Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=jipinmeinvtupianw.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://jipinmeinvtupianw.com/ | 200 OK Content-Length: 61358 Content-Type: text/html | malicious |
Page code contains blacklisted domain: www.duoduommw.com ...[698 bytes skipped]... 女å¾ç,å¨æ¼«ç¾å¥³å¾ç,è¶ å¤§èç¾å¥³å¾ç,ææ£ç¹æç¾çmmå¾,æ¯æç¾å¥³å¾çæå ä¸è½½ã" /> <meta http-equiv="X-UA-Compatible" content="IE=EmulateIE7" /> <link rel="shortcut icon" href="favicon.ico" > <link href="css.css" rel="stylesheet" type="text/css" /> <script language="javascript" type="text/javascript" src="/js/tj.js"></script> <script src="http://www.duoduommw.com/js/tanchang.js"></script> <base target=_blank /> <script id="wf" type="text/javascript" charset="gb2312" src="http://t.adanzhuo.com/go.js?l=9876cc&uid=10445"></script> </head> <body> <script src="/js/youxia250x250_5293.js"></script> <center> <table height=60 cellSpacing=0 cellPadding=0 width=960 align=center bgColor=#ffffff border=0> <tr> <td alig ...[3517 bytes skipped]... Malicious iFrame found. The same iFrame was found in 3 websites. size: 960x130 src: http://www.duoduommw.com/cpa.html This URL is marked by Google as suspicious <iframe height='130' width='960' frameborder='no' scrolling='no' src= 'http://www.duoduommw.com/cpa.html'> | ||
http://jipinmeinvtupianw.com/js/tj.js | 200 OK Content-Length: 168 Content-Type: application/x-javascript | clean |
http://www.duoduommw.com/js/tanchang.js | 200 OK Content-Length: 743 Content-Type: application/x-javascript | clean |
http://t.adanzhuo.com/go.js?l=9876cc&uid=10445 | 200 OK Content-Length: 2269 Content-Type: application/x-javascript | clean |
http://jipinmeinvtupianw.com/js/youxia250x250_5293.js | 200 OK Content-Length: 88 Content-Type: application/x-javascript | clean |
http://ck.cpcv.cc:899/clk.aspx?action=adget&ad_id=142&userid=2310 | 200 OK Content-Length: 4857 Content-Type: text/html | clean |
http://ck.cpcv.cc:899/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://j.humanding.com/wangzhai/i.php?z=6844 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 11:29:43 GMT Location: http://j.ruiyongnet.com/wangzhai/i.php?z=6844 Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://j.ruiyongnet.com/wangzhai/i.php?z=6844 | 200 OK Content-Length: 18 Content-Type: text/html | clean |
http://e.70e.com/js/cpc_wz_tw_stxw_diy.js | 200 OK Content-Length: 1557 Content-Type: application/x-javascript | clean |
http://jipinmeinvtupianw.com/js/adchinacpc200x200.js | 200 OK Content-Length: 95 Content-Type: application/x-javascript | clean |
http://j.humanding.com/wangzhai/i.php?z=6843 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 11:29:50 GMT Location: http://j.ruiyongnet.com/wangzhai/i.php?z=6843 Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://j.ruiyongnet.com/wangzhai/i.php?z=6843 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://e.70e.com/h.asp?u=36666&m=13&n=&s_px=1 | 200 OK Content-Length: 572 Content-Type: text/html | clean |
http://jipinmeinvtupianw.com/js/200x200.js | 200 OK Content-Length: 278 Content-Type: application/x-javascript | clean |
http://jipinmeinvtupianw.com/js/cpc200x200.js | 200 OK Content-Length: 82 Content-Type: application/x-javascript | clean |
http://jipinmeinvtupianw.com/js/cpc960x90.js | 200 OK Content-Length: 87 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: jipinmeinvtupianw.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 11:25:32 GMT
Server: nginx/1.0.15
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: jipinmeinvtupianw.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 11:25:32 GMT
Server: nginx/1.0.15
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: jipinmeinvtupianw.com
Referer: http://www.google.com/search?q=jipinmeinvtupianw.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: jipinmeinvtupianw.com
Referer: http://www.google.com/search?q=jipinmeinvtupianw.com
Result:
The result is similar to the first query. There are no suspicious redirects found.