Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=5515msc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://5515msc.com/ | 200 OK Content-Length: 16127 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 606tyc.com ...[19530 bytes skipped]... iv id="text-4" class="widget widget_text"> <div class="textwidget"> <div style="text-align:center;"> <div>åæ é¾æ¥: <a href="http://5515msc.com">www.88msc.com</a> | <a href="http://955tyc.com">ç³å太é³å</a> | <a href="http://770tyc.com">ç³å娱ä¹å</a> | <a href="http://4666msc.com">www.88msc.com</a> | <a href="http://606tyc.com">ç³å138</a> | <a href="http://0707msc.com">www.77msc.com</a></div> <div>Powered By http://5515msc.com/.Theme By <a href="http://5515msc.com/">www.88msc.com</a>.</div> </div> </div> </div> </div> </footer> </body> </html> | ||
http://5515msc.com/zb_system/script/common.js | HTTP/1.1 200 OK Date: Thu, 26 Jun 2014 17:45:13 GMT Accept-Ranges: bytes ETag: "098aae5d9cecd1:6b1d" Server: IIS Content-Length: 113828 Content-Location: http://5515msc.com/zb_system/script/common.js Content-Type: application/x-javascript Last-Modified: Fri, 30 Nov 2012 09:05:52 GMT X-Powered-By: WAF/2.0 | clean |
http://5515msc.com/test404page.js | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
http://5515msc.com/zb_system/function/c_html_js_add.asp | 200 OK Content-Length: 246 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://www.safedog.cn/safedog/sitedog_cookie.html <iframe height="0" width="0" style="border: 0px;" src="http://www.safedog.cn/safedog/sitedog_cookie.html"> | ||
http://5515msc.com/gg.js | HTTP/1.1 200 OK Date: Thu, 26 Jun 2014 17:45:17 GMT Accept-Ranges: bytes ETag: "6821b52fcc5dcf1:6b1d" Server: IIS Content-Length: 1268 Content-Location: http://5515msc.com/gg.js Content-Type: application/x-javascript Last-Modified: Tue, 22 Apr 2014 01:42:57 GMT X-Powered-By: WAF/2.0 | clean |
http://5515msc.com/tj.js | HTTP/1.1 200 OK Date: Thu, 26 Jun 2014 17:45:18 GMT Accept-Ranges: bytes ETag: "bc1aa836d55dcf1:6b1d" Server: IIS Content-Length: 133 Content-Location: http://5515msc.com/tj.js Content-Type: application/x-javascript Last-Modified: Tue, 22 Apr 2014 02:47:34 GMT X-Powered-By: WAF/2.0 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 5515msc.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 26 Jun 2014 17:45:13 GMT
Server: IIS
Content-Length: 16127
Content-Type: text/html; Charset=UTF-8
Last-Modified: 2014-6-27 1:45:12
Set-Cookie: ASPSESSIONIDCSQQBCBD=GBCFBOCCCPKMNLAAAAGOHNPA; path=/
X-Powered-By: WAF/2.0
...16127 bytes of data.
GET / HTTP/1.1
Host: 5515msc.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 26 Jun 2014 17:45:13 GMT
Server: IIS
Content-Length: 16127
Content-Type: text/html; Charset=UTF-8
Last-Modified: 2014-6-27 1:45:12
Set-Cookie: ASPSESSIONIDCSQQBCBD=GBCFBOCCCPKMNLAAAAGOHNPA; path=/
X-Powered-By: WAF/2.0
...16127 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 5515msc.com
Referer: http://www.google.com/search?q=5515msc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 5515msc.com
Referer: http://www.google.com/search?q=5515msc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.