Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=i.yingjiesheng.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://i.yingjiesheng.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: i.yingjiesheng.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 19 Sep 2014 18:47:44 GMT
Location: http://k.yingjiesheng.com
Content-Length: 235
Content-Type: text/html
...235 bytes of data.
GET / HTTP/1.1
Host: i.yingjiesheng.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 19 Sep 2014 18:47:44 GMT
Location: http://k.yingjiesheng.com
Content-Length: 235
Content-Type: text/html
...235 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: i.yingjiesheng.com
Referer: http://www.google.com/search?q=i.yingjiesheng.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: i.yingjiesheng.com
Referer: http://www.google.com/search?q=i.yingjiesheng.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://i.yingjiesheng.com/ | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:44 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html | clean |
http://k.yingjiesheng.com/ | 200 OK Content-Length: 5546 Content-Type: text/html | clean |
http://k.yingjiesheng.com/source/script_cookie.js | 200 OK Content-Length: 3016 Content-Type: application/x-javascript | clean |
http://i.yingjiesheng.com/source/script_common.js | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:49 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html X-Cache: Cache-6 | clean |
http://k.yingjiesheng.com/test404page.js | 404 Not Found Content-Length: 3518 Content-Type: text/html | clean |
http://count15.51yes.com/click.aspx?id=156561790&logo=12 | 200 OK Content-Length: 1694 Content-Type: text/html | clean |
http://count15.51yes.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://i.yingjiesheng.com/source/script_menu.js | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:54 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html X-Cache: Cache-6 | clean |
http://i.yingjiesheng.com/source/script_ajax.js | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:55 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html X-Cache: Cache-6 | clean |
http://i.yingjiesheng.com/source/script_face.js | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:55 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html X-Cache: Cache-6 | clean |
http://i.yingjiesheng.com/source/script_manage.js | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:58 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html X-Cache: Cache-6 | clean |
http://i.yingjiesheng.com/do.php?ac=sendmail&rand=1411152457 | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 18:47:58 GMT Location: http://k.yingjiesheng.com Content-Length: 235 Content-Type: text/html X-Cache: Cache-6-Skip | clean |