Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=goi8.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://goi8.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 15 Dec 2014 06:38:46 GMT Location: http://www.goi8.com/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.goi8.com/ | 200 OK Content-Length: 6279 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.139ys.com ...[4747 bytes skipped]... re_js" data="type=tools&uid=10001" ></script> <script type="text/javascript" id="bdshell_js"></script> <script type="text/javascript"> document.getElementById("bdshell_js").src = "http://bdimg.share.baidu.com/static/js/shell_v2.js?cdnversion=" + Math.ceil(new Date()/3600000) </script> <!-- Baidu Button END --> <div class="links">ÓÑÇéÕ¾µã£º<a href="http://www.139ys.com">Å©·òÍøÕ¾ ¿ì²¥</a></div> <div class="footer">By 2013 <a href="http://www.goi8.com/">É«È˸óÓ°ÊÓ</a> °æȨËùÓÐ <a href="http://www.goi8.com/sitemap/">ÍøÕ¾µØͼ</a></div> </div> </div> <div style="display:none;"><script src="/tj.js"></script><script language="javascript" type="text/javascript" src="http://js.users.51.la/15651134.js"></script></div><!-- by:d 5 ...[58 bytes skipped]... | ||
http://www.goi8.com/js.js | 200 OK Content-Length: 688 Content-Type: application/x-javascript | clean |
http://goi8.com/tj.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 15 Dec 2014 06:38:48 GMT Location: http://www.goi8.com/tj.js Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.goi8.com/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://js.users.51.la/15651134.js | 200 OK Content-Length: 1981 Content-Type: application/x-javascript | clean |
http://goi8.com/462/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 15 Dec 2014 06:38:49 GMT Location: http://www.goi8.com/462/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://www.goi8.com/462/ | 200 OK Content-Length: 3207 Content-Type: text/html | clean |
http://www.goi8.com/216/ | 200 OK Content-Length: 3131 Content-Type: text/html | clean |
http://www.goi8.com/124/ | 200 OK Content-Length: 3537 Content-Type: text/html | clean |
http://www.goi8.com/373/ | 200 OK Content-Length: 3502 Content-Type: text/html | clean |
http://www.goi8.com/405/ | 200 OK Content-Length: 3667 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.j1zw.com ...[1291 bytes skipped]... lt;/h2> <div class="l"><p> µÚÁù²¿·ÖµÚÊ®ÁùÕ ÒâËøÐé¿Õ£¨7£©×Ô·¢µÄ·¨ÂÉ´´Ôì¹ý³Ì¶ÁÁË¿ªÍ·»ðÀ±À±µÄ³ÆºôÖ®ºó£¬ÎÒÓÃ,<strong>µÚËÄÉ«di4se comÆæÃ×Ó°ÊÓ</strong>ÊÖ·÷׿ãֽ˵¡£¡°ÎÄÕýÏÜΪʲôÅöÄã¡¡ÕæÈÃÈ˲»Óä¿ì¡¡¡±¡°ÊÇ£¡ÓлÀ¡£¡±àÅ£¬ÊÇÔ²Ô¡£¿ÉÊÇÃ÷ÌìµÄÔÂÁÁÄØ?»¹ÊÇÄÇôԲÂð?ª¥</p><br /><img border="0" src="/pic/1362301667_9558.jpg"> <p> ÈÕâЩ·ÖÆç»á²»»áÈÃÄã¸Ä,<strong><a href="http://www.j1zw.com">ÆæÃ×Ó°ÊÓ777me</a>http www.68vvv.co</strong>±äÄãÒª´ÇÖ°µÄÐÒéÄØ?µÚÈý²¿·Ö£ºÔÙ¼ûÖÓÇéɽÓëË®ºÞ²»Ïà·ê(1)¼Û¸ñ£º$599£¨±ê×¼°æ£©>¡°¶Ô²»Æð£¬ÒòΪ´ÓÀ´Ã»ÓÐÅ®º¢¶ÔÎÒÕâôºÃ¹ý¡£¡±</p> <img border="0" src="/pic/1362301666_9084.jpg"><br /><p> Ëý´ÓÀ´Ã»ÓÐÏòÈκÎÈË˵Æð¹ýÕâ¼þÊÂÇé¡£´ËʱËûµÄ»°¾Í±»ÖÚÈ˵ĺôº°Éù´ò¶ÏÁË¡£Ö»ÒòΪÄÇÉÙÄêµÄÒ»·¬»°Ã´£¿Ö÷ÈË ²»£¬²»ÊÇ£¡Ê²Ã´¹þÀ®×Ó£¡£¨ÑÊÏÂÈ¥£©¡°ÄãÊÇ´ÏÃ÷ÈË£¬ÎÒ»á¸æËß,<strong><a href="/147/">¾Å³ÇÉçÇø³ÉÌùͼ</a> ...[2460 bytes skipped]... | ||
http://www.goi8.com/147/ | 200 OK Content-Length: 3346 Content-Type: text/html | clean |
http://www.goi8.com/391/ | 200 OK Content-Length: 3399 Content-Type: text/html | clean |
http://www.goi8.com/222/ | 200 OK Content-Length: 3417 Content-Type: text/html | clean |
http://www.goi8.com/166/ | 200 OK Content-Length: 3223 Content-Type: text/html | clean |
http://www.goi8.com/136/ | 200 OK Content-Length: 3336 Content-Type: text/html | clean |
http://www.goi8.com/369/ | 200 OK Content-Length: 3727 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: goi8.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 15 Dec 2014 06:38:46 GMT
Location: http://www.goi8.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
GET / HTTP/1.1
Host: goi8.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 15 Dec 2014 06:38:46 GMT
Location: http://www.goi8.com/
Server: nginx
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: goi8.com
Referer: http://www.google.com/search?q=goi8.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: goi8.com
Referer: http://www.google.com/search?q=goi8.com
Result:
The result is similar to the first query. There are no suspicious redirects found.