Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ghanabbs.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: amudanan.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Sat, 26 Apr 2014 03:28:06 GMT
Accept-Ranges: bytes
Age: 0
ETag: "5f-4cecbfc075a6b"
Server: Apache/2
Content-Length: 95
Content-Type: text/html
Expires: Sat, 26 Apr 2014 04:28:05 GMT
Last-Modified: Sun, 18 Nov 2012 21:50:08 GMT
...95 bytes of data.
GET / HTTP/1.1
Host: amudanan.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Sat, 26 Apr 2014 03:28:06 GMT
Accept-Ranges: bytes
Age: 0
ETag: "5f-4cecbfc075a6b"
Server: Apache/2
Content-Length: 95
Content-Type: text/html
Expires: Sat, 26 Apr 2014 04:28:05 GMT
Last-Modified: Sun, 18 Nov 2012 21:50:08 GMT
...95 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: amudanan.com
Referer: http://www.google.com/search?q=amudanan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: amudanan.com
Referer: http://www.google.com/search?q=amudanan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ghanabbs.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 26 May 2014 11:10:14 GMT Location: http://www.chineselounge.net/forum Server: Apache Content-Length: 3855 Content-Type: text/html X-Powered-By: PHP/5.3.28 | malicious |
http://www.chineselounge.net/forum | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 26 May 2014 11:10:14 GMT Location: http://www.chineselounge.net/forum/ Server: Apache Content-Length: 243 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.chineselounge.net/forum/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 26 May 2014 11:10:14 GMT Location: forum.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.28 | clean |
http://www.chineselounge.net/forum/forum.php | 200 OK Content-Length: 50772 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.chineseinghana.net ...[4380 bytes skipped]... /> <script src="static/js/forum.js?Co8" type="text/javascript"></script> </head> <body id="nv_forum" class="pg_index" onkeydown="if(event.keyCode==27) return false;"> <div id="append_parent"></div><div id="ajaxwaitid"></div> <div id="toptb" class="cl"> <div class="wp"> <div class="z"><a href="javascript:;" onclick="setHomepage('http://www.chineseinghana.net/forum/');">设为é¦é¡µ</a><a href="http://www.chineseinghana.net/forum/" onclick="addFavorite(this.href, 'å 纳å人社åºç½|å 纳å人论å|å 纳å人|西éä¸å½äºº|éæ´²åæº|å 纳åä¸|å 纳æèµ|å 纳æ 游|å 纳é£æ |å 纳æ°é»|å 纳çç¹|å 纳ç½å|å¡äººå¸¸äº|å乡è§é»|游ç©åè·¯|é»å¦¹å½å¨|æ æçç±|äºå©å¿æ¿|æèæ±è|ä¾æ±æå|ç§ç±ç»æ´»|!');return false;">æ¶èæ¬ç«</a><script type="text/javas ...[59222 bytes skipped]... | ||
http://www.chineselounge.net/forum/static/js/common.js?Co8 | 200 OK Content-Length: 67339 Content-Type: application/javascript | clean |
http://ghanabbs.com/static/js/forum.js?Co8 | 404 Not Found Content-Length: 335 Content-Type: text/html | clean |
http://ghanabbs.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://ghanabbs.com/static/js/logging.js?Co8 | 404 Not Found Content-Length: 337 Content-Type: text/html | clean |
http://ghanabbs.com/static/js/forum_slide.js?Co8 | 404 Not Found Content-Length: 341 Content-Type: text/html | clean |
http://tcss.qq.com/ping.js?v=1Co8 | 200 OK Content-Length: 8909 Content-Type: application/x-javascript | clean |
http://ghanabbs.com/home.php?mod=misc&ac=sendmail&rand=1401102614 | 404 Not Found Content-Length: 325 Content-Type: text/html | clean |
http://discuz.gtimg.cn/cloud/scripts/discuz_tips.js?v=1 | 200 OK Content-Length: 6173 Content-Type: application/x-javascript | clean |