Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hzrrdp.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hzrrdp.com/ | HTTP/1.1 200 OK Date: Thu, 04 Sep 2014 19:57:24 GMT Accept-Ranges: bytes ETag: "c6a848db1aecf1:78d6" Server: Microsoft-IIS/6.0 Content-Length: 14285 Content-Location: http://hzrrdp.com/index.html Content-Type: text/html Last-Modified: Sun, 03 Aug 2014 00:22:47 GMT X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/index.html | 200 OK Content-Length: 14285 Content-Type: text/html | clean |
http://hzrrdp.com/common.js | 200 OK Content-Length: 129 Content-Type: application/x-javascript | clean |
http://hzrrdp.com/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://hzrrdp.com/zyjy/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://hzrrdp.com/test404page.js | HTTP/1.1 200 OK Date: Thu, 04 Sep 2014 19:57:31 GMT Accept-Ranges: bytes ETag: "44aa286e8abcf1:78d6" Server: Microsoft-IIS/6.0 Content-Length: 68872 Content-Location: http://hzrrdp.com/404.html?404;http://hzrrdp.com:80/test404page.js Content-Type: text/html Last-Modified: Wed, 30 Jul 2014 11:22:19 GMT X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/404.html?404;http://hzrrdp.com:80/test404page.js | 200 OK Content-Length: 68872 Content-Type: text/html | clean |
http://hzrrdp.com/kzp707 | HTTP/1.1 301 Moved Permanently Date: Thu, 04 Sep 2014 19:57:33 GMT Location: http://hzrrdp.com/kzp707/ Server: Microsoft-IIS/6.0 Content-Length: 148 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/kzp707/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://hzrrdp.com/71p28q | HTTP/1.1 301 Moved Permanently Date: Thu, 04 Sep 2014 19:57:39 GMT Location: http://hzrrdp.com/71p28q/ Server: Microsoft-IIS/6.0 Content-Length: 148 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/71p28q/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://hzrrdp.com/a6w0gl | HTTP/1.1 301 Moved Permanently Date: Thu, 04 Sep 2014 19:57:44 GMT Location: http://hzrrdp.com/a6w0gl/ Server: Microsoft-IIS/6.0 Content-Length: 148 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/a6w0gl/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://hzrrdp.com/ilfv0l | HTTP/1.1 301 Moved Permanently Date: Thu, 04 Sep 2014 19:57:50 GMT Location: http://hzrrdp.com/ilfv0l/ Server: Microsoft-IIS/6.0 Content-Length: 148 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/ilfv0l/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://hzrrdp.com/8kib5r | HTTP/1.1 301 Moved Permanently Date: Thu, 04 Sep 2014 19:57:56 GMT Location: http://hzrrdp.com/8kib5r/ Server: Microsoft-IIS/6.0 Content-Length: 148 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/8kib5r/ | HTTP/1.1 200 OK Date: Thu, 04 Sep 2014 19:57:59 GMT Accept-Ranges: bytes ETag: "eefa954a48a0cf1:78d6" Server: Microsoft-IIS/6.0 Content-Length: 5388 Content-Location: http://hzrrdp.com/8kib5r/index.html Content-Type: text/html Last-Modified: Tue, 15 Jul 2014 16:17:36 GMT X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/8kib5r/index.html | 200 OK Content-Length: 5388 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: fjkenaiya.com ...[2745 bytes skipped]... Àï´óÔ¼50¶àÃ׶¯ÂþÇÌÍδóÄÌÃÀŮͼƬ³àÌõÌõ¶àˬ°¡ÈôÃÎÖåÀîåÐÒ£">¾àÀëËý¼ÒÀï´óÔ¼50¶àÃ׶¯ÂþÇÌÍδóÄÌÃÀŮͼƬ³àÌõÌõ¶àˬ°¡ÈôÃÎÖåÀîåÐÒ£</a></li> </ul> </div> <div class="facailj"> <div class="container1"> <div class="fcmain linkfa"> <div class="hcol gd"> <div class="hcol2 gd" id="ad"> <h3 style="color:gray;">ÓÑÇéÁ´½Ó</h3> <ul> <a href="http://fjkenaiya.com/2o7rn8" target="_blank">¿á¿á³ÉÈËͼƬµ¼º½</a> <a href="http://springarment.com/fic1b2" target="_blank">´ó¼¦°ÍƨÑÛ</a> <a href="http://rangon.net/sdohi1" target="_blank">ÈËÌåϲ¿ÉãÓ°</a> <a href="http://bestmingco.com/vbkq37" target="_blank">Å®ÐÔÒõ²¿È«Í¼</a> <a href="http://ntchangyu.com/kdpzvg" target="_blank">upÉ«mm-com-cn</a> <a href="http://springarment.com/gkora" target="_blank">ÉòÑôѧÉúÕÒ½ÅÅ ...[1278 bytes skipped]... | ||
http://hzrrdp.com/8kib5r/common.js | 200 OK Content-Length: 129 Content-Type: application/x-javascript | clean |
http://hzrrdp.com/8kib5r/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://hzrrdp.com/8kib5r/njszqybsmyykzy/ | HTTP/1.1 200 OK Date: Thu, 04 Sep 2014 19:58:04 GMT Accept-Ranges: bytes ETag: "3e718c4a48a0cf1:78d6" Server: Microsoft-IIS/6.0 Content-Length: 6593 Content-Location: http://hzrrdp.com/8kib5r/njszqybsmyykzy/index.html Content-Type: text/html Last-Modified: Tue, 15 Jul 2014 16:17:36 GMT X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/8kib5r/njszqybsmyykzy/index.html | 200 OK Content-Length: 6593 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: fjkenaiya.com ...[3002 bytes skipped]... ;ul> <li><span class="pageinfo">µ±Ç°Ò³Êý <strong>1</strong>¹² <strong>2</strong> Ò³</span></li> </ul> </div> <div id="bottom"></div> <div class="readme"> <div class="fcmain linkfa"> <div class="hcol gd"> <div class="hcol2 gd" id="ad"> <h3 style="color:gray;">ÓÑÇéÁ´½Ó</h3> <ul> <a href="http://fjkenaiya.com/2o7rn8" target="_blank">¿á¿á³ÉÈËͼƬµ¼º½</a> <a href="http://springarment.com/fic1b2" target="_blank">´ó¼¦°ÍƨÑÛ</a> <a href="http://rangon.net/sdohi1" target="_blank">ÈËÌåϲ¿ÉãÓ°</a> <a href="http://bestmingco.com/vbkq37" target="_blank">Å®ÐÔÒõ²¿È«Í¼</a> <a href="http://ntchangyu.com/kdpzvg" target="_blank">upÉ«mm-com-cn</a> <a href="http://springarment.com/gkora" target="_blank">ÉòÑôѧÉúÕÒ½ÅÅ ...[1152 bytes skipped]... | ||
http://hzrrdp.com/8kib5r/15pcr/ | HTTP/1.1 200 OK Date: Thu, 04 Sep 2014 19:58:05 GMT Accept-Ranges: bytes ETag: "1636914a48a0cf1:78d6" Server: Microsoft-IIS/6.0 Content-Length: 6286 Content-Location: http://hzrrdp.com/8kib5r/15pcr/index.html Content-Type: text/html Last-Modified: Tue, 15 Jul 2014 16:17:36 GMT X-Powered-By: ASP.NET | clean |
http://hzrrdp.com/8kib5r/15pcr/index.html | 200 OK Content-Length: 6286 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: fjkenaiya.com ...[3046 bytes skipped]... ;ul> <li><span class="pageinfo">µ±Ç°Ò³Êý <strong>1</strong>¹² <strong>1</strong> Ò³</span></li> </ul> </div> <div id="bottom"></div> <div class="readme"> <div class="fcmain linkfa"> <div class="hcol gd"> <div class="hcol2 gd" id="ad"> <h3 style="color:gray;">ÓÑÇéÁ´½Ó</h3> <ul> <a href="http://fjkenaiya.com/2o7rn8" target="_blank">¿á¿á³ÉÈËͼƬµ¼º½</a> <a href="http://springarment.com/fic1b2" target="_blank">´ó¼¦°ÍƨÑÛ</a> <a href="http://rangon.net/sdohi1" target="_blank">ÈËÌåϲ¿ÉãÓ°</a> <a href="http://bestmingco.com/vbkq37" target="_blank">Å®ÐÔÒõ²¿È«Í¼</a> <a href="http://ntchangyu.com/kdpzvg" target="_blank">upÉ«mm-com-cn</a> <a href="http://springarment.com/gkora" target="_blank">ÉòÑôѧÉúÕÒ½ÅÅ ...[1152 bytes skipped]... | ||
http://hzrrdp.com/8kib5r/njszqybsmyykzy/aat53420.html | 200 OK Content-Length: 6485 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: fjkenaiya.com ...[2891 bytes skipped]... /a></span></strong> <strong><span>ÏÂһƪ£º<a href="#">ûÓÐÁË</a></span> </strong> <div class="clear"></div> </div> <div id="bottom"></div> <div class="readme"> <div class="fcmain linkfa"> <div class="hcol gd"> <div class="hcol2 gd" id="ad"> <h3 style="color:gray;">ÓÑÇéÁ´½Ó</h3> <ul> <a href="http://fjkenaiya.com/2o7rn8" target="_blank">¿á¿á³ÉÈËͼƬµ¼º½</a> <a href="http://springarment.com/fic1b2" target="_blank">´ó¼¦°ÍƨÑÛ</a> <a href="http://rangon.net/sdohi1" target="_blank">ÈËÌåϲ¿ÉãÓ°</a> <a href="http://bestmingco.com/vbkq37" target="_blank">Å®ÐÔÒõ²¿È«Í¼</a> <a href="http://ntchangyu.com/kdpzvg" target="_blank">upÉ«mm-com-cn</a> <a href="http://springarment.com/gkora" target="_blank">ÉòÑôѧÉúÕÒ½ÅÅ ...[1132 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hzrrdp.com
Result:
HTTP/1.1 200 OK
Date: Thu, 04 Sep 2014 19:57:24 GMT
Accept-Ranges: bytes
ETag: "c6a848db1aecf1:78d6"
Server: Microsoft-IIS/6.0
Content-Length: 14285
Content-Location: http://hzrrdp.com/index.html
Content-Type: text/html
Last-Modified: Sun, 03 Aug 2014 00:22:47 GMT
X-Powered-By: ASP.NET
...14285 bytes of data.
GET / HTTP/1.1
Host: hzrrdp.com
Result:
HTTP/1.1 200 OK
Date: Thu, 04 Sep 2014 19:57:24 GMT
Accept-Ranges: bytes
ETag: "c6a848db1aecf1:78d6"
Server: Microsoft-IIS/6.0
Content-Length: 14285
Content-Location: http://hzrrdp.com/index.html
Content-Type: text/html
Last-Modified: Sun, 03 Aug 2014 00:22:47 GMT
X-Powered-By: ASP.NET
...14285 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hzrrdp.com
Referer: http://www.google.com/search?q=hzrrdp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hzrrdp.com
Referer: http://www.google.com/search?q=hzrrdp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.