Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=buaubr.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://buaubr.com/ | HTTP/1.1 200 OK Date: Thu, 25 Dec 2014 11:52:53 GMT Accept-Ranges: bytes ETag: "465a355a27ed01:15223" Server: Microsoft-IIS/6.0 Content-Length: 24448 Content-Location: http://buaubr.com/index.html Content-Type: text/html Last-Modified: Tue, 02 Dec 2014 11:58:57 GMT | clean |
http://buaubr.com/index.html | 200 OK Content-Length: 24448 Content-Type: text/html | clean |
http://buaubr.com/xin/head.js | HTTP/1.1 200 OK Date: Thu, 25 Dec 2014 11:52:56 GMT Accept-Ranges: bytes ETag: "b4e009695dd01:15223" Server: Microsoft-IIS/6.0 Content-Length: 1571 Content-Location: http://buaubr.com/404.html?404;http://buaubr.com:80/xin/head.js Content-Type: text/html Last-Modified: Mon, 01 Dec 2014 18:35:31 GMT | clean |
http://buaubr.com/404.html?404;http://buaubr.com:80/xin/head.js | 200 OK Content-Length: 1571 Content-Type: text/html | clean |
http://js.users.51.la/17485705.js | 200 OK Content-Length: 1930 Content-Type: application/x-javascript | clean |
http://js.17meiliba.com/zt.js | 200 OK Content-Length: 406 Content-Type: application/x-javascript | clean |
http://www.qq.com/404/search_children.js | 200 OK Content-Length: 295 Content-Type: application/javascript | clean |
http://aacqsg.com/list/tj.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://buaubr.com/list/ | HTTP/1.1 200 OK Date: Thu, 25 Dec 2014 11:53:01 GMT Accept-Ranges: bytes ETag: "88b5a1f0b41cd01:15223" Server: Microsoft-IIS/6.0 Content-Length: 46424 Content-Location: http://buaubr.com/list/index.html Content-Type: text/html Last-Modified: Sun, 21 Dec 2014 00:27:45 GMT | clean |
http://buaubr.com/list/index.html | 200 OK Content-Length: 46424 Content-Type: text/html | clean |
http://buaubr.com/list/95hrt26.html | 200 OK Content-Length: 11598 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: whwtw.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>¡¾Ð£Ô°´ºÉ«¡¿Èվ绨ÑùÄÐ×Ó²åÇúmp3,½éÉܼ¸¸ö²»Óÿ첥µÄ»ÆÉ«ÍøÕ¾,ºÃÀ³ÎëµçӰƬͷÇú</title> <meta name="keywords" content="Èվ绨ÑùÄÐ×Ó²åÇúmp3,½éÉ ...[4261 bytes skipped]... | ||
http://buaubr.com/list/si7j0p08.html | 200 OK Content-Length: 9744 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: kjsoyfl.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>¡ï¾çÇé´óƬ¡ïÈÕ±¾ÍµÅijÉÄêÈ˵çÓ°_¾µä¼Ü¿ÕÀàÑÔÇéС˵_15ËêÉ«É«Å®qq</title> <meta name="keywords" content="ÈÕ±¾ÍµÅijÉÄêÈ˵çÓ°,¾µä¼Ü¿ÕÀàÑÔÇéС˵ ...[4379 bytes skipped]... | ||
http://buaubr.com/list/yjt8f25.html | 200 OK Content-Length: 7580 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hepofa.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>¡¾ÖÆ·þË¿Íà¡¿É«ÇéÍøÕ¾ÄÇÓÐ|ÄÝ¿É´óµ¨|1080pµçӰѸ</title> <meta name="keywords" content="É«ÇéÍøÕ¾ÄÇÓÐ,ÄÝ¿É´óµ¨,1080pµçӰѸ" /> <met ...[4386 bytes skipped]... | ||
http://buaubr.com/list/26hbib885.html | 200 OK Content-Length: 103146 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: lxjmrc.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>¡ïÑÇÖÞÎÞÂëÇø¡ïÃÛÌÒÍøÉ«ÇéÊÓƵƬ¶Î_ËØÈËÄòÄò_ÈËÌå±³²¿¹Ç÷À½âÆÊͼ</title> <meta name="keywords" content="ÃÛÌÒÍøÉ«ÇéÊÓƵƬ¶Î,ËØÈËÄòÄò,ÈËÌå±³²¿¹Ç÷ ...[4263 bytes skipped]... | ||
http://buaubr.com/list/cjy553624.html | 200 OK Content-Length: 7556 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: fsaba.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>ÑÇÖÞɫͼy,µçÓ°ÒÕÊõ×Ô¾õµÄÀú³Ì,¸ø¸ø¸öÉ«ÇéÖÖ×Ó¡¾ÑÇÖÞÇéÉ«¡¿</title> <meta name="keywords" content="ÑÇÖÞɫͼy,µçÓ°ÒÕÊõ×Ô¾õµÄÀú³Ì,¸ø¸ø¸öÉ«ÇéÖÖ×Ó ...[4260 bytes skipped]... | ||
http://buaubr.com/list/627t966.html | 200 OK Content-Length: 6728 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ynxkjra.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>·çÁ÷СÒÌ×Ó3gp,sanmaoyengyuan,Ê®½õ¶ÐС˵ÔÚÏßÔĶÁ¡ïÐÔ°®¼¼ÇÉ¡ï</title> <meta name="keywords" content="·çÁ÷СÒÌ×Ó3gp,sanmaoyengyuan,Ê®½õ¶ÐÐ¡ËµÔ ...[4387 bytes skipped]... | ||
http://buaubr.com/list/i2m4n039.html | 200 OK Content-Length: 102429 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: shzyaxr.com <!DOCTYPE html PUBLIC "-//W3C//liD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/liD/xhtml1-transitional.lid">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>´©Ô½ÖÕ¼«Èý¹úС˵Äд©,¿ì²¥Â×ÀíAVÅ®µçÓ°Íø,ÈÕ±¾°®»ª¡ïÑÇÖÞɫͼ¡ï</title> <meta name="keywords" content="´©Ô½ÖÕ¼«Èý¹úС˵Äд©,¿ì²¥Â×ÀíAVÅ®µçÓ°Íø ...[4374 bytes skipped]... | ||
http://buaubr.com/test404page.js | HTTP/1.1 200 OK Date: Thu, 25 Dec 2014 11:53:13 GMT Accept-Ranges: bytes ETag: "b4e009695dd01:15223" Server: Microsoft-IIS/6.0 Content-Length: 1571 Content-Location: http://buaubr.com/404.html?404;http://buaubr.com:80/test404page.js Content-Type: text/html Last-Modified: Mon, 01 Dec 2014 18:35:31 GMT | clean |
http://buaubr.com/404.html?404;http://buaubr.com:80/test404page.js | 200 OK Content-Length: 1571 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: buaubr.com
Result:
HTTP/1.1 200 OK
Date: Thu, 25 Dec 2014 11:52:53 GMT
Accept-Ranges: bytes
ETag: "465a355a27ed01:15223"
Server: Microsoft-IIS/6.0
Content-Length: 24448
Content-Location: http://buaubr.com/index.html
Content-Type: text/html
Last-Modified: Tue, 02 Dec 2014 11:58:57 GMT
...24448 bytes of data.
GET / HTTP/1.1
Host: buaubr.com
Result:
HTTP/1.1 200 OK
Date: Thu, 25 Dec 2014 11:52:53 GMT
Accept-Ranges: bytes
ETag: "465a355a27ed01:15223"
Server: Microsoft-IIS/6.0
Content-Length: 24448
Content-Location: http://buaubr.com/index.html
Content-Type: text/html
Last-Modified: Tue, 02 Dec 2014 11:58:57 GMT
...24448 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: buaubr.com
Referer: http://www.google.com/search?q=buaubr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: buaubr.com
Referer: http://www.google.com/search?q=buaubr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.