Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bbs.xiashanet.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bbs.xiashanet.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bbs.xiashanet.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 19:11:36 GMT
Via: 1.0 xsncdn (squid/3.1.19)
Server: Apache/2.2.3 (CentOS) DAV/2 PHP/5.3.19
Content-Type: text/html
Set-Cookie: eb42b_c_stamp=1412190696; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_lastvisit=0%091412190696%09%2Findex.php; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_lastpos=index; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_username=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_lastvisit=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_faceurl=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_username_encode=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_winduid=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_currency=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_lastvisit=0%091412190696%09%2Findex.php; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_oltoken=init; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_online_info=1412190696%0929%09126; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_ci=index%091412190696%09%09; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: _ac_app_ua=fb5987f797e8ba87bd; expires=Mon, 30-Sep-2019 19:11:36 GMT
X-Cache: MISS from xsncdn
X-Powered-By: PHP/5.3.19
GET / HTTP/1.1
Host: bbs.xiashanet.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 19:11:36 GMT
Via: 1.0 xsncdn (squid/3.1.19)
Server: Apache/2.2.3 (CentOS) DAV/2 PHP/5.3.19
Content-Type: text/html
Set-Cookie: eb42b_c_stamp=1412190696; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_lastvisit=0%091412190696%09%2Findex.php; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_lastpos=index; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_username=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_lastvisit=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_faceurl=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_username_encode=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_winduid=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_xsn_currency=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_lastvisit=0%091412190696%09%2Findex.php; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_oltoken=init; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_online_info=1412190696%0929%09126; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: eb42b_ci=index%091412190696%09%09; expires=Thu, 01-Oct-2015 19:11:36 GMT; path=/; domain=xiashanet.com
Set-Cookie: _ac_app_ua=fb5987f797e8ba87bd; expires=Mon, 30-Sep-2019 19:11:36 GMT
X-Cache: MISS from xsncdn
X-Powered-By: PHP/5.3.19
Second query (visit from search engine):
GET / HTTP/1.1
Host: bbs.xiashanet.com
Referer: http://www.google.com/search?q=bbs.xiashanet.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bbs.xiashanet.com
Referer: http://www.google.com/search?q=bbs.xiashanet.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://bbs.xiashanet.com/ | 200 OK Content-Length: 79149 Content-Type: text/html | clean |
http://bbs.xiashanet.com/js/core/core.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://bbs.xiashanet.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://bbs.xiashanet.com/js/pw_ajax.js | 200 OK Content-Length: 12124 Content-Type: application/x-javascript | clean |
http://inc.xiashanet.com/top?v=3.1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 01 Oct 2014 19:12:41 GMT Via: 1.0 xsncdn (squid/3.1.19) Location: http://inc.xiashanet.com/top/?v=3.1 Server: Microsoft-IIS/6.0 Content-Length: 158 Content-Type: text/html X-Cache: MISS from xsncdn X-Powered-By: ASP.NET | clean |
http://inc.xiashanet.com/top/?v=3.1 | HTTP/1.1 200 OK Connection: close Date: Wed, 01 Oct 2014 18:42:57 GMT Via: 1.0 xsncdn (squid/3.1.19) Accept-Ranges: bytes Age: 1804 ETag: "80a527969a74cf1:3f3a7" Server: Microsoft-IIS/6.0 Content-Length: 7402 Content-Location: http://inc.xiashanet.com/top/index.htm Content-Type: text/html Last-Modified: Wed, 21 May 2014 02:15:51 GMT X-Cache: HIT from xsncdn X-Powered-By: ASP.NET | clean |
http://inc.xiashanet.com/top/index.htm | 200 OK Content-Length: 7402 Content-Type: text/html | clean |
http://open.xiashanet.com/static/adsview/bbsheader_center.js?s=1391841759 | 200 OK Content-Length: 486 Content-Type: application/x-javascript | clean |
http://open.xiashanet.com/static/adsview/bbsbanner_960x60.js | 200 OK Content-Length: 484 Content-Type: application/x-javascript | clean |
http://bbs.xiashanet.com/mode/area/js/ddsliderplayer.js | 200 OK Content-Length: 2350 Content-Type: application/x-javascript | clean |
http://open.xiashanet.com/static/adsview/bbsbanner2_960x60.js | 200 OK Content-Length: 490 Content-Type: application/x-javascript | clean |
http://bbs.xiashanet.com/js/Deploy.js | 200 OK Content-Length: 1912 Content-Type: application/x-javascript | clean |
http://s30.cnzz.com/stat.php?id=99121&web_id=99121 | 200 OK Content-Length: 9317 Content-Type: application/javascript | clean |
http://s16.cnzz.com/stat.php?id=2380130&web_id=2380130 | 200 OK Content-Length: 9322 Content-Type: application/javascript | clean |
http://bbs.xiashanet.com/js/global.js | 200 OK Content-Length: 47046 Content-Type: application/x-javascript | clean |
http://bbs.xiashanet.com/mode/area/js/adminview.js | 200 OK Content-Length: 11832 Content-Type: application/x-javascript | clean |
http://bbs.xiashanet.com/js/app_global.js | 200 OK Content-Length: 9414 Content-Type: application/x-javascript | clean |