Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=i5d6d.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.i5d6d.com/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:58:56 GMT Accept-Ranges: bytes ETag: "89f5fd1db434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 20804 Content-Location: http://www.i5d6d.com/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:22:19 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/index.html | 200 OK Content-Length: 20804 Content-Type: text/html | clean |
http://www.i5d6d.com/images/jquery-1.9.1.min.js | 200 OK Content-Length: 92524 Content-Type: application/x-javascript | clean |
http://www.i5d6d.com/images/superslide.2.1.js | 200 OK Content-Length: 11269 Content-Type: application/x-javascript | clean |
http://www.i5d6d.com/images/cycle.js | 200 OK Content-Length: 42166 Content-Type: application/x-javascript | clean |
http://www.i5d6d.com/images/swt.js | 200 OK Content-Length: 3246 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: www.dntai.com document.writeln("<style type=\"text\/css\">"); document.writeln("#floatdiv {position:absolute;top:0px;right:0px;z-index:106;display:none;width:176px;}"); document.writeln("#qckf {position:absolute; width:109px;height:401px;background:url(http://www.dntai.com/images/swt.gif);position:absolute;left:10%; top:-30px;}"); document.writeln("<\/style>"); document.writeln("<div id=\"floatdiv\">"); document.writeln(" <div id=\"floatdiv2\">"); document.writeln(" <div style=\"width:176px;height:465px;\">"); document.writeln(" <div id=\'rightBody\' onclick=\"openKftUrl();\" >"); document.writeln("<a href=\"http://wpa.qq.com/msgrd?v ...[2841 bytes skipped]... Decoded script: <style type="text/css"> #floatdiv {position:absolute;top:0px;right:0px;z-index:106;display:none;width:176px;} #qckf {position:absolute; width:109px;height:401px;background:url(http://www.dntai.com/images/swt.gif);position:absolute;left:10%; top:-30px;} </style> <div id="floatdiv"> <div id="floatdiv2"> <div style="width:176px;height:465px;"> <div id='rightBody' onclick="openKftUrl();" > <a href="http://wpa.qq.com/msgrd?v=3&uin=2369741386&site=qq&menu=yes" target="_blank"> <div id="qckf"> </div> </a> </div> </div> </div> </div> | ||
http://www.i5d6d.com/about/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:04 GMT Accept-Ranges: bytes ETag: "85c56111b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 9530 Content-Location: http://www.i5d6d.com/about/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:58 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/about/index.html | 200 OK Content-Length: 9530 Content-Type: text/html | clean |
http://www.i5d6d.com/Guide/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:06 GMT Accept-Ranges: bytes ETag: "e7d69311b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 10705 Content-Location: http://www.i5d6d.com/Guide/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:58 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/guide/index.html | 200 OK Content-Length: 10705 Content-Type: text/html | clean |
http://www.i5d6d.com/guide/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:08 GMT Accept-Ranges: bytes ETag: "e7d69311b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 10705 Content-Location: http://www.i5d6d.com/guide/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:58 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.i5d6d.com/news/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:09 GMT Accept-Ranges: bytes ETag: "4370ee11b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 11623 Content-Location: http://www.i5d6d.com/news/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:59 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/news/index.html | 200 OK Content-Length: 11623 Content-Type: text/html | clean |
http://www.i5d6d.com/tzxy/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:12 GMT Accept-Ranges: bytes ETag: "a5812012b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 10795 Content-Location: http://www.i5d6d.com/tzxy/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:59 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/tzxy/index.html | 200 OK Content-Length: 10795 Content-Type: text/html | clean |
http://www.i5d6d.com/Download/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:14 GMT Accept-Ranges: bytes ETag: "53ce4d12b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 9893 Content-Location: http://www.i5d6d.com/Download/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:59 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/download/index.html | 200 OK Content-Length: 9893 Content-Type: text/html | clean |
http://www.i5d6d.com/download/ | HTTP/1.1 200 OK Date: Thu, 29 Jan 2015 00:59:16 GMT Accept-Ranges: bytes ETag: "53ce4d12b434d01:8e7" Server: Microsoft-IIS/6.0 Content-Length: 9893 Content-Location: http://www.i5d6d.com/download/index.html Content-Type: text/html Last-Modified: Tue, 20 Jan 2015 13:21:59 GMT X-Powered-By: ASP.NET | clean |
http://www.i5d6d.com/about/dljm.html | 200 OK Content-Length: 11957 Content-Type: text/html | clean |
http://www.i5d6d.com/Guide/yjgz.html | 200 OK Content-Length: 23723 Content-Type: text/html | clean |
http://www.i5d6d.com/about/lxwm.html | 200 OK Content-Length: 10511 Content-Type: text/html | clean |
http://www.i5d6d.com/about/gywm.html | 200 OK Content-Length: 12296 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: i5d6d.com
Result:
GET / HTTP/1.1
Host: i5d6d.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: i5d6d.com
Referer: http://www.google.com/search?q=i5d6d.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: i5d6d.com
Referer: http://www.google.com/search?q=i5d6d.com
Result:
The result is similar to the first query. There are no suspicious redirects found.