Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=kkav8.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://kkav8.com/ | HTTP/1.1 200 OK Date: Mon, 29 Dec 2014 10:19:54 GMT Accept-Ranges: bytes ETag: "6ade1a714523d01:415" Server: Microsoft-IIS/6.0 Content-Length: 28646 Content-Location: http://kkav8.com/index.html Content-Type: text/html Last-Modified: Mon, 29 Dec 2014 08:57:15 GMT X-Powered-By: ASP.NET | clean |
http://kkav8.com/index.html | 200 OK Content-Length: 28646 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.eqululu.com ...[1018 bytes skipped]... nction.js"></script> </head> <body> <div class="wrap"> <div class="toptools mb"> <div class="l"></div> <div class="r"></div> <div class="notice"> <script type="text/javascript" language="javascript" src="/template/tv8/images/js/lx.js"></script></div> </div> <div class="box mb"> <a href="http://www.eqululu.com" title="¶îȥߣ-È«¹úߣÁ¿ÁìÏÈ¡¢»»¸ö×ËÊÆÔÙߣһ´ÎµÄ¶îȥߣ¸ÄÃûΪ¶îȥߣߣ¡£" target="_self" class="l logo"><img src="/template/tv8/images/logo.gif" alt="¶îȥߣ-È«¹úߣÁ¿ÁìÏÈ¡¢»»¸ö×ËÊÆÔÙߣһ´ÎµÄ¶îȥߣ¸ÄÃûΪ¶îȥߣߣ¡£" /></a> <div class="r banner"> <!-- ¹ã¸æλÖÿªÊ¼//End --> <center><script type="text/javascript" language="javascript" src="/001/tou.js"></script></center> <!-- ¹ã¸æλÖýáÊø//End --> </div> ...[3482 bytes skipped]... | ||
http://kkav8.com/js/common.js | 200 OK Content-Length: 8205 Content-Type: application/x-javascript | clean |
http://kkav8.com/js/function.js | 200 OK Content-Length: 14454 Content-Type: application/x-javascript | clean |
http://kkav8.com/template/tv8/images/js/lx.js | 200 OK Content-Length: 144 Content-Type: application/x-javascript | clean |
http://kkav8.com/001/tou.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://kkav8.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://kkav8.com/001/ding.js | 200 OK Content-Length: 3089 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: www.jizzmm.com document.writeln("<a href=\"http://www.3344mt.com/?Intr=235451\" target=\"_blank\"><img src=\"http://www.jizzmm.com/001/12272.gif\" width=\"960\" height=\"100\"><\/a>");
document.writeln("<a href=\"http://www.hm959.com/?Intr=232367\" target=\"_blank\"><img src=\"/001/12014.gif\" width=\"960\" height=\"80\"><\/a>"); document.writeln("<a href=\"http://www.sina.com.cn.yttty6545yr87khg.p ...[452 bytes skipped]... Decoded script: <a href="http://www.3344mt.com/?Intr=235451" target="_blank"><img src="http://www.jizzmm.com/001/12272.gif" width="960" height="100"></a> <a href="http://www.hm959.com/?Intr=232367" target="_blank"><img src="/001/12014.gif" width="960" height="80"></a> <a href="http://www.sina.com.cn.yttty6545yr87khg.pw/" target="_blank"><img src="/001/12016.gif" width="960" height="80"></a> <a href="http://www.5100.com/?p=17128" target="_blank"><img src="/001/12069.gif" width="960" height="80"></a> <a href="http://www.yz8822.com" target="_blank"><img src="http://www.bogongshi.com/12249.gif" width="960" height="80"></a> | ||
http://kkav8.com/001/dui.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://kkav8.com/001/heng.js | 200 OK Content-Length: 3699 Content-Type: application/x-javascript | clean |
http://kkav8.com/001/zuo.js | 200 OK Content-Length: 17986 Content-Type: application/x-javascript | clean |
http://kkav8.com/001/you.js | 200 OK Content-Length: 1710 Content-Type: application/x-javascript | clean |
http://kkav8.com/001/zhong.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://kkav8.com/001/di.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://s96.cnzz.com/z_stat.php?id=1000168570&web_id=1000168570 | 200 OK Content-Length: 10075 Content-Type: application/javascript | clean |
http://kkav8.com/001/tongji.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: kkav8.com
Result:
HTTP/1.1 200 OK
Date: Mon, 29 Dec 2014 10:19:54 GMT
Accept-Ranges: bytes
ETag: "6ade1a714523d01:415"
Server: Microsoft-IIS/6.0
Content-Length: 28646
Content-Location: http://kkav8.com/index.html
Content-Type: text/html
Last-Modified: Mon, 29 Dec 2014 08:57:15 GMT
X-Powered-By: ASP.NET
...28646 bytes of data.
GET / HTTP/1.1
Host: kkav8.com
Result:
HTTP/1.1 200 OK
Date: Mon, 29 Dec 2014 10:19:54 GMT
Accept-Ranges: bytes
ETag: "6ade1a714523d01:415"
Server: Microsoft-IIS/6.0
Content-Length: 28646
Content-Location: http://kkav8.com/index.html
Content-Type: text/html
Last-Modified: Mon, 29 Dec 2014 08:57:15 GMT
X-Powered-By: ASP.NET
...28646 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: kkav8.com
Referer: http://www.google.com/search?q=kkav8.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: kkav8.com
Referer: http://www.google.com/search?q=kkav8.com
Result:
The result is similar to the first query. There are no suspicious redirects found.