Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hxlysx.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.hxlysx.com/ | HTTP/1.1 302 Object moved Cache-Control: private Date: Fri, 23 Jan 2015 06:04:11 GMT Location: Chinese/main/index.asp Server: WWW Server/1.1 Content-Length: 143 Content-Type: text/html Set-Cookie: ASPSESSIONIDCSDRRRAR=KKECPOHAIJDEALHCFNMKHNFE; path=/ X-Powered-By: ASP.NET X-Safe-Firewall: zhuji.360.cn 1.0.7.3 F1W1 | clean |
http://www.hxlysx.com/chinese/main/index.asp | 200 OK Content-Length: 74578 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://s119.cnzz.com/stat.php?id=716524&web_id=716524&online=1&show=line | 200 OK Content-Length: 10074 Content-Type: application/javascript | clean |
http://lvt.zoosnet.net/JS/LsJS.aspx?siteid=LVT34771288 | 200 OK Content-Length: 6759 Content-Type: text/javascript | malicious |
Malicious code found. Script contains blacklisted domain: www.hxlysx.com ...[1319 bytes skipped]... eReceptionCode_ToRight:0);var _lr_tobottom=LR_isMobile?0:((typeof(LiveReceptionCode_ToBottom)!='undefined')?LiveReceptionCode_ToBottom:0);var _lr_left=LR_isMobile?5:((typeof(LiveReceptionCode_helpimgleft)!='undefined')?LiveReceptionCode_helpimgleft:0);var _lr_top=LR_isMobile?60:((typeof(LiveReceptionCode_helpimgtop)!='undefined')?LiveReceptionCode_helpimgtop:150);var _lr_issupport_track= LiveReceptionCode_isonline;var LR_ivite_img='http://www.hxlysx.com/upfiles/www.gif';var LR_invite_color0='#8DC4EB';var LR_invite_color1='#E1EFFC';var LR_invite_color2='#A7C5E3';var LR_invite_color3='#000000';var LR_accept_img='js/tj_blue/a_en.gif';var LR_refuse_img='js/tj_blue/r_en.gif';vareplace(d,function(a,c){b=c}),''!=b?'domain=.'+b+';':b}var LR_cookie_test=1;function LR_cookie_test1() {LR_SetCookie('LR_cookie_t0',1,0.05);LR_cookie_test=(LR_getCookie('LR_cookie_t0')!=null);}LR_cookie_test1();if(typeof(LR_hasInstall) == 'undefined'){var LR_hasI ...[1862 bytes skipped]... Decoded script: LR_repeatinvite=0; LR_repeatinvite=0; /*** called setInterval with LR_repeatinvite=0;, 20 */ if(typeof(LR_nextshowmini_s)!='undefined')LR_nextshowmini_s='lr'; if(typeof(LR_nextshowmini_s)!='undefined')LR_nextshowmini_s='lr'; /*** called setInterval with if(typeof(LR_nextshowmini_s)!='undefined')LR_nextshowmini_s='lr';, 20 */ | ||
http://www.hxlysx.com/chinese/main/../product/../product/index.asp?id=25 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.hxlysx.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../xyhs/index.asp | 200 OK Content-Length: 37875 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../xyhs/getdate.js | HTTP/1.1 200 OK Date: Fri, 23 Jan 2015 06:04:33 GMT Accept-Ranges: bytes ETag: "a2f764d752a6cf1:1387" Server: WWW Server/1.1 Content-Length: 18923 Content-Location: http://www.hxlysx.com/chinese/main/../product/../xyhs/getdate.js Content-Type: application/x-javascript Last-Modified: Wed, 23 Jul 2014 08:48:14 GMT X-Powered-By: ASP.NET X-Safe-Firewall: zhuji.360.cn 1.0.7.3 F1W1 | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/index.asp?id=16&stype=1 | 200 OK Content-Length: 37339 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/../product/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/../product/../product/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/../product/../product/../product/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/../product/../product/../product/../product/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
http://www.hxlysx.com/chinese/main/../product/../AboutUs/../product/../product/../product/../product/../product/../product/../product/index.asp?id=25 | 200 OK Content-Length: 47102 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hxlysx.com
Result:
GET / HTTP/1.1
Host: hxlysx.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: hxlysx.com
Referer: http://www.google.com/search?q=hxlysx.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hxlysx.com
Referer: http://www.google.com/search?q=hxlysx.com
Result:
The result is similar to the first query. There are no suspicious redirects found.