Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sgzl18.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://sgzl18.com/ | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 23:42:15 GMT Accept-Ranges: bytes ETag: "e05a0ae9716d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 6522 Content-Location: http://sgzl18.com/index.html Content-Type: text/html Last-Modified: Sat, 13 Dec 2014 05:43:11 GMT X-Powered-By: ASP.NET | clean |
http://sgzl18.com/index.html | 200 OK Content-Length: 6522 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: dnydq.com ...[2315 bytes skipped]... 8.com/tcl9108.html" title="¡ïУ԰´ºÉ«¡ïÃÏéª Ìì¿Õ,Ê«´ÊÌ콵ҹɫÁ¹ÈçË®,Å·ÃÀ ÑÇÖÞͼƬ">¡ïУ԰´ºÉ«¡ïÃÏéª Ìì¿Õ,Ê«´ÊÌ콵ҹɫÁ¹ÈçË®,Å·ÃÀ ÑÇÖÞͼƬ</a></li> <li><a href="hIV> <DIV class="global_module margin_bot10 bg_fff"> <DIV class=global_module2_caption> <H3>ÓÑÇéÁ¬½Ó</H3> </DIV> <UL class=global_tx_list3> <li class="no1"><a href="http://dnydq.com/Article/" title="ËØÑÕ¾ÞÈéÂÒÂ×Ƭ">ËØÑÕ¾ÞÈéÂÒÂ×Ƭ</a></li> <li class="no1"><a href="http://cqshengyi.com" title="ÖØÇìºÅÍâ¿Æ¼¼ÓÐÏÞ¹«Ë¾">ÖØÇìºÅÍâ¿Æ¼¼ÓÐÏÞ¹«Ë¾</a></li> <li class="no1"><a href="http://huihuangqt.com/services/" title="ÖÐÎÄ×ÖÄ»bf307¾ÞÈéÅ®½ÌʦÖгö">ÖÐÎÄ×ÖÄ»bf307¾ÞÈéÅ®½ÌʦÖгö</a></li> <li class="no1"><a href="http://fz-jinfu.com/article/" title="±ðÈǺÀÃÅǧ½ð19Â¥">±ðÈǺÀÃÅǧ½ð19Â¥</a&g ...[1824 bytes skipped]... | ||
http://js.users.51.la/17468139.js | 200 OK Content-Length: 1931 Content-Type: application/x-javascript | clean |
http://js.17meiliba.com/zt.js | 200 OK Content-Length: 410 Content-Type: application/x-javascript | clean |
http://sgzl18.com/tj.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://sgzl18.com/mx4q3j86.html | 200 OK Content-Length: 11315 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tonghengjn.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>Ê®°Ë½ûblµçÓ°ÓÐÄÄЩ|¿ì²¥ÇñÊçÕêÈýµçÓ°|ºàÀûºÍÇí qvod¡ï³ÉÈËÔÚÏßÇø¡ï</title> <meta name="keywords" content="Ê®°Ë½ûblµçÓ°ÓÐÄÄЩ" /> <meta name="description" content="ÎÒÃÇרעÓÚÊ®°Ë½ûblµçÓ°ÓÐÄÄЩÅäËÍÒµÎñ£¬¹«Ë¾±ü³Ð¡°³ÏÒÔ´ýÈË¡¢Êµ ...[4814 bytes skipped]... | ||
http://Js.lwtzdec.com/huishou.js | 200 OK Content-Length: 1063 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: vip.hunlianyuan.com ...[596 bytes skipped]... ) > -1) { window.opener.location.href = url } else { window.opener.location.replace(url) } } }; var referer = document.referrer; if (!referer) { return }; var rst = /https?\:\/\/([^\/]+)/i.exec(referer); var host = rst ? rst[1] : 'unknown'; if (/baidu\.com$/i.test(host) && timeallow) { var search = referer.substring(referer.indexOf('?')); jump("http://vip.hunlianyuan.com/1.html"); return } })() } catch(e) {} document.write ('<script language="javascript" type="text/javascript" src="http://js.17meiliba.com/tan.js"></script>'); | ||
http://sgzl18.com/sp6bd9g65.html | 200 OK Content-Length: 10442 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: lyjk120.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>¡¾ÈÕº«Å®ÓÅ¡¿Ãâ·ÑÎÞÂëÉ«ÇéÍøÕ¾,ÄĸöÍøÕ¾¿´Ã«Æ¬,δÀ´Õ½Ê¿2qvod</title> <meta name="keywords" content="Ãâ·ÑÎÞÂëÉ«ÇéÍøÕ¾" /> <meta name="description" content="Ãâ·ÑÎÞÂëÉ«ÇéÍøÕ¾ÓÐÏÞ¹«Ë¾Î»Óڳɶ¼ÎäºîÇøÎäºî¿Æ¼¼Ô°ÎäÇàÄÏ·33ºÅ£¬¹«Ë¾ ...[4815 bytes skipped]... | ||
http://sgzl18.com/tcl9108.html | 200 OK Content-Length: 105093 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: huanqiujiaolun.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>¡ïУ԰´ºÉ«¡ïÃÏéª Ìì¿Õ,Ê«´ÊÌ콵ҹɫÁ¹ÈçË®,Å·ÃÀ ÑÇÖÞͼƬ</title> <meta name="keywords" content="ÃÏéª Ìì¿Õ" /> <meta name="description" content="ÃÏéª Ìì¿Õ±¾¹«Ë¾ÓÚ2009Äê10ÔÂÔÙ´ÎͶ×ʹº½øÈÕ²ú40¶ÖÈ«×Ô¶¯½ø¿Ú¹ÒÃæÉú²úÏß2Ìõ£¬Ä¿Ç°ÈÕ²ú ...[4913 bytes skipped]... | ||
http://sgzl18.com/1abpa9920.html | 200 OK Content-Length: 10265 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: wfhdtc.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>¿ì²¥Äܲ¦¿ì²¥Äܲ¥µÄÉ«Çé,Å·ÃÀÐÔ°®¶¯ÎïÓëÈËӰƬ,ǧÒÚ´Ê°Ô¡¾¸Ø½»¿Ú½»¡¿</title> <meta name="keywords" content="¿ì²¥Äܲ¦¿ì²¥Äܲ¥µÄÉ«Çé" /> <meta name="description" content="¿ì²¥Äܲ¦¿ì²¥Äܲ¥µÄÉ«ÇéÑô¹È»ªÊ¢ÔäÑÒÇ¥¾ßÓÐÏÞ¹«Ë¾³ÉÁ¢Å·Ã ...[4787 bytes skipped]... | ||
http://sgzl18.com/9qsj56.html | 200 OK Content-Length: 10001 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: voled-light.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3c.org/TR/1999/REC-html401-19991224/loose.dtd">
<HTML xmlns="http://www.w3.org/1999/xhtml"> <HEAD> <title>³àÉ«½ÌÊÒѸÀ×|qqÓÎÏ·ÃÀÅ®ÕÒ²çÏÂÔØ|ÑÝÔ±ÕżÑÄþ¡ïÊìÅ®ÉÙ¸¾¡ï</title> <meta name="keywords" content="³àÉ«½ÌÊÒѸÀ×" /> <meta name="description" content="³àÉ«½ÌÊÒѸÀ×Âå¼Ó´ï±£°²²úÆ·(ÉϺ£)ÓÐÏÞ¹«Ë¾ÆóÒµ¼ò½é£ºÂå¼Ó´ï¹«Ë¾ÊÇÏòÖи߼¶±£°²± ...[4848 bytes skipped]... | ||
http://sgzl18.com/sitemap.html | 200 OK Content-Length: 2333 Content-Type: text/html | clean |
http://sgzl18.com/test404page.js | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 23:42:31 GMT Accept-Ranges: bytes ETag: "b6efeff89414d01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 2365 Content-Location: http://sgzl18.com/404.html?404;http://sgzl18.com:80/test404page.js Content-Type: text/html Last-Modified: Wed, 10 Dec 2014 16:18:45 GMT X-Powered-By: ASP.NET | clean |
http://sgzl18.com/404.html?404;http://sgzl18.com:80/test404page.js | 200 OK Content-Length: 2365 Content-Type: text/html | clean |
http://www.qq.com/404/search_children.js | 200 OK Content-Length: 295 Content-Type: application/javascript | clean |
http://sgzl18.com/About/ | HTTP/1.1 200 OK Date: Wed, 04 Mar 2015 23:42:33 GMT Accept-Ranges: bytes ETag: "44569d1b71ad01:5fc" Server: Microsoft-IIS/6.0 Content-Length: 5969 Content-Location: http://sgzl18.com/About/index.html Content-Type: text/html Last-Modified: Thu, 18 Dec 2014 11:43:18 GMT X-Powered-By: ASP.NET | clean |
http://sgzl18.com/about/index.html | 200 OK Content-Length: 5969 Content-Type: text/html | clean |
http://sgzl18.com/about/selangwochengrendianyingwang/ka0c7cx96.html | 200 OK Content-Length: 18645 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: kingun.net <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=GB2312" /> <title>¡ï¾ÞÈ鲨°Ô¡ï²åÃÃÃÃÊÓƵ,¼¤ÇéÓÕ»óдÕæ¿ì²¥,ÄÏÑôË¿Íà»áËù</title> <meta name="keywords" content="²åÃÃÃÃÊÓƵ " /> <meta name="descript ...[4652 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sgzl18.com
Result:
HTTP/1.1 200 OK
Date: Wed, 04 Mar 2015 23:42:15 GMT
Accept-Ranges: bytes
ETag: "e05a0ae9716d01:5fc"
Server: Microsoft-IIS/6.0
Content-Length: 6522
Content-Location: http://sgzl18.com/index.html
Content-Type: text/html
Last-Modified: Sat, 13 Dec 2014 05:43:11 GMT
X-Powered-By: ASP.NET
...6522 bytes of data.
GET / HTTP/1.1
Host: sgzl18.com
Result:
HTTP/1.1 200 OK
Date: Wed, 04 Mar 2015 23:42:15 GMT
Accept-Ranges: bytes
ETag: "e05a0ae9716d01:5fc"
Server: Microsoft-IIS/6.0
Content-Length: 6522
Content-Location: http://sgzl18.com/index.html
Content-Type: text/html
Last-Modified: Sat, 13 Dec 2014 05:43:11 GMT
X-Powered-By: ASP.NET
...6522 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sgzl18.com
Referer: http://www.google.com/search?q=sgzl18.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sgzl18.com
Referer: http://www.google.com/search?q=sgzl18.com
Result:
The result is similar to the first query. There are no suspicious redirects found.