Scanned pages/files
Request | Server response | Status |
http://www.dolonchem.com/ | 200 OK Content-Length: 17049 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By LeG3ND ...[16588 bytes skipped]... ht="120" hspace="10" border=0/><br>å¥å®</a></td><td width="165"><a href="dldetailpro.php?id=2129"><img src="cnimages/1431315020.png" width="120" height="120" hspace="10" border=0/><br>ç£·é ¸è碱</a></td><td width="165"><a href="dldetailpro.php?id=2172"><img src="cnimages/1431315460.png" width="120" height="120" hspace="10" border=0/><br>Hacked By LeG3ND</a></td></tr> </table> </td> <td id="colee_left2" valign="top"></td> </tr> </table> </div> <script> //使ç¨divæ¶ï¼è¯·ä¿è¯colee_left2ä¸colee_left1æ¯å¨åä¸è¡ä¸. var speed=30//é度æ°å¼è¶å¤§é度è¶æ ¢ var colee_left2=document.getElementById("colee_left2"); var colee_left1=document.getElementById("colee_left1"); var colee_left=document.g ...[3609 bytes skipped]... | ||
http://www.dolonchem.com/js/online.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.dolonchem.com/test404page.js | 404 Not Found Content-Length: 303 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dolonchem.com
Result:
GET / HTTP/1.1
Host: dolonchem.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: dolonchem.com
Referer: http://www.google.com/search?q=dolonchem.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dolonchem.com
Referer: http://www.google.com/search?q=dolonchem.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dolonchem.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dolonchem.com/
Result: dolonchem.com is not infected or malware details are not published yet.
Result: dolonchem.com is not infected or malware details are not published yet.