Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=whfy.gov.cn
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://whfy.gov.cn/ | 200 OK Content-Length: 37628 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 61.139.76.230 var image="http://61.139.76.230/UploadFile/Pic/2015-03-02/4a70f812-e052-4bfa-af88-85c6b7602f74.jpg|http://61.139.76.230/UploadFile/Pic/2015-03-02/f98547fa-cdb0-4616-8f00-0da7a2007240.jpg|/UploadFile/Pic/2015-02-27/6f266eb3-c97a-4860-bf4e-e81167454a77.jpg|/UploadFile/Pic/2015-02-06/e65af72a-10be-4c4c-b625-d98b0dd269e7.jpg|/UploadFile/Pic/2015-02-02/1f016c8a-c074-464b-9f94-d0cec0d591bd.jpg"; var url="Content.aspx?q=233E788908A6E4CE|Content.aspx?q=2E6F586D2426D563|Con ...[785 bytes skipped]... | ||
http://whfy.gov.cn/js/jquery.js | 200 OK Content-Length: 57272 Content-Type: application/x-javascript | clean |
http://whfy.gov.cn/js/flashobj.js | 200 OK Content-Length: 7442 Content-Type: application/x-javascript | clean |
http://whfy.gov.cn/swfPlayer/swfobject.js | 200 OK Content-Length: 6880 Content-Type: application/x-javascript | clean |
http://whfy.gov.cn/Default.aspx | 200 OK Content-Length: 37628 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 61.139.76.230 var image="http://61.139.76.230/UploadFile/Pic/2015-03-02/4a70f812-e052-4bfa-af88-85c6b7602f74.jpg|http://61.139.76.230/UploadFile/Pic/2015-03-02/f98547fa-cdb0-4616-8f00-0da7a2007240.jpg|/UploadFile/Pic/2015-02-27/6f266eb3-c97a-4860-bf4e-e81167454a77.jpg|/UploadFile/Pic/2015-02-06/e65af72a-10be-4c4c-b625-d98b0dd269e7.jpg|/UploadFile/Pic/2015-02-02/1f016c8a-c074-464b-9f94-d0cec0d591bd.jpg"; var url="Content.aspx?q=233E788908A6E4CE|Content.aspx?q=2E6F586D2426D563|Con ...[785 bytes skipped]... | ||
http://whfy.gov.cn/List.Aspx?q=0385AD21670A178F | HTTP/1.1 302 Found Cache-Control: private Date: Tue, 03 Mar 2015 18:03:03 GMT Location: /Gbzj.aspx?Q=0385AD21670A178F Server: Microsoft-IIS/7.0 Content-Length: 173 Content-Type: text/html; charset=utf-8 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://whfy.gov.cn/gbzj.aspx?q=0385ad21670a178f | 200 OK Content-Length: 29584 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=06F04C20E91A31BA | 200 OK Content-Length: 19512 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=7D1AE4FE4FC2D852 | 200 OK Content-Length: 22634 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=1D11C7EEDD64CECA | 200 OK Content-Length: 19097 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=E1B5B78A12679352 | 200 OK Content-Length: 21766 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=D4ADF17E13DDEF89 | HTTP/1.1 302 Found Cache-Control: private Date: Tue, 03 Mar 2015 18:03:10 GMT Location: /Gbzj.aspx?Q=D4ADF17E13DDEF89 Server: Microsoft-IIS/7.0 Content-Length: 173 Content-Type: text/html; charset=utf-8 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET | clean |
http://whfy.gov.cn/gbzj.aspx?q=d4adf17e13ddef89 | 200 OK Content-Length: 39634 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=A4B560DB06F542C1 | 200 OK Content-Length: 19696 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=3DBA2BA0F4D90043 | 200 OK Content-Length: 22080 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=4F92303BEEDFA930 | 200 OK Content-Length: 29606 Content-Type: text/html | clean |
http://whfy.gov.cn/List.Aspx?q=ADE25B0C441DEAF2 | 200 OK Content-Length: 29099 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: whfy.gov.cn
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Tue, 03 Mar 2015 18:02:50 GMT
Server: Microsoft-IIS/7.0
Content-Length: 37628
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...37628 bytes of data.
GET / HTTP/1.1
Host: whfy.gov.cn
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Tue, 03 Mar 2015 18:02:50 GMT
Server: Microsoft-IIS/7.0
Content-Length: 37628
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...37628 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: whfy.gov.cn
Referer: http://www.google.com/search?q=whfy.gov.cn
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: whfy.gov.cn
Referer: http://www.google.com/search?q=whfy.gov.cn
Result:
The result is similar to the first query. There are no suspicious redirects found.