Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hh266.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.hh266.com/ | 200 OK Content-Length: 243 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: d687ef1ed80f97de.0075.cdn.78302.com <meta http-equiv="Content-Type" content="text/html; charset=gb2312" />
<script language="javascript" type="text/javascript" src="http://d687ef1ed80f97de.0075.cdn.78302.com/nipaiyi/cdn/js/20150209213336001.js?d=14636981c.baidu.com"></script> | ||
http://d687ef1ed80f97de.0075.cdn.78302.com/nipaiyi/cdn/js/20150209213336001.js?d=14636981c.baidu.com | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://d687ef1ed80f97de.0075.cdn.78302.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=31104000 Connection: close Date: Sat, 07 Mar 2015 21:24:24 GMT Age: 0 Location: http://127.0.0.1/ Server: nginx Content-Type: text/html VAR-Cache: MISS X-Powered-By-360WZB: wangzhan.360.cn | clean |
http://127.0.0.1/ | 200 OK Content-Length: 3882 Content-Type: text/html | clean |
http://s7.addthis.com/js/250/addthis_widget.js | 200 OK Content-Length: 10816 Content-Type: text/javascript | clean |
http://d687ef1ed80f97de.0075.cdn.78302.com/terms.html | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=31104000 Connection: close Date: Sat, 07 Mar 2015 21:24:25 GMT Age: 0 Location: http://127.0.0.1/ Server: nginx Content-Type: text/html VAR-Cache: MISS X-Powered-By-360WZB: wangzhan.360.cn | clean |
http://127.0.0.1/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 07 Mar 2015 21:24:18 GMT Location: http://sameid.net/limit.html Server: Apache/2.4.6 (Ubuntu) Content-Length: 212 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: uri=%2Ftest404page%2Ejs;Path=/;Max-Age=31536000 Set-Cookie: ref=direct;Path=/;Max-Age=31536000 | clean |
http://sameid.net/limit.html | 200 OK Content-Length: 5242 Content-Type: text/html | clean |
http://sameid.net/ | 200 OK Content-Length: 3882 Content-Type: text/html | clean |
http://sameid.net/terms.html | 200 OK Content-Length: 12789 Content-Type: text/html | clean |
http://sameid.net/privacy.html | 200 OK Content-Length: 13339 Content-Type: text/html | clean |
http://sameid.net/test404page.js | 404 Not Found Content-Length: 3296 Content-Type: text/html | clean |
http://127.0.0.1/order?plan=pp-oneday | HTTP/1.1 302 Found Connection: close Date: Sat, 07 Mar 2015 21:24:24 GMT Location: https://www.paypal.com/cgi-bin/webscr?cmd=_xclick&business=iiveras.lt%40gmail.com&amount=9.99&no_note=1&custom=-1000-no-1-05646eca&no_shipping=1&return=http%3A%2F%2Fsameid.net%2Fthankyou&rm=2&item_name=SameID%20One%20Day%20Access%20-%201000%20requests Server: Apache/2.4.6 (Ubuntu) Content-Length: 467 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.paypal.com/cgi-bin/webscr?cmd=_xclick&business=iiveras.lt%40gmail.com&amount=9.99&no_note=1&custom=-1000-no-1-05646eca&no_shipping=1&return=http%3a%2f%2fsameid.net%2fthankyou&rm=2&item_name=sameid%20one%20day%20access%20-%201000%20requests | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0, no-cache, no-store, must-revalidate Cache-Control: max-age=0, no-cache, no-store, must-revalidate Connection: close Connection: Transfer-Encoding Date: Sat, 07 Mar 2015 21:24:32 GMT Pragma: no-cache Pragma: no-cache Location: https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&SESSION=zxHA_IMDTaXwivkLDR1JVSiqWfUKkGZfN1mQIAH5zvMvcSgJLof9dowkCnm&dispatch=50a222a57771920b6a3d7b606239e4d529b525e0b7e69bf0224adecfb0124e9b61f737ba21b081984ae437d023107361d4fe9244fda54de7 Server: Apache Content-Encoding: gzip Content-Type: text/html DC: slc-a-origin-www-2.paypal.com Set-Cookie: cwrClyrK4LoCV1fydGbAxiNL6iG=7GojGHaQHSA0j5wc9rdx5bxfG6luIB55xSDKeTdTh_gGhyfWrmNQqo3RleByQnIPLBqxov0ObCHf26e_b-QYX_WcOKBvxdUutvZLklUJz6z8NEtp7H7FW7GNJLELfzNyqKeqIu2pTLFfPqwZzxLFY4BsV3l-LDrX5Ac6sM6o5m5l4afI0RG-1PhD4sIQhI-N-Ja__GcO5RXZ5bQKniu5aKXRQNOrNyovAFE3TrMuLj_AF67O5mhWDZKnKPC; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: KHcl0EuY7AKSMgfvHl7J5E7hPtK=ujekVRT_LdnY0borW1JYAopvlbyH7DLoeXoKqMIl_-4aXMOfKvhDuzv_qeFV3cdaQonde2l_yQp-Oyge; expires=Fri, 02-Mar-2035 21:24:31 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: cookie_check=yes; expires=Tue, 04-Mar-2025 21:24:31 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navcmd=_xclick; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: abc_switch_cross_paypal=R1210%26WPSG%3d0%40500%7c1425849871%7ce%3bv%3bw%3b6%26; expires=Mon, 15-Jun-2015 21:24:31 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: tYO7fcUaay8ZtLdfOSkkxbhU8o0=IC5WJaqhowolQUYB_VxMWWF7ffNJPJuxwss5EaALPYLj5Dstb0uQElaLw8vRQRC1RTHfTW; expires=Wed, 06-May-2015 21:24:31 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: pNTcMTtQfrJuaJiwEnWXQ6yNxfq=9YHinC56mCJZ0aNOP8e1AzrFP7CsaH4VG-ytlnVxsq9FbVs2I8nlWWILNlKz3WvO0JU9nLWQKZF0C0X3KtF3TpWuOeyrn3yheFq5vSbkBh5uRYExAZvs656X8-Ew3mHJ5XMK01P2ls8GMlJ8QKfXfEKBJOJFAtxjNgv3pns015Q1XikVDXV01eWdVEqrlUYViuAASOiB7JEu_o6A_umlFKk7-p9CyXh0IczTHpinmILr2e6toDEq8Q8bRzYgcasukTEkN5F7a5NrpHgaTCQ-SA4dG7LNmHX7PA-gnwMRPNGkBnIEIvP8HTc3OQ7-RE029bKMruWE8BNFbuDBrpkdHGL8DHcCRnR_EnoG9dajxlmeAZxa; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: Apache=10.73.8.137.1425763471470482; path=/; expires=Mon, 27-Feb-45 21:24:31 GMT Set-Cookie: X-PP-SILOVER=name%3DLIVE5.WEB.1%26silo_version%3D880%26app%3Dappdisp%26TIME%3D2406284116; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: X-PP-SILOVER=; Expires=Thu, 01 Jan 1970 00:00:01 GMT Set-Cookie: Apache=10.73.8.71.1425763471463067; path=/; expires=Mon, 27-Feb-45 21:24:31 GMT Set-Cookie: AKDC=slc-a-origin-www-2.paypal.com; expires=Sat, 07-Mar-2015 21:54:32 GMT; path=/; secure Strict-Transport-Security: max-age=63072000 X-Frame-Options: SAMEORIGIN | clean |
https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&session=zxha_imdtaxwivkldr1jvsiqwfukkgzfn1mqiah5zvmvcsgjlof9dowkcnm&dispatch=50a222a57771920b6a3d7b606239e4d529b525e0b7e69bf0224adecfb0124e9b61f737ba21b081984ae437d023107361d4fe9244fda54de7 | 200 OK Content-Length: 14207 Content-Type: text/html | clean |
https://www.paypalobjects.com/WEBSCR-640-20150220-1/js/lib/min/global.js | 200 OK Content-Length: 61553 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20150220-1/js/lib/min/widgets.js | 200 OK Content-Length: 142696 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20150220-1/js/site_catalyst/pp_jscode_080706.js | 200 OK Content-Length: 61883 Content-Type: application/x-javascript | clean |
http://127.0.0.1/order?plan=pp-premium | HTTP/1.1 302 Found Connection: close Date: Sat, 07 Mar 2015 21:24:27 GMT Location: https://www.paypal.com/cgi-bin/webscr?cmd=_xclick-subscriptions&business=iiveras.lt%40gmail.com&a3=19.99&p3=1&t3=M&src=1&no_note=1&custom=-300-yes-32-8f5af0e9&no_shipping=1&return=http%3A%2F%2Fsameid.net%2Fthankyou&rm=2&item_name=SameID%20Premium%20-%20300%20requests%2Fday Server: Apache/2.4.6 (Ubuntu) Content-Length: 501 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.paypal.com/cgi-bin/webscr?cmd=_xclick-subscriptions&business=iiveras.lt%40gmail.com&a3=19.99&p3=1&t3=m&src=1&no_note=1&custom=-300-yes-32-8f5af0e9&no_shipping=1&return=http%3a%2f%2fsameid.net%2fthankyou&rm=2&item_name=sameid%20premium%20-%20300%20requests%2fday | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0, no-cache, no-store, must-revalidate Connection: close Connection: Transfer-Encoding Date: Sat, 07 Mar 2015 21:24:35 GMT Pragma: no-cache Location: https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&SESSION=RB7I6_8XD9VnroN0bjCqoImZ91QW4lEs_pMGm7VfLr0tDsiaRUJL0YZtfoO&dispatch=5885d80a13c0db1f8e263663d3faee8de62a88b92df045c56447d40d60b23a7c Server: Apache Content-Encoding: gzip Content-Type: text/html DC: slc-origin-www.paypal.com Set-Cookie: cwrClyrK4LoCV1fydGbAxiNL6iG=IudeNdAn-Z-TyaVKlCmaVD6lOyS6eo54O0hrOIU5BHwM7BQmwxbdQT-NJCk6SfZuWFbzmL7luvcDf-WTROuNIkS6kTqZyVchVMfGUUgHdhqAcq2wfO_NNYDcAf4shhMyWMLd9rQb6F4VJ7CrHm9G9zfCmkW48TPHb56amcKVcVP12DdqCLsuxmYUe4uqlrTaIDJ9TpEakM06q5rQtBdMTy44jr8I5dyeDSxgajT73vckUicYApM_6eBSS1ftCZEhRjc1nMh8OekZPRtqORIBXsKzrHYg59pSspwYSYV_SjQB5W3r6KKWOTw4HwCjybPSfF-DG8P_vfRDzYfAkwPaWLL_criAcSwSRc6sUipTJTwac5_pgTrTp79863efo9rWWNhSdTfTxPTw6DBIANkamaX5tVS1-MbYqHpfWS7f5_bC6xYtDJtPI3VZh3C; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: KHcl0EuY7AKSMgfvHl7J5E7hPtK=1oQzbolmfh8Za5JKH8SPvyCCr2x50Sl7ggPmw9-lxsMfnqWyfkyffaM3zDXvRvWy2D0jwnikFLNdUhZM; expires=Fri, 02-Mar-2035 21:24:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: cookie_check=yes; expires=Tue, 04-Mar-2025 21:24:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navcmd=_xclick-subscriptions; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: pNTcMTtQfrJuaJiwEnWXQ6yNxfq=lUstLxHLOV2TstZkjvRcJbm6EDqiTU2B_2suFLwroSiv0704gOmi23bjKfvFIC8Xs_aXTZNRbo-4D2Yjynlja1nKcufZ-fH-ZpKzaGbnIZfQESdP26NctwZsQOxxCbiYc2Vf3dN_fQA0et1Fzlgjvab9wImz86OOXD41h69gU1PQ28_-BHCmbd6AZMuJWp9LIAvnLOWmH6xfrL3LzycNHWYV_6GxOU-oJ0YrbSFaBUCW9ksqegv7-iVIhVDfoEU94LcwA-koVLZO6u9U4zk9QvYVzo7-oWntXcs4u3KWH16RgSGCf6vdLeUB5x2_0w9826MZI2YFCd3XjQDpQvUJM0QEp7ry94d95BXIBaklMH-eAeD8; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navlns=0.0; expires=Mon, 06-Mar-2017 21:24:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: Apache=10.16.0.147.1425763475263404; path=/; expires=Mon, 27-Feb-45 21:24:35 GMT Set-Cookie: X-PP-SILOVER=name%3DLIVE9.WEB.1%26silo_version%3D880%26app%3Dappdispatcher%26TIME%3D2473392980; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: X-PP-SILOVER=; Expires=Thu, 01 Jan 1970 00:00:01 GMT Set-Cookie: Apache=10.16.0.11.1425763475258189; path=/; expires=Mon, 27-Feb-45 21:24:35 GMT Set-Cookie: AKDC=slc-origin-www.paypal.com; expires=Sat, 07-Mar-2015 21:54:35 GMT; path=/; secure Strict-Transport-Security: max-age=63072000 X-Frame-Options: SAMEORIGIN | clean |
https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&session=rb7i6_8xd9vnron0bjcqoimz91qw4les_pmgm7vflr0tdsiarujl0yztfoo&dispatch=5885d80a13c0db1f8e263663d3faee8de62a88b92df045c56447d40d60b23a7c | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://127.0.0.1/order?plan=pp-business | HTTP/1.1 302 Found Connection: close Date: Sat, 07 Mar 2015 21:24:29 GMT Location: https://www.paypal.com/cgi-bin/webscr?cmd=_xclick-subscriptions&business=iiveras.lt%40gmail.com&a3=59.99&p3=1&t3=M&src=1&no_note=1&custom=-3000-yes-32-31faf08b&no_shipping=1&return=http%3A%2F%2Fsameid.net%2Fthankyou&rm=2&item_name=SameID%20Business%20-%203000%20requests%2Fday Server: Apache/2.4.6 (Ubuntu) Content-Length: 504 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.paypal.com/cgi-bin/webscr?cmd=_xclick-subscriptions&business=iiveras.lt%40gmail.com&a3=59.99&p3=1&t3=m&src=1&no_note=1&custom=-3000-yes-32-31faf08b&no_shipping=1&return=http%3a%2f%2fsameid.net%2fthankyou&rm=2&item_name=sameid%20business%20-%203000%20requests%2fday | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0, no-cache, no-store, must-revalidate Connection: close Connection: Transfer-Encoding Date: Sat, 07 Mar 2015 21:24:37 GMT Pragma: no-cache Location: https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&SESSION=_JLZYrftJAdkSXvCG1b3zQIG-mt-ib8b4FM7GuazubmssFZwZDRlkdArzXq&dispatch=5885d80a13c0db1f8e263663d3faee8de62a88b92df045c56447d40d60b23a7c Server: Apache Content-Encoding: gzip Content-Type: text/html DC: slc-origin-www.paypal.com Set-Cookie: cwrClyrK4LoCV1fydGbAxiNL6iG=FcqNyidaTEHomaF8-rsMJkXjGiTsoLKWl-_kx4HzhcGw10v_GoRJ-w0UwZRCD281lOo0476jD1X3-RhWaUhnp57A1XqspXDWU8B01uQ3ADEW19xVZXgULybnL6THGJFpzE2wI4cn4HuRNmaCvTHjw2egU-6X8VdjOfvBCCUah17jspekDlYDxoN8b-nl2ec2CPOsZRc8EVq2PucriBTKKyI92WO_tmNPOt1nUygkzGMHKX5RuQutUgxI09LrKWYUGSfr1By2tVcuhu33XapEnyQcuXyikd9u9nUtrThgCseZZasjY59SOwT_i7eNgv3vY9k4dRsGKAW9Ao_0ndw8nU04CCvB3Pr2P1_8pa4EaCPrN--2vKXHY1TIEs2ykTpvBZFoAN2fNldevlVqZ1DU7sTpIM9UDqziS-V6S5BZoPdfHk3yhLZCfHDR4Eq; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: KHcl0EuY7AKSMgfvHl7J5E7hPtK=cJaXkyWbxABBvsFOqVhiSRGsI0CU4DWeWvwyNbI-Dr4p-6zlgYLhinW44ShvvdC4CoNafLFeNVP-9PCG; expires=Fri, 02-Mar-2035 21:24:37 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: cookie_check=yes; expires=Tue, 04-Mar-2025 21:24:37 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navcmd=_xclick-subscriptions; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: pNTcMTtQfrJuaJiwEnWXQ6yNxfq=5fdcwHftLbcIJp8HPIHvUoWOx01oEW-JHVRl-nVMSpchBUIFohOAev8-KEmcGq3QZUcOack7rVhn2OBj0MNnFbU2Kp58N5w5lc118IJVikybWwbKjHu6koMcl3Usl-pspEO5PW-VQbsjSiEjdilJ_ArsFv1bAH1kKh0rwEvVHUtc-pQNkDwe2Gedu9RVgFQ4IQqewcf3dUdL4BibFS2WKwv_g5pJLyvg0o6nsJ3lJ3bi0Clvvb5O8RerKFNBJSSD6hAVHxwQxEtD_2_-ZcX8Qu18DZTsvxibk32l9nuiAjlipxOpUxuZ_P_2zYMd9r5VQ5ExaG3pRsVOEv6QKGzCIsTi9gru6BD6Zuyova_d2g2R8lQ8; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navlns=0.0; expires=Mon, 06-Mar-2017 21:24:37 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: Apache=10.16.0.148.1425763477253667; path=/; expires=Mon, 27-Feb-45 21:24:37 GMT Set-Cookie: X-PP-SILOVER=name%3DLIVE9.WEB.1%26silo_version%3D880%26app%3Dappdispatcher%26TIME%3D2506947412; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: X-PP-SILOVER=; Expires=Thu, 01 Jan 1970 00:00:01 GMT Set-Cookie: Apache=10.16.0.11.1425763477249278; path=/; expires=Mon, 27-Feb-45 21:24:37 GMT Set-Cookie: AKDC=slc-origin-www.paypal.com; expires=Sat, 07-Mar-2015 21:54:37 GMT; path=/; secure Strict-Transport-Security: max-age=63072000 X-Frame-Options: SAMEORIGIN | clean |
https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&session=_jlzyrftjadksxvcg1b3zqig-mt-ib8b4fm7guazubmssfzwzdrlkdarzxq&dispatch=5885d80a13c0db1f8e263663d3faee8de62a88b92df045c56447d40d60b23a7c | 200 OK Content-Length: 54 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hh266.com
Result:
GET / HTTP/1.1
Host: hh266.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: hh266.com
Referer: http://www.google.com/search?q=hh266.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hh266.com
Referer: http://www.google.com/search?q=hh266.com
Result:
The result is similar to the first query. There are no suspicious redirects found.