Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tianjin.wsxq.com
Result:
HTTP/1.1 200 OK
Date: Sat, 04 Oct 2014 04:05:59 GMT
Accept-Ranges: bytes
ETag: "307769be34dfcf1:22f412"
Server: Microsoft-IIS/6.0
Content-Length: 125176
Content-Location: http://tianjin.wsxq.com/index.html
Content-Type: text/html
Last-Modified: Fri, 03 Oct 2014 18:06:24 GMT
X-Powered-By: ASP.NET
...125176 bytes of data.
GET / HTTP/1.1
Host: tianjin.wsxq.com
Result:
HTTP/1.1 200 OK
Date: Sat, 04 Oct 2014 04:05:59 GMT
Accept-Ranges: bytes
ETag: "307769be34dfcf1:22f412"
Server: Microsoft-IIS/6.0
Content-Length: 125176
Content-Location: http://tianjin.wsxq.com/index.html
Content-Type: text/html
Last-Modified: Fri, 03 Oct 2014 18:06:24 GMT
X-Powered-By: ASP.NET
...125176 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tianjin.wsxq.com
Referer: http://www.google.com/search?q=tianjin.wsxq.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tianjin.wsxq.com
Referer: http://www.google.com/search?q=tianjin.wsxq.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tianjin.wsxq.com/ | HTTP/1.1 200 OK Date: Sat, 04 Oct 2014 04:05:59 GMT Accept-Ranges: bytes ETag: "307769be34dfcf1:22f412" Server: Microsoft-IIS/6.0 Content-Length: 125176 Content-Location: http://tianjin.wsxq.com/index.html Content-Type: text/html Last-Modified: Fri, 03 Oct 2014 18:06:24 GMT X-Powered-By: ASP.NET | clean |
http://tianjin.wsxq.com/index.html | 200 OK Content-Length: 125176 Content-Type: text/html | clean |
http://tianjin.wsxq.com/checkLogin.asp | 200 OK Content-Length: 1787 Content-Type: text/html | clean |
http://tianjin.wsxq.com/bbs/register.asp | 200 OK Content-Length: 18080 Content-Type: text/html | clean |
http://tianjin.wsxq.com/bbs/../count/mystat.asp?pindao=ÂÛ̳ | 200 OK Content-Length: 163 Content-Type: text/html | clean |
http://count.wsxq.com/stat.jsp?screenwidth=1024&city=tianjin&pid=&sitename=Ìì½ò&pindao=ÂÛ̳&lanmu= | 200 OK Content-Length: 11 Content-Type: text/html | clean |
http://count.wsxq.com/test404page.js | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:08 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.wsxq.com/ | HTTP/1.1 200 OK Date: Sat, 04 Oct 2014 04:06:09 GMT Accept-Ranges: bytes ETag: "8430f5c34dfcf1:22f412" Server: Microsoft-IIS/6.0 Content-Length: 82682 Content-Location: http://www.wsxq.com/index.html Content-Type: text/html Last-Modified: Fri, 03 Oct 2014 18:01:26 GMT X-Powered-By: ASP.NET | clean |
http://www.wsxq.com/index.html | 200 OK Content-Length: 82682 Content-Type: text/html | clean |
http://www.wsxq.com/index.js | 200 OK Content-Length: 14672 Content-Type: application/x-javascript | clean |
http://count.wsxq.com/checklogin.asp | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:15 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://www.wsxq.com/test404page.js | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:16 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://count.wsxq.com/showonline.jsp | 200 OK Content-Length: 22 Content-Type: text/html | clean |
http://count.wsxq.com/count/mystat.asp?sitename=×ÜÕ¾&pindao=Ê×Ò³ | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:18 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://tianjin.wsxq.com/\"javascript:this.style.behavior='url( | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:19 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://tianjin.wsxq.com/ads/ads.asp?position=2 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 04 Oct 2014 04:06:19 GMT Location: http://ads.wsxq.com/ads.asp?position=2&city=tianjin&xqid= Server: Microsoft-IIS/6.0 Content-Length: 186 Content-Type: text/html Set-Cookie: ASPSESSIONIDAQCTADBC=MHBFHILDKFKNOAICLLFNAGND; path=/ X-Powered-By: ASP.NET | clean |
http://ads.wsxq.com/ads.asp?position=2&city=tianjin&xqid= | 200 OK Content-Length: 460 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21308 Content-Type: text/javascript | clean |
http://www.wsxq.com/tianjin/ads/ads.asp?position=1 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 04 Oct 2014 04:06:23 GMT Location: http://ads.wsxq.com/ads.asp?position=1&city=tianjin&xqid= Server: Microsoft-IIS/6.0 Content-Length: 186 Content-Type: text/html Set-Cookie: ASPSESSIONIDCQCSADAC=LIAJGILDPPCNJNFFIMMBGHEJ; path=/ X-Powered-By: ASP.NET | clean |
http://ads.wsxq.com/ads.asp?position=1&city=tianjin&xqid= | 200 OK Content-Length: 460 Content-Type: text/html | clean |
http://tianjin.wsxq.com/ads/ads.asp?position=133 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 04 Oct 2014 04:06:24 GMT Location: http://ads.wsxq.com/ads.asp?position=133&city=tianjin&xqid= Server: Microsoft-IIS/6.0 Content-Length: 188 Content-Type: text/html Set-Cookie: ASPSESSIONIDAQCTADBC=AIBFHILDDECPOEODDHMFDKOG; path=/ X-Powered-By: ASP.NET | clean |
http://ads.wsxq.com/ads.asp?position=133&city=tianjin&xqid= | 200 OK Content-Length: 439 Content-Type: text/html | clean |
http://tianjin.wsxq.com/ads/ads.asp?position=134 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 04 Oct 2014 04:06:25 GMT Location: http://ads.wsxq.com/ads.asp?position=134&city=tianjin&xqid= Server: Microsoft-IIS/6.0 Content-Length: 188 Content-Type: text/html Set-Cookie: ASPSESSIONIDAQCTADBC=DIBFHILDPPOCDCHHDDNAEJGL; path=/ X-Powered-By: ASP.NET | clean |
http://ads.wsxq.com/ads.asp?position=134&city=tianjin&xqid= | 200 OK Content-Length: 989 Content-Type: text/html | clean |
http://ads.wsxq.com/\"javascript:myleft134.style.visibility='hidden';void(0);\" | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:27 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://tianjin.wsxq.com/ads/ads.asp?position=135 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 04 Oct 2014 04:06:28 GMT Location: http://ads.wsxq.com/ads.asp?position=135&city=tianjin&xqid= Server: Microsoft-IIS/6.0 Content-Length: 188 Content-Type: text/html Set-Cookie: ASPSESSIONIDAQCTADBC=IIBFHILDLDDFKCKECJJNEOPI; path=/ X-Powered-By: ASP.NET | clean |
http://ads.wsxq.com/ads.asp?position=135&city=tianjin&xqid= | 200 OK Content-Length: 1048 Content-Type: text/html | clean |
http://ads.wsxq.com/\"javascript:myleft135.style.visibility='hidden';void(0);\" | HTTP/1.1 404 Not Found Date: Sat, 04 Oct 2014 04:06:28 GMT Server: Microsoft-IIS/6.0 Content-Length: 4449 Content-Type: text/html X-Powered-By: ASP.NET | clean |
http://tianjin.wsxq.com/count/mystat.asp?pindao=Ê×Ò³ | 200 OK Content-Length: 163 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tianjin.wsxq.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tianjin.wsxq.com/
Result: tianjin.wsxq.com is not infected or malware details are not published yet.
Result: tianjin.wsxq.com is not infected or malware details are not published yet.