Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=88zcw.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://88zcw.net/ | 200 OK Content-Length: 46525 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.aazcw.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <title>88Õ¾³¤Íø - 88Õ¾³¤,88Õ¾³¤Íø,88Õ¾³¤ÍøÐÂÎÅ,88Õ¾³¤Íø·Ã̸,88Õ¾³¤Íø¾ÑéÐĵÃ,88Õ¾³¤ÍøÐÂÊֽ̳Ì,88Õ¾³¤ÍøÍƹã²ß»®,88Õ¾³¤ÍøËÑË÷ÓÅ»¯,88Õ¾³¤ÍøÍø׬ָÄÏ,88Õ¾³¤Íøµç×ÓÉÌÎñ,88Õ¾³¤Íø¾Û»áÐÝÏÐ,88Õ¾³¤»¥ÁªÍø.</title> <meta http-equiv="Cont ...[4657 bytes skipped]... | ||
http://88zcw.net/inc/main.asp | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://88zcw.net/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://88zcw.net/js/8586.js | HTTP/1.1 200 OK Date: Thu, 08 Jan 2015 09:08:12 GMT Accept-Ranges: bytes ETag: "673c2374999cb1:2cc6b" Server: IIS Content-Length: 795 Content-Location: http://88zcw.net/js/8586.js Content-Type: application/x-javascript Last-Modified: Sat, 11 Dec 2010 15:36:45 GMT X-Powered-By: WAF/2.0 | clean |
http://88zcw.net/inc/login.asp | 200 OK Content-Length: 767 Content-Type: text/html | clean |
http://js.csad.cc:99/page/s.php?s=2377&w=468&h=60 | 200 OK Content-Length: 718 Content-Type: text/html | clean |
http://js.csad.cc:99/page/s.php?s=2381&w=960&h=90 | 200 OK Content-Length: 718 Content-Type: text/html | clean |
http://js.csad.cc:99/page/?s=2379 | 200 OK Content-Length: 12 Content-Type: text/html | clean |
http://js.csad.cc:99/page/?s=2380 | 200 OK Content-Length: 12 Content-Type: text/html | clean |
http://js.users.51.la/8818370.js | 200 OK Content-Length: 1977 Content-Type: application/x-javascript | clean |
http://88zcw.net/inc/Std_StranJF.Js | HTTP/1.1 200 OK Date: Thu, 08 Jan 2015 09:08:24 GMT Accept-Ranges: bytes ETag: "0bc1b687745c51:2cc6b" Server: IIS Content-Length: 8641 Content-Location: http://88zcw.net/inc/Std_StranJF.Js Content-Type: application/x-javascript Last-Modified: Wed, 20 Apr 2005 07:06:00 GMT X-Powered-By: WAF/2.0 | clean |
http://88zcw.net/inc/std_stranjf.js | HTTP/1.1 200 OK Date: Thu, 08 Jan 2015 09:08:25 GMT Accept-Ranges: bytes ETag: "0bc1b687745c51:2cc6b" Server: IIS Content-Length: 8641 Content-Location: http://88zcw.net/inc/std_stranjf.js Content-Type: application/x-javascript Last-Modified: Wed, 20 Apr 2005 07:06:00 GMT X-Powered-By: WAF/2.0 | clean |
http://v2.jiathis.com/code/jiathis_r.js?move=0&btn=r3.gif | 200 OK Content-Length: 19638 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 88zcw.net
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 08 Jan 2015 09:08:02 GMT
Server: IIS
Content-Length: 46525
Content-Type: text/html
Set-Cookie: ASPSESSIONIDCARADRSR=KHNLJDBDODHDNKLGMEKFLAKF; path=/
Set-Cookie: safedog-flow-item=9FF576E49F1DFD9D434B72E6290C152A; expires=Dec, 14-Feb-2151 12:19:18 GMT; domain=88zcw.net; path=/
X-Powered-By: WAF/2.0
...46525 bytes of data.
GET / HTTP/1.1
Host: 88zcw.net
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 08 Jan 2015 09:08:02 GMT
Server: IIS
Content-Length: 46525
Content-Type: text/html
Set-Cookie: ASPSESSIONIDCARADRSR=KHNLJDBDODHDNKLGMEKFLAKF; path=/
Set-Cookie: safedog-flow-item=9FF576E49F1DFD9D434B72E6290C152A; expires=Dec, 14-Feb-2151 12:19:18 GMT; domain=88zcw.net; path=/
X-Powered-By: WAF/2.0
...46525 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 88zcw.net
Referer: http://www.google.com/search?q=88zcw.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 88zcw.net
Referer: http://www.google.com/search?q=88zcw.net
Result:
The result is similar to the first query. There are no suspicious redirects found.