Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tzsjs.gov.cn
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tzsjs.gov.cn/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tzsjs.gov.cn
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 19 Jul 2014 23:45:21 GMT
Server: Apache-Coyote/1.1
Content-Length: 120
Content-Type: text/html;charset=UTF-8
Set-Cookie: JSESSIONID=17305956D30916BA119A8430182C2A68; Path=/
...120 bytes of data.
GET / HTTP/1.1
Host: tzsjs.gov.cn
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 19 Jul 2014 23:45:21 GMT
Server: Apache-Coyote/1.1
Content-Length: 120
Content-Type: text/html;charset=UTF-8
Set-Cookie: JSESSIONID=17305956D30916BA119A8430182C2A68; Path=/
...120 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tzsjs.gov.cn
Referer: http://www.google.com/search?q=tzsjs.gov.cn
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tzsjs.gov.cn
Referer: http://www.google.com/search?q=tzsjs.gov.cn
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tzsjs.gov.cn/ | 200 OK Content-Length: 120 Content-Type: text/html | clean |
http://tzsjs.gov.cn/defaultpage.jsp | 200 OK Content-Length: 80688 Content-Type: text/html | clean |
http://tzsjs.gov.cn/winstar_client/script/PostBackForm.js | 200 OK Content-Length: 7208 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/winstar_client/script/ModuleHeaderControl.js | 200 OK Content-Length: 2809 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/JS/jquery-1.6.2.js | 200 OK Content-Length: 236202 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/JS/jquery.scrollfollow.js | 200 OK Content-Length: 326 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/Themes/Default/Template/newmenu.js | 200 OK Content-Length: 1654 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/./Resource/ContentShow/BoxViewXslt/images/flashDeafult.js | 200 OK Content-Length: 1689 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/../../Resource/ContentShow/BoxViewXslt/aaa.js | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
http://tzsjs.gov.cn/test404page.js | 404 Not Found Content-Length: 979 Content-Type: text/html | clean |
http://tzsjs.gov.cn/./Resource/ContentShow/BoxViewXslt/images/default_load.js | 200 OK Content-Length: 1033 Content-Type: application/javascript | clean |
http://tzsjs.gov.cn/DesktopModules/Adverisement/Js/2071683690.js | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |