Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=d6buy.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.d6buy.com/ | 200 OK Content-Length: 60575 Content-Type: text/html | clean |
http://www.d6buy.com/template/default/images/funcs.js | 200 OK Content-Length: 3983 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/template/default/images/junxian.js | 200 OK Content-Length: 2186 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/template/default/images/js/td.js | 200 OK Content-Length: 543 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/js/ads/dingbu330x50.js | 200 OK Content-Length: 204 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/js/ads/index960-1.js | 200 OK Content-Length: 563 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'8442\';"); document.write(" ddgu_zid = \'5509\';"); document.write(" ddgu_type = \'4\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'130\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'1\';"); document.write(" ddgu_fd_type = \'5\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://www.d6buy.com/template/default/images/jquery-1.4.4.min.js | 200 OK Content-Length: 78601 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/template/default/images/jquery.cxslide.min.js | 200 OK Content-Length: 2436 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/js/ads/index960-2.js | 200 OK Content-Length: 563 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'8442\';"); document.write(" ddgu_zid = \'2742\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'130\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'6\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://www.d6buy.com/js/ads/index960-3.js | 200 OK Content-Length: 234 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/js/ads/index960-4.js | 200 OK Content-Length: 234 Content-Type: application/x-javascript | clean |
http://www.d6buy.com/zuixin.html | 200 OK Content-Length: 21179 Content-Type: text/html | clean |
http://www.d6buy.com/js/ads/wenzi.js | 200 OK Content-Length: 562 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'8442\';"); document.write(" ddgu_zid = \'2747\';"); document.write(" ddgu_type = \'2\'; "); document.write(" ddgu_w = \'468\';"); document.write(" ddgu_h = \'60\';"); document.write(" ddgu_row = \'2\';"); document.write(" ddgu_col = \'2\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://www.d6buy.com/js/ads/db960.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.d6buy.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: d6buy.com
Result:
GET / HTTP/1.1
Host: d6buy.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: d6buy.com
Referer: http://www.google.com/search?q=d6buy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: d6buy.com
Referer: http://www.google.com/search?q=d6buy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.