Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ggg442.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.ggg442.com/ | 200 OK Content-Length: 41261 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: toutoulu.ggg442.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gbk" /> <title>www.973vv.com-ҹҹߣÍøÕ¾</title> <meta name="keywords" content="www.973vv.com" /> <meta name="description" content="www.973vv.com ...[4376 bytes skipped]... | ||
http://www.ggg442.com/static/js/common.js?BHm | 200 OK Content-Length: 69459 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/bbs.js | 200 OK Content-Length: 1109 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/static/js/forum.js?BHm | 200 OK Content-Length: 22720 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/static/js/logging.js?BHm | 200 OK Content-Length: 603 Content-Type: application/x-javascript | clean |
http://js.users.51.la/17171447.js | 200 OK Content-Length: 1964 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/home.php?mod=misc&ac=sendmail&rand=1422516569 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://discuz.gtimg.cn/cloud/scripts/discuz_tips.js?v=1 | 200 OK Content-Length: 6173 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/member.php?mod=register | 200 OK Content-Length: 10082 Content-Type: text/html | clean |
http://www.ggg442.com/home.php?mod=misc&ac=sendmail&rand=1422516578 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://www.ggg442.com/./ | 200 OK Content-Length: 41261 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: toutoulu.ggg442.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gbk" /> <title>www.973vv.com-ҹҹߣÍøÕ¾</title> <meta name="keywords" content="www.973vv.com" /> <meta name="description" content="www.973vv.com ...[4376 bytes skipped]... | ||
http://www.ggg442.com/./static/js/common.js?BHm | 200 OK Content-Length: 69459 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/./static/js/forum.js?BHm | 200 OK Content-Length: 22720 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/./static/js/logging.js?BHm | 200 OK Content-Length: 603 Content-Type: application/x-javascript | clean |
http://www.ggg442.com/./home.php?mod=misc&ac=sendmail&rand=1422516580 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ggg442.com
Result:
GET / HTTP/1.1
Host: ggg442.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: ggg442.com
Referer: http://www.google.com/search?q=ggg442.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ggg442.com
Referer: http://www.google.com/search?q=ggg442.com
Result:
The result is similar to the first query. There are no suspicious redirects found.