Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=798lll.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.798lll.com/ | 200 OK Content-Length: 35559 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: lulushe.798lll.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gbk" /> <title>WWW.789lll.COM_³ÉÈËרÇø¹Ù·½ÍøÕ¾ - </title> <meta name="keywords" content="WWW.789lll.COM" /> <meta name="description" content="W ...[4432 bytes skipped]... | ||
http://www.iwppp.com/diaoyong.js | 200 OK Content-Length: 120 Content-Type: application/x-javascript | clean |
http://www.798lll.com/static/js/common.js?bR4 | 200 OK Content-Length: 69459 Content-Type: application/javascript | clean |
http://www.798lll.com/static/js/forum.js?bR4 | 200 OK Content-Length: 22720 Content-Type: application/javascript | clean |
http://www.798lll.com/static/js/logging.js?bR4 | 200 OK Content-Length: 603 Content-Type: application/javascript | clean |
http://www.798lll.com/home.php?mod=misc&ac=sendmail&rand=1421555743 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://discuz.gtimg.cn/cloud/scripts/discuz_tips.js?v=1 | 200 OK Content-Length: 6173 Content-Type: application/x-javascript | clean |
http://www.798lll.com/member.php?mod=register | 200 OK Content-Length: 9486 Content-Type: text/html | clean |
http://www.798lll.com/home.php?mod=misc&ac=sendmail&rand=1421555754 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://www.798lll.com/./ | 200 OK Content-Length: 35559 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: lulushe.798lll.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gbk" /> <title>WWW.789lll.COM_³ÉÈËרÇø¹Ù·½ÍøÕ¾ - </title> <meta name="keywords" content="WWW.789lll.COM" /> <meta name="description" content="W ...[4432 bytes skipped]... | ||
http://www.798lll.com/./static/js/common.js?bR4 | 200 OK Content-Length: 69459 Content-Type: application/javascript | clean |
http://www.798lll.com/./static/js/forum.js?bR4 | 200 OK Content-Length: 22720 Content-Type: application/javascript | clean |
http://www.798lll.com/./static/js/logging.js?bR4 | 200 OK Content-Length: 603 Content-Type: application/javascript | clean |
http://www.798lll.com/./home.php?mod=misc&ac=sendmail&rand=1421555755 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://www.798lll.com/./member.php?mod=register | 200 OK Content-Length: 9489 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 798lll.com
Result:
GET / HTTP/1.1
Host: 798lll.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 798lll.com
Referer: http://www.google.com/search?q=798lll.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 798lll.com
Referer: http://www.google.com/search?q=798lll.com
Result:
The result is similar to the first query. There are no suspicious redirects found.