Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gtzikqcwww.jinnuo56.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.gtzikqcwww.jinnuo56.com/ | 200 OK Content-Length: 26201 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: cp9thm5z.jinnuo56.com ...[4048 bytes skipped]... ÍæÓÎÏ·¿¨£¬Äã¿ÉÒÔ¿¼ÂǹºÂò±ê×¼µÄ¼×°å¡£ Ëü¸ù±¾¾Í²»ÊÇ°®ÇéС˵£¬ËüÊÇÒ»±¾·´°®ÇéµÄС˵£¬Ð½üʵʩµÄÎ÷²ØÈøåÈË¡°¾Êéǽ¡±¾Êé°áǨ¹¤³ÌÇ£¶¯ÁËÊÀ½çµÄÄ¿¹â¡£ Ò²ÐíÃÀÕæµÄ²»ÓÿÉÒâȥαװºÍ×°ÊΣ¡ÔÙ´ËÎÒÏëµ½ÁËÏÖʵÉú»îÖУ¬ÎÒµÄÉí±ß»ò¶à»òÉÙµÄÒ²·¢Éú¹ýÕâÑù»òÄÇÑùµÄÃÀ£¬ »®¹ýµÄÁ÷ÐÇÄÜ·ñʵÏÖÔ¸Íû£¬Ñ¹ÒÖ×ÅÄÚÐĵÄÍ´¿à°ÑÕÛÄ¥Þӵĸü³¤£¬×ìÀï¼á³Ö×ųÑÇ¿£¬ÑÛÀïµÄÀáÔÚͶ½µ£¬ ÉäÈëÀÏʦ´øÉÏÒ»±õ²Ô㣬ÎôÈÕ£¬Ëû×ÔÎÒ¼ìÌÖ£¬ËµÃ¿ÌìÔçÉϺÍÍíÉϼá³Ö¸øËý·¢Ò»ÌõÐÅÏ¢£¬ËûûÓÐ×öµ½£¬ <a href="http://cp9thm5z.jinnuo56.com/">ÕæÈý¹úÎÞË«5ÃÀÅ®</a>ÄÇʱºòµÄËýÕæɵ£¬ÄǸöʱºòÊÇÒòΪÆÚÅεİ®×Å£¬ ÆäʵËýÒ»µãÒ²²»ÏëÕâÑù£¬±Ë´Ë¶¼ÔÚȴʧȥÑÔÓïµÄÄÜÁ¦£¬ £¬ºÜÏë°®Ëû£¬ºÜÏëºÃºÃµÄ£¬µ«ÊÇÈ´ÔõôҲÕÒ²»µ½Ôø¾µÄ°²È«¸Ð£¬ µÚÒ»¼ÒÖصãÐÂÎÅÍøÕ¾£¬Ìṩ×îȨÍþ¡¢×î¿ì½Ý¡¢×îÈ«ÃæµÄÐÂÎźÍ×ÊѶ£¬ÔÛÀÏ°ÙÐÕ×Ô¼ºµÄ¡£ <strong>wwwmtcvipcom</strong>Èç¹ûÄãÕýÔÚÑ°ÇóµÄÇÅÁºÍæÓÎÏ·¿¨£¬Äã¿ÉÒÔ¿¼ÂǹºÂò±ê×¼µÄ¼×°å¡£ ÓÃÒ»ÉúµÄ×·ÇóÈ¥´ï³É£¬ лл´ó¼Ò¸øÕâÎÄÕ¶ÁÍê¡£ <br>ÄúÏÖÔÚÔĶÁµÄÎÄÕÂÊôÓÚÍõ·ÆÔÚÏßÒôÀÖ,wagacn,ÎåÔ¼¤ÇéËÄ·¿²¥·Å,ÈËÌåÒÕÊõpn134,²é¿ ...[25567 bytes skipped]... | ||
http://js.users.51.la/4043529.js | 200 OK Content-Length: 1945 Content-Type: application/x-javascript | clean |
http://www.gtzikqcwww.jinnuo56.com/jump.js | HTTP/1.1 200 OK Date: Tue, 24 Jun 2014 19:17:15 GMT Accept-Ranges: bytes ETag: "0b36187c333cf1:1459" Server: IIS Content-Length: 1704 Content-Location: http://www.gtzikqcwww.jinnuo56.com/jump.js Content-Type: application/x-javascript Last-Modified: Thu, 27 Feb 2014 13:55:10 GMT X-Powered-By: WAF/2.0 | clean |
http://www.gtzikqcwww.jinnuo56.com/test404page.js | 404 Not Found Content-Length: 670 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gtzikqcwww.jinnuo56.com
Result:
GET / HTTP/1.1
Host: gtzikqcwww.jinnuo56.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: gtzikqcwww.jinnuo56.com
Referer: http://www.google.com/search?q=gtzikqcwww.jinnuo56.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gtzikqcwww.jinnuo56.com
Referer: http://www.google.com/search?q=gtzikqcwww.jinnuo56.com
Result:
The result is similar to the first query. There are no suspicious redirects found.