Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=henhenlu1lu.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geniuseingenium.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 06 Oct 2014 08:11:27 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 12277
Content-Type: text/html
Last-Modified: Tue, 30 Sep 2014 06:16:48 GMT
...12277 bytes of data.
GET / HTTP/1.1
Host: geniuseingenium.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 06 Oct 2014 08:11:27 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 12277
Content-Type: text/html
Last-Modified: Tue, 30 Sep 2014 06:16:48 GMT
...12277 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: geniuseingenium.com
Referer: http://www.google.com/search?q=geniuseingenium.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geniuseingenium.com
Referer: http://www.google.com/search?q=geniuseingenium.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.henhenlu1lu.com/ | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:34:52 GMT Location: http://www.pcbzy.com/ Server: Microsoft-IIS/6.0 Content-Length: 144 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/ | HTTP/1.1 200 OK Date: Tue, 16 Sep 2014 04:34:54 GMT Accept-Ranges: bytes ETag: "409324b61353cf1:18b4" Server: Microsoft-IIS/6.0 Content-Length: 83514 Content-Location: http://www.pcbzy.com/index.html Content-Type: text/html Last-Modified: Tue, 08 Apr 2014 10:17:14 GMT X-Powered-By: ASP.NET | clean |
http://www.pcbzy.com/index.html | 200 OK Content-Length: 83514 Content-Type: text/html | clean |
http://www.pcbzy.com/template/zhuzhu/images/history.js | 200 OK Content-Length: 3940 Content-Type: application/x-javascript | clean |
http://www.henhenlu1lu.com/template/zhuzhu/images/tabs.js | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:34:59 GMT Location: http://www.pcbzy.com/template/zhuzhu/images/tabs.js Server: Microsoft-IIS/6.0 Content-Length: 174 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/template/zhuzhu/images/tabs.js | 200 OK Content-Length: 241 Content-Type: application/x-javascript | clean |
http://www.henhenlu1lu.com/template/zhuzhu/ads/tou.js | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:02 GMT Location: http://www.pcbzy.com/template/zhuzhu/ads/tou.js Server: Microsoft-IIS/6.0 Content-Length: 170 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/template/zhuzhu/ads/tou.js | 200 OK Content-Length: 1112 Content-Type: application/x-javascript | clean |
http://www.henhenlu1lu.com/template/zhuzhu/ads/tou2.js | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:04 GMT Location: http://www.pcbzy.com/template/zhuzhu/ads/tou2.js Server: Microsoft-IIS/6.0 Content-Length: 171 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/template/zhuzhu/ads/tou2.js | 200 OK Content-Length: 117 Content-Type: application/x-javascript | clean |
http://www.henhenlu1lu.com/template/zhuzhu/ads/tou3.js | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:06 GMT Location: http://www.pcbzy.com/template/zhuzhu/ads/tou3.js Server: Microsoft-IIS/6.0 Content-Length: 171 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/template/zhuzhu/ads/tou3.js | 200 OK Content-Length: 403 Content-Type: application/x-javascript | clean |
http://www.henhenlu1lu.com/template/zhuzhu/ads/tongji.js | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:07 GMT Location: http://www.pcbzy.com/template/zhuzhu/ads/tongji.js Server: Microsoft-IIS/6.0 Content-Length: 173 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/template/zhuzhu/ads/tongji.js | 200 OK Content-Length: 675 Content-Type: application/x-javascript | clean |
http://www.henhenlu1lu.com/search.asp?keyword=ç»æä¸ç3 | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:11 GMT Location: http://www.pcbzy.com/search.asp?keyword=%E7%BB%88%E6%9E%81%E4%B8%80%E7%8F%AD3 Server: Microsoft-IIS/6.0 Content-Length: 200 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/search.asp?keyword=%e7%bb%88%e6%9e%81%e4%b8%80%e7%8f%ad3 | 200 OK Content-Length: 20035 Content-Type: text/html | clean |
http://www.pcbzy.com/template/zhuzhu/ads/vod4.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.pcbzy.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.henhenlu1lu.com/template/zhuzhu/ads/vod4.js | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:15 GMT Location: http://www.pcbzy.com/template/zhuzhu/ads/vod4.js Server: Microsoft-IIS/6.0 Content-Length: 171 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.henhenlu1lu.com/search.asp?keyword=å²ä¸äºé2 | HTTP/1.1 301 Moved Permanently Date: Tue, 16 Sep 2014 04:35:16 GMT Location: http://www.pcbzy.com/search.asp?keyword=%E5%86%B2%E4%B8%8A%E4%BA%91%E9%9C%842 Server: Microsoft-IIS/6.0 Content-Length: 200 Content-Type: text/html X-Powered-By: ASP.NET | malicious |
http://www.pcbzy.com/search.asp?keyword=%e5%86%b2%e4%b8%8a%e4%ba%91%e9%9c%842 | 200 OK Content-Length: 23020 Content-Type: text/html | clean |
http://www.pcbzy.com/search.asp?keyword=åè¯è¯ | 200 OK Content-Length: 34441 Content-Type: text/html | clean |
http://www.pcbzy.com/search.asp?keyword=è¡æ | 200 OK Content-Length: 40137 Content-Type: text/html | clean |
http://www.pcbzy.com/search.asp?keyword=é»ææ | 200 OK Content-Length: 39473 Content-Type: text/html | clean |
http://www.pcbzy.com/search.asp?keyword=å¾è¥ç | 200 OK Content-Length: 31821 Content-Type: text/html | clean |