Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=choumeile.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://choumeile.com/ | 200 OK Content-Length: 237 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: d687ef1ed80f97de.0075.cdn.78302.com <meta http-equiv="Content-Type" content="text/html; charset=gb2312" />
<script language="javascript" type="text/javascript" src="http://d687ef1ed80f97de.0075.cdn.78302.com/nipaiyi/cdn/js/20150201081358003.js?d=choumeile.com"></script> | ||
http://d687ef1ed80f97de.0075.cdn.78302.com/nipaiyi/cdn/js/20150201081358003.js?d=choumeile.com | 200 OK Content-Length: 6832 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: choumeile.com ...[2054 bytes skipped]... lt;/div></td>"); document.writeln(" <td width=\"200\" height=\"30\" bgcolor=\"#FF6699\"><div align=\"center\" class=\"STYLE1\"><a href=\"niuniuba.html\" class=\"STYLE4\">ÄÐÐÔÓÃÆ·</a></div></td>"); document.writeln(" <td width=\"200\" height=\"30\" bgcolorteln(" <td height=\"40\" colspan=\"5\"><img src=\"http://d687ef1ed80f97de.0075.cdn.78302.com/images/xia02.jpg?d=choumeile.com\" width=\"1000\" height=\"80\" /></td>"); document.writeln(" </tr>"); document.writeln(" <tr>"); document.writeln(" <td colspan=\"5\"><p align=\"center\"> </p>"); document.writeln(" <p align=\"center\">ÉîÛÚÊиñÀÖÌؿƼ¼ÓÐÏÞ¹«Ë¾</p>"); document.writeln(" <p align=\"center\"> </p></td>"); document.writeln(" </tr>"); document.writeln(" <tr& ...[1820 bytes skipped]... Decoded script: ...[2167 bytes skipped]... <td height="10" colspan="7"> </td> </tr> </table> <table width="1000" border="0" align="center" cellpadding="0" cellspacing="0"> <tr> <th width="345" height="200" align="center" valign="middle" bgcolor="#FFFF00" scope="col"><div align="center"><a href="niuniuba.html"><img src="http://d687ef1ed80f97de.0075.cdn.78302.com/images/niuniuba/name.jpg?d=choumeile.com" width="200" height="200" /></a></div></th> <th height="200" colspan="3" align="center" valign="middle" bgcolor="#FFFFFF" scope="col"><a href="moliting.html"><img src="http://d687ef1ed80f97de.0075.cdn.78302.com/images/moliting/name.jpg?d=choumeile.com" width="655" height="200" /></a></th> </tr> <tr> <td width="345" height="200" align="center" bgcolor="#9933FF"><div align="center"> ...[2514 bytes skipped]... | ||
http://choumeile.com/test404page.js | 404 Not Found Content-Length: 5217 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: choumeile.com
Result:
HTTP/1.1 200 OK
Cache-Control: 604800
Connection: close
Date: Wed, 25 Feb 2015 04:26:18 GMT
Accept-Ranges: bytes
ETag: "27d3cf9b33dd01:0"
Server: nginx/1.6.2
Content-Length: 237
Content-Type: text/html
Last-Modified: Sun, 01 Feb 2015 00:13:58 GMT
X-Powered-By: ASP.NET
...237 bytes of data.
GET / HTTP/1.1
Host: choumeile.com
Result:
HTTP/1.1 200 OK
Cache-Control: 604800
Connection: close
Date: Wed, 25 Feb 2015 04:26:18 GMT
Accept-Ranges: bytes
ETag: "27d3cf9b33dd01:0"
Server: nginx/1.6.2
Content-Length: 237
Content-Type: text/html
Last-Modified: Sun, 01 Feb 2015 00:13:58 GMT
X-Powered-By: ASP.NET
...237 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: choumeile.com
Referer: http://www.google.com/search?q=choumeile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: choumeile.com
Referer: http://www.google.com/search?q=choumeile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.