Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=qfjlgm.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://qfjlgm.com/ | HTTP/1.1 200 OK Date: Tue, 01 Jul 2014 14:03:15 GMT Accept-Ranges: bytes ETag: "e7b8f734c650cf1:c7b6" Server: Microsoft-IIS/6.0 Content-Length: 8952 Content-Location: http://qfjlgm.com/index.html Content-Type: text/html Last-Modified: Sat, 05 Apr 2014 11:57:23 GMT X-Powered-By: ASP.NET | clean |
http://qfjlgm.com/index.html | 200 OK Content-Length: 8952 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.5780.com ...[611 bytes skipped]... ÅÏ¢,ÒòΪÕâЩ¶«Î÷Ö±½Ó¿ÉÄܾö¶¨²©²ÊµÄ×îÖÕ½á¹û,¶ÄÇòÍøÒѾ×ö³öͳ¼Æ,¿´¹ýÎÒÃÇÐÅÏ¢µÄ²ÊÃÔÃǶ¼ÄܶÔ×Ô¼ºµÄÅжÏ×ö³öÒ»¸ö±È½ÏºÃ..." /><link href="skins/2009/css/sdcms.css" rel="stylesheet" type="text/css" /><script>var webdir="/";</script><script src="/editor/jquery.js" language="javascript"></script><script src="/skins/2009/js/sdcms.js" language="javascript"></script><SCRIPT language=JavaScript src="http://www.5780.com/nq.js"></SCRIPT></head><body>¡¤<div class="width"><div id="top_logo"><img src="/skins/2009/images/logo.gif" /></div><div id="top_ad"><a href="http://host.sdcms.cn/" target="_blank"><img src="/skins/2009/images/gg.jpg" alt="SDCMSÊý¾ÝÖÐÐÄ" border="0" /></a></div><div id="top_other"><a href="/plug/rss/" target="_blank">RSS¶©ÔÄ</a>¡¡|¡¡<a href="/plug/publish/">ÄäÃûͶ¸å</a><dl> ...[9702 bytes skipped]... | ||
http://qfjlgm.com/editor/jquery.js | 200 OK Content-Length: 72328 Content-Type: application/x-javascript | clean |
http://qfjlgm.com/skins/2009/js/sdcms.js | 200 OK Content-Length: 13293 Content-Type: application/x-javascript | clean |
http://www.5780.com/nq.js | HTTP/1.1 200 OK Date: Tue, 01 Jul 2014 14:03:07 GMT Accept-Ranges: bytes ETag: "ce80d772f285ce1:945b" Server: Microsoft-IIS/6.0 Content-Length: 166 Content-Location: http://www.5780.com/nq.js Content-Type: application/x-javascript Last-Modified: Sun, 21 Jul 2013 09:12:39 GMT X-Powered-By: ASP.NET | clean |
http://www.5780.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://count16.51yes.com/click.aspx?id=160190615&logo=7 | 200 OK Content-Length: 1777 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: qfjlgm.com
Result:
HTTP/1.1 200 OK
Date: Tue, 01 Jul 2014 14:03:15 GMT
Accept-Ranges: bytes
ETag: "e7b8f734c650cf1:c7b6"
Server: Microsoft-IIS/6.0
Content-Length: 8952
Content-Location: http://qfjlgm.com/index.html
Content-Type: text/html
Last-Modified: Sat, 05 Apr 2014 11:57:23 GMT
X-Powered-By: ASP.NET
...8952 bytes of data.
GET / HTTP/1.1
Host: qfjlgm.com
Result:
HTTP/1.1 200 OK
Date: Tue, 01 Jul 2014 14:03:15 GMT
Accept-Ranges: bytes
ETag: "e7b8f734c650cf1:c7b6"
Server: Microsoft-IIS/6.0
Content-Length: 8952
Content-Location: http://qfjlgm.com/index.html
Content-Type: text/html
Last-Modified: Sat, 05 Apr 2014 11:57:23 GMT
X-Powered-By: ASP.NET
...8952 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: qfjlgm.com
Referer: http://www.google.com/search?q=qfjlgm.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: qfjlgm.com
Referer: http://www.google.com/search?q=qfjlgm.com
Result:
The result is similar to the first query. There are no suspicious redirects found.