Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://wa8090.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: wa8090.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 08 May 2014 02:00:26 GMT Location: http://piopo.25u.com/ Server: Microsoft-IIS/6.0 Content-Type: text/html; charset=gbk Set-Cookie: rbOu_2132_saltkey=fDH0052E; expires=Sat, 07-Jun-2014 02:00:26 GMT; path=/; httponly Set-Cookie: rbOu_2132_lastvisit=1399510826; expires=Sat, 07-Jun-2014 02:00:26 GMT; path=/ Set-Cookie: rbOu_2132_sid=A2oaWT; expires=Fri, 09-May-2014 02:00:26 GMT; path=/ Set-Cookie: rbOu_2132_lastact=1399514426%09forum.php%09; expires=Fri, 09-May-2014 02:00:26 GMT; path=/ Set-Cookie: rbOu_2132_stats_qc_reg=deleted; expires=Wed, 08-May-2013 02:00:25 GMT; path=/ Set-Cookie: rbOu_2132_cloudstatpost=deleted; expires=Wed, 08-May-2013 02:00:25 GMT; path=/ X-Powered-By: ASP.NET | malicious |
Scanned pages/files
Request | Server response | Status |
http://wa8090.com/ | 200 OK Content-Length: 41228 Content-Type: text/html | clean |
http://wa8090.com/static/js/common.js?tVx | 200 OK Content-Length: 64166 Content-Type: application/x-javascript | clean |
http://wa8090.com/static/js/forum.js?tVx | 200 OK Content-Length: 15331 Content-Type: application/x-javascript | clean |
http://wa8090.com/static/js/logging.js?tVx | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://wa8090.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://connect.qq.com/widget/loader/loader.js | 200 OK Content-Length: 775 Content-Type: application/javascript | clean |
http://j.wit.qq.com/sc/crystal2.js | 200 OK Content-Length: 42624 Content-Type: application/x-javascript | clean |
http://tcss.qq.com/ping.js?v=1VERHASH | 200 OK Content-Length: 8909 Content-Type: application/x-javascript | clean |
http://s4.cnzz.com/stat.php?id=2519805&web_id=2519805 | 200 OK Content-Length: 9620 Content-Type: application/javascript | clean |
http://s20.cnzz.com/stat.php?id=3184420&web_id=3184420&show=pic1 | 200 OK Content-Length: 9625 Content-Type: application/javascript | clean |
http://wa8090.com/home.php?mod=misc&ac=sendmail&rand=1399514426 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wa8090.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wa8090.com/
Result: wa8090.com is not infected or malware details are not published yet.
Result: wa8090.com is not infected or malware details are not published yet.