browser.msie){window.external.addFavorite(a,"3ç±³2è¿å©ç»¼ååå-çé±ï¼ä»3ç±³2è¿å©ç»¼åååå¼å§ï¼")}else{if($.browser.mozilla){window.sidebar.addPanel("3ç±³2è¿å©ç»¼ååå-ç½è´ï¼ä»3ç±³2è¿å©ç»¼åååå¼å§ï¼",a,"")}else{alert("请æé®ç CRTLé® + D æ¶è3ç±³2è¿å©ç»¼åååç½")}}return false}function C ...[1251 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.3mi2.com/data/js/tao_index_2755286784.js | 200 OK Content-Length: 245626 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/index.php?mod=mall&act=list | 200 OK Content-Length: 77606 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 2855761160.zuomiao.com ...[2650 bytes skipped]... ><div class="goTopBtn"> <a class="leyu" id="kefu4"></a> <a class="nbook" href="javascript:;" onClick="AddFavorite(document.location.href,document.title)"></a> <a class="nrebtn" onclick="indextop();"></a> </div> <script type="text/javascript"> /*<![CDATA[*/ function addFavorite(b){CloseNLRAF(true);var a=null;if(b=="childreTop"){var a="http://2855761160.zuomiao.com"}else{if(b=="welcomefavorite"){var a="http://2855761160.zuomiao.com?from=fav"}else{var a=location.href+(b==true?"?from=topfavorite":"")}}if($.browser.msie){window.external.addFavorite(a,"3ç±³2è¿å©ç»¼ååå-çé±ï¼ä»3ç±³2è¿å©ç»¼åååå¼å§ï¼")}else{if($.browser.mozilla){window.sidebar.addPanel("3ç±³2è¿å©ç»¼ååå-ç½è´ï¼ä»3ç±³2è¿å©ç»¼åååå¼å§ï¼",a,"")}else{alert("请æé®ç CRTLé® + D æ¶è3ç±³2è¿å©ç»¼åååç½")}}return false}function C ...[1251 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.3mi2.com/data/js/mall_list_2755286784.js | 200 OK Content-Length: 245626 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/index.php?mod=paipai&act=index | 200 OK Content-Length: 62298 Content-Type: text/html | clean |
http://www.3mi2.com/data/js/paipai_index_2755286784.js | 200 OK Content-Length: 245626 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/index.php?mod=baobei&act=list | 200 OK Content-Length: 56695 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 168168.zuomiao.com <!DOCTYPE html PUBliC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta name="author" content="fhl_(20140624)" /> <title>æåå享 - 3ç±³2è¿å©åå</title> <!--ç½ç«æ é¢--> <meta name="keywor ...[4284 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.3mi2.com/data/js/baobei_list_2755286784.js | 200 OK Content-Length: 245626 Content-Type: application/x-javascript | clean |
http://www.3mi2.com/index.php?mod=huan&act=list | 200 OK Content-Length: 32869 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 2855761160.zuomiao.com ...[2663 bytes skipped]... ><div class="goTopBtn"> <a class="leyu" id="kefu4"></a> <a class="nbook" href="javascript:;" onClick="AddFavorite(document.location.href,document.title)"></a> <a class="nrebtn" onclick="indextop();"></a> </div> <script type="text/javascript"> /*<![CDATA[*/ function addFavorite(b){CloseNLRAF(true);var a=null;if(b=="childreTop"){var a="http://2855761160.zuomiao.com"}else{if(b=="welcomefavorite"){var a="http://2855761160.zuomiao.com?from=fav"}else{var a=location.href+(b==true?"?from=topfavorite":"")}}if($.browser.msie){window.external.addFavorite(a,"3ç±³2è¿å©ç»¼ååå-çé±ï¼ä»3ç±³2è¿å©ç»¼åååå¼å§ï¼")}else{if($.browser.mozilla){window.sidebar.addPanel("3ç±³2è¿å©ç»¼ååå-ç½è´ï¼ä»3ç±³2è¿å©ç»¼åååå¼å§ï¼",a,"")}else{alert("请æé®ç CRTLé® + D æ¶è3ç±³2è¿å©ç»¼åååç½")}}return false}function C ...[1251 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 3mi2.com
Result:
GET / HTTP/1.1
Host: 3mi2.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 3mi2.com
Referer: http://www.google.com/search?q=3mi2.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 3mi2.com
Referer: http://www.google.com/search?q=3mi2.com
Result:
The result is similar to the first query. There are no suspicious redirects found.