Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bh978.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.bh978.com/ | 200 OK Content-Length: 15329 Content-Type: text/html | clean |
http://www.bh978.com/js/banner.js | 200 OK Content-Length: 1639 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com ...[608 bytes skipped]... cript type=\"text\/javascript\">"); document.writeln("ddgu_uid=\"14477\";"); document.writeln("ddgu_wid=\"14984\";"); document.writeln("ddgu_zid=\"15891\";"); document.writeln("ddgu_aid=\"34\";"); document.writeln("ddgu_type=\"5\";"); document.writeln("ddgu_w=\"960\";"); document.writeln("ddgu_h=\"385\";"); document.writeln("<\/script>"); document.writeln("<script src=\"http:\/\/js.union.doudouguo.com\/c.js\"><\/script>") document.writeln("<\script type='text\/JavaScript' charset='gb2312'>"); document.writeln("s_noadid='';"); document.writeln("s_width='960';"); document.writeln("s_height='600';"); document.writeln("s_id='20696';"); document.writeln("s_px='1';"); document.writeln("<\/script>"); document.writeln("<\script src='http://e.70e.com/js/2013_new.js' type=text/javascript charset='gb2312'><\/script>"); document.write('<sc ...[281 bytes skipped]... | ||
http://www.bh978.com/js/foot.js | 200 OK Content-Length: 1 Content-Type: application/x-javascript | clean |
http://www.bh978.com/js/clickout.js | 200 OK Content-Length: 7217 Content-Type: application/x-javascript | clean |
http://www.bh978.com/js/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://www.dmwgb.com/js/go.js | 200 OK Content-Length: 8866 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.sao1314.com ...[3625 bytes skipped]... ank" title="136009com11380">136009com11380_</a></li> <li> <a href="/201411/112169.html" target="_blank" title="www444chacom">www444chacom_</a></li> <li> <a href="/201411/112168.html" target="_blank" title="www009av.com">www009av.com_</a></li> <li> <a href="/201411/112167.html" target="_blank" title="www.sao1314.com.">www.sao1314.com._</a></li> <li> <a href="/201411/112166.html" target="_blank" title="http,www.1238080.com">http//www.1238080.com_</a></li> <li> <a href="/201411/112165.html" target="_blank" title="www.ayxxbb.com">www.ayxxbb.com/_</a></li> <li> <a href="/201411/112164.html" target="_blank" title="ÕýÔÚ²¥·Å²Ù¶ù¸¾">ÕýÔÚ²¥·Å²Ù¶ù¸¾_</a>& ...[969 bytes skipped]... | ||
http://www.tinggege3.cn/js/ad.js | 200 OK Content-Length: 1181 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.writeln("<script type=\"text\/javascript\">");
document.writeln("ddgu_uid=\"14477\";"); document.writeln("ddgu_wid=\"14984\";"); document.writeln("ddgu_zid=\"15891\";"); document.writeln("ddgu_aid=\"34\";"); document.writeln("ddgu_type=\"5\";"); document.writeln("ddgu_w=\"960\";"); document.writeln("ddgu_h=\"385\";"); document.writeln("<\/script>"); document.writeln("<script src=\"http:\/\/js.union.doudouguo.com\/c.js\"><\/script>") document.write('<script>iZid = 33708.1;iWidth = 960;iHeight = 260;</script><script charset="utf-8" src="http://t.ju33.com:89/click/js/a.js"></script>'); document.writeln("<\script type='text\/JavaScript' charset='gb2312'>"); document.writeln("s_noadid='';"); document.writeln("s_width='960';"); document.writeln("s_height='600';"); document. ...[433 bytes skipped]... | ||
http://www.tinggege3.cn/js/ad1.js | 404 Not Found Content-Length: 83 Content-Type: text/html | clean |
http://www.tinggege3.cn/test404page.js | 404 Not Found Content-Length: 83 Content-Type: text/html | clean |
http://www.tinggege3.cn/js/ad2.js | 404 Not Found Content-Length: 83 Content-Type: text/html | clean |
http://www.tinggege3.cn/js/ad3.js | 404 Not Found Content-Length: 83 Content-Type: text/html | clean |
http://www.dmwgb.com/js/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://www.dmwgb.com/js/get.js | 200 OK Content-Length: 600 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bh978.com
Result:
GET / HTTP/1.1
Host: bh978.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: bh978.com
Referer: http://www.google.com/search?q=bh978.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bh978.com
Referer: http://www.google.com/search?q=bh978.com
Result:
The result is similar to the first query. There are no suspicious redirects found.