Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hzshiman.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hzshiman.com/ | HTTP/1.1 200 OK Date: Tue, 13 Jan 2015 00:11:11 GMT Accept-Ranges: bytes ETag: "9ceabcc883cd01:60ae" Server: Microsoft-IIS/6.0 Content-Length: 20495 Content-Location: http://hzshiman.com/index.html Content-Type: text/html Last-Modified: Sun, 30 Nov 2014 09:55:34 GMT X-Powered-By: ASP.NET | clean |
http://hzshiman.com/index.html | 200 OK Content-Length: 20495 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: js.17meiliba.com ...[693 bytes skipped]... content="no-transform " /> <meta name="robots" content="noarchive"> <LINK rel=stylesheet type=text/css href="http://hzshiman.com/trgfrkms/ung7.css"> <META name=GENERATOR content="MSHTML 8.00.6001.19088"></HEAD> <script language="javascript" type="text/javascript" src="http://js.users.51.la/17468139.js"></script> <script language="javascript" type="text/javascript" src="http://js.17meiliba.com/zt.js"></script> <BODY class=homepage> <TBODY> <TR vAlign=center> <TD width=240 align=middle><A href="http://hzshiman.com/"><IMG border=0 src="trgfrkms/ung9.gif" width=200 height=60></A></TD> <TD align=right> <DIV align=left></DIV> </TD> <TD align=right> <DIV align=right></DIV> </TD> </TR> </TBODY> <TABLE class=nav border=0 cellSpacing=0 cellPadding=0 ...[3425 bytes skipped]... | ||
http://js.users.51.la/17468139.js | 200 OK Content-Length: 1931 Content-Type: application/x-javascript | clean |
http://js.17meiliba.com/zt.js | 200 OK Content-Length: 406 Content-Type: application/x-javascript | clean |
http://hzshiman.com/sfwz/296 | HTTP/1.1 200 OK Date: Tue, 13 Jan 2015 00:11:15 GMT Accept-Ranges: bytes ETag: "8e4d992342d6cf1:60ae" Server: Microsoft-IIS/6.0 Content-Length: 1539 Content-Location: http://hzshiman.com/404.html?404;http://hzshiman.com:80/sfwz/296 Content-Type: text/html Last-Modified: Mon, 22 Sep 2014 08:49:37 GMT X-Powered-By: ASP.NET | clean |
http://hzshiman.com/404.html?404;http://hzshiman.com:80/sfwz/296 | 200 OK Content-Length: 1539 Content-Type: text/html | clean |
http://hzshiman.com/common.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://www.qq.com/404/search_children.js | 200 OK Content-Length: 295 Content-Type: application/javascript | clean |
http://hzshiman.com/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://hzshiman.com/test404page.js | HTTP/1.1 200 OK Date: Tue, 13 Jan 2015 00:11:18 GMT Accept-Ranges: bytes ETag: "8e4d992342d6cf1:60ae" Server: Microsoft-IIS/6.0 Content-Length: 1539 Content-Location: http://hzshiman.com/404.html?404;http://hzshiman.com:80/test404page.js Content-Type: text/html Last-Modified: Mon, 22 Sep 2014 08:49:37 GMT X-Powered-By: ASP.NET | clean |
http://hzshiman.com/404.html?404;http://hzshiman.com:80/test404page.js | 200 OK Content-Length: 1539 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hzshiman.com
Result:
HTTP/1.1 200 OK
Date: Tue, 13 Jan 2015 00:11:11 GMT
Accept-Ranges: bytes
ETag: "9ceabcc883cd01:60ae"
Server: Microsoft-IIS/6.0
Content-Length: 20495
Content-Location: http://hzshiman.com/index.html
Content-Type: text/html
Last-Modified: Sun, 30 Nov 2014 09:55:34 GMT
X-Powered-By: ASP.NET
...20495 bytes of data.
GET / HTTP/1.1
Host: hzshiman.com
Result:
HTTP/1.1 200 OK
Date: Tue, 13 Jan 2015 00:11:11 GMT
Accept-Ranges: bytes
ETag: "9ceabcc883cd01:60ae"
Server: Microsoft-IIS/6.0
Content-Length: 20495
Content-Location: http://hzshiman.com/index.html
Content-Type: text/html
Last-Modified: Sun, 30 Nov 2014 09:55:34 GMT
X-Powered-By: ASP.NET
...20495 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hzshiman.com
Referer: http://www.google.com/search?q=hzshiman.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hzshiman.com
Referer: http://www.google.com/search?q=hzshiman.com
Result:
The result is similar to the first query. There are no suspicious redirects found.