Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=qc-es.whedu21.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://qc-es.whedu21.com/ | 200 OK Content-Length: 67084 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://xqhao.com.ru/head.htm <iframe src=http://xqhao.com.ru/head.htm width=0 height=0 frameborder=0> | ||
http://qc-es.whedu21.com/news.asp?typeid=21&shu=7 | 200 OK Content-Length: 1329 Content-Type: text/html | clean |
http://qc-es.whedu21.com/./ReadNews.asp?NewsID=4771 | 200 OK Content-Length: 8685 Content-Type: text/html | clean |
http://qc-es.whedu21.com/././ | 200 OK Content-Length: 67084 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://xqhao.com.ru/head.htm <iframe src=http://xqhao.com.ru/head.htm width=0 height=0 frameborder=0> | ||
http://qc-es.whedu21.com/././news.asp?typeid=21&shu=7 | 200 OK Content-Length: 1329 Content-Type: text/html | clean |
http://qc-es.whedu21.com/./././ReadNews.asp?NewsID=4771 | 200 OK Content-Length: 8685 Content-Type: text/html | clean |
http://qc-es.whedu21.com/././././ | 200 OK Content-Length: 67084 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://xqhao.com.ru/head.htm <iframe src=http://xqhao.com.ru/head.htm width=0 height=0 frameborder=0> | ||
http://qc-es.whedu21.com/././././news.asp?typeid=21&shu=7 | 200 OK Content-Length: 1329 Content-Type: text/html | clean |
http://qc-es.whedu21.com/./././././ReadNews.asp?NewsID=4771 | 200 OK Content-Length: 8685 Content-Type: text/html | clean |
http://qc-es.whedu21.com/././././././ | 200 OK Content-Length: 67084 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://xqhao.com.ru/head.htm <iframe src=http://xqhao.com.ru/head.htm width=0 height=0 frameborder=0> | ||
http://qc-es.whedu21.com/././././././news.asp?typeid=21&shu=7 | 200 OK Content-Length: 1329 Content-Type: text/html | clean |
http://qc-es.whedu21.com/./././././././ReadNews.asp?NewsID=4771 | 200 OK Content-Length: 8685 Content-Type: text/html | clean |
http://qc-es.whedu21.com/././././././././ | 200 OK Content-Length: 67084 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://xqhao.com.ru/head.htm <iframe src=http://xqhao.com.ru/head.htm width=0 height=0 frameborder=0> | ||
http://qc-es.whedu21.com/././././././././news.asp?typeid=21&shu=7 | 200 OK Content-Length: 1329 Content-Type: text/html | clean |
http://qc-es.whedu21.com/./././././././././ReadNews.asp?NewsID=4771 | 200 OK Content-Length: 8685 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: qc-es.whedu21.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Wed, 14 Jan 2015 23:03:37 GMT
Server: Microsoft-IIS/6.0
Content-Length: 67084
Content-Type: text/html
Set-Cookie: ASPSESSIONIDSCSTSBAT=KCCMJPFDJJNAIBJHLAMMGGDA; path=/
X-Powered-By: ASP.NET
...67084 bytes of data.
GET / HTTP/1.1
Host: qc-es.whedu21.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Wed, 14 Jan 2015 23:03:37 GMT
Server: Microsoft-IIS/6.0
Content-Length: 67084
Content-Type: text/html
Set-Cookie: ASPSESSIONIDSCSTSBAT=KCCMJPFDJJNAIBJHLAMMGGDA; path=/
X-Powered-By: ASP.NET
...67084 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: qc-es.whedu21.com
Referer: http://www.google.com/search?q=qc-es.whedu21.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: qc-es.whedu21.com
Referer: http://www.google.com/search?q=qc-es.whedu21.com
Result:
The result is similar to the first query. There are no suspicious redirects found.