Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=8090caonan.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://8090caonan.com/ | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 19:28:42 GMT Location: http://www.8090caonan.com/ Server: Microsoft-IIS/6.0 Content-Length: 149 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.8090caonan.com/ | 200 OK Content-Length: 29469 Content-Type: text/html | clean |
http://www.8090caonan.com/static/js/common.js?f1x | 200 OK Content-Length: 67283 Content-Type: application/x-javascript | clean |
http://8090caonan.com/static/js/forum.js?f1x | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 19:28:49 GMT Location: http://www.8090caonan.com/static/js/forum.js Server: Microsoft-IIS/6.0 Content-Length: 167 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.8090caonan.com/static/js/forum.js | 200 OK Content-Length: 15312 Content-Type: application/x-javascript | clean |
http://8090caonan.com/static/js/logging.js?f1x | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 19:28:50 GMT Location: http://www.8090caonan.com/static/js/logging.js Server: Microsoft-IIS/6.0 Content-Length: 169 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.8090caonan.com/static/js/logging.js | 200 OK Content-Length: 603 Content-Type: application/x-javascript | clean |
http://8090caonan.com/source/plugin/dzkk_xshow/images/title.js | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 19:28:52 GMT Location: http://www.8090caonan.com/source/plugin/dzkk_xshow/images/title.js Server: Microsoft-IIS/6.0 Content-Length: 189 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.8090caonan.com/source/plugin/dzkk_xshow/images/title.js | 200 OK Content-Length: 2624 Content-Type: application/x-javascript | clean |
http://ck.cpms.cc:899/ckf.aspx?
action=cycteamget&ad_class=7&cycteamid=10&username=s2685623&lowunionnsername=&cy
csel=1 | 200 OK Content-Length: 60 Content-Type: text/html | clean |
http://ck.cpms.cc:899/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://code12.onetad.com/js/294/294793.js | 200 OK Content-Length: 5660 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: www.loldaojucheng.com cid='294793'; username='s2685623'; adid_ary='||2||'; ad_replace='1'; playtime='0'; width='0'; height='0'; codetype='1'; var kurl=new Array(); var ktype=new Array(); kurl[0]='www.nvtouba.com'; ktype[0]=1; konetuid='81422'; kurl[1]='www.loldaojucheng.com'; ktype[1]=1; kurl[2]='laobingun.com'; ktype[2]=1; kurl[3]='3dhaoqin.com'; ktype[3]=1; kurl[4]='bsmln.com'; ktype[4]=1; kurl[5]='www.haoqin2.com'; ktype[5]=1; kurl[6]='duwenze.net'; ktype[6]=1; kurl[7]='gongyuefei.org'; ktype[7]=1; kurl[8]='www.lifanba.net'; ktype[8]=1; kurl[9]='www.90cunai.com'; ktype[9]=1; kurl[10]='www.topman8.com'; ktype[10]=1; kurl[11 ...[4013 bytes skipped]... | ||
http://code12.onetad.com/ok.php?user=s2685623 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://f1.1lo0.net/code/pop_cpf.asp?pid=260646 | 200 OK Content-Length: 32 Content-Type: text/html | clean |
http://tcss.qq.com/ping.js?v=1f1x | 200 OK Content-Length: 8909 Content-Type: application/x-javascript | clean |
http://count30.51yes.com/click.aspx?id=309266783&logo=1 | 200 OK Content-Length: 1777 Content-Type: text/html | clean |
http://8090caonan.com/home.php?mod=misc&ac=sendmail&rand=1420658923 | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 19:29:07 GMT Location: http://www.8090caonan.com/home.php Server: Microsoft-IIS/6.0 Content-Length: 157 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.8090caonan.com/home.php | 200 OK Content-Length: 12573 Content-Type: text/html | clean |
http://www.8090caonan.com/static/js/home.js?f1x | 200 OK Content-Length: 33675 Content-Type: application/x-javascript | clean |
http://8090caonan.com/home.php?mod=misc&ac=sendmail&rand=1420658947 | HTTP/1.1 301 Moved Permanently Date: Wed, 07 Jan 2015 19:29:10 GMT Location: http://www.8090caonan.com/home.php Server: Microsoft-IIS/6.0 Content-Length: 157 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://discuz.gtimg.cn/cloud/scripts/discuz_tips.js?v=1 | 200 OK Content-Length: 6173 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 8090caonan.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Wed, 07 Jan 2015 19:28:42 GMT
Location: http://www.8090caonan.com/
Server: Microsoft-IIS/6.0
Content-Length: 149
Content-Type: text/html
X-Powered-By: ASP.NET
...149 bytes of data.
GET / HTTP/1.1
Host: 8090caonan.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Wed, 07 Jan 2015 19:28:42 GMT
Location: http://www.8090caonan.com/
Server: Microsoft-IIS/6.0
Content-Length: 149
Content-Type: text/html
X-Powered-By: ASP.NET
...149 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 8090caonan.com
Referer: http://www.google.com/search?q=8090caonan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 8090caonan.com
Referer: http://www.google.com/search?q=8090caonan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.