Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://xftech.net/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: xftech.net Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sun, 31 Aug 2014 13:35:32 GMT Location: http://asp99.cn Server: Microsoft-IIS/6.0 Content-Length: 136 Content-Type: text/html Set-Cookie: ASPSESSIONIDSSTCDCRD=BKDPKBJBJMAPIEODFIICDJBM; path=/ X-Powered-By: ASP.NET | malicious |
URL: http://asp99.cn (imitation of visitor from search engine) GET / HTTP/1.1 Host: asp99.cn Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Object moved Cache-Control: private Date: Sun, 31 Aug 2014 13:35:27 GMT Location: index.asp Server: Microsoft-IIS/6.0 Content-Length: 130 Content-Type: text/html Set-Cookie: ASPSESSIONIDCSTRQDBR=CIBIIEGBKPFCEDJDPDMKJOHE; path=/ X-Powered-By: ASP.NET | suspicious |
Scanned pages/files
Request | Server response | Status |
http://xftech.net/ | 200 OK Content-Length: 40723 Content-Type: text/html | clean |
http://news.baidu.com/ns?word=title%3A%B9%FA%C4%DA%D0%C2%CE%C5&tn=newsfcu&from=news&cl=2&rn=5&ct=0 | 200 OK Content-Length: 1600 Content-Type: text/html | clean |
http://news.baidu.com/ | 200 OK Content-Length: 234163 Content-Type: text/html | clean |
http://news.baidu.com/test404page.js | HTTP/1.1 302 Found Connection: Keep-Alive Date: Sun, 31 Aug 2014 13:35:40 GMT Location: http://news.baidu.com/error.html Server: Apache Vary: Accept-Encoding Content-Length: 216 Content-Type: text/html; charset=iso-8859-1 | clean |
http://news.baidu.com/error.html | 200 OK Content-Length: 4508 Content-Type: text/html | clean |
http://news.baidu.com/ns?word=¹úÄÚÐÂÎÅ&tn=newstitle&ie=gb2312&sr=0&cl=2&rn=20&ct=0 | 200 OK Content-Length: 39533 Content-Type: text/html | clean |
http://cbjs.baidu.com/js/m.js | 200 OK Content-Length: 30494 Content-Type: application/x-javascript | clean |
http://s1.bdstatic.com/r/www/cache/news/static/global/js/common_179f2084.js | 200 OK Content-Length: 50162 Content-Type: application/javascript | clean |
http://s1.bdstatic.com/r/www/cache/news/static/global/js/feedback_b21c4d48.js | 200 OK Content-Length: 604 Content-Type: application/javascript | clean |
http://news.baidu.com/advanced_news.html | 200 OK Content-Length: 15629 Content-Type: text/html | clean |
http://news.baidu.com/pianhao.html | 200 OK Content-Length: 12683 Content-Type: text/html | clean |
http://news.baidu.com/view.html | HTTP/1.1 302 Found Connection: Keep-Alive Date: Sun, 31 Aug 2014 13:35:50 GMT Location: http://news.baidu.com/ Server: Apache Content-Length: 160 Content-Type: text/html P3P: CP=" OTI DSP COR IVA OUR IND COM " Set-Cookie: BAIDUID=F884ADD958F75D8474CA68D4FF3016C4:FG=1; expires=Mon, 31-Aug-15 13:35:50 GMT; max-age=31536000; path=/; domain=.baidu.com; version=1 Tracecode: 21502035440640033802083121 | clean |
http://news.baidu.com/view.html?from=ns | HTTP/1.1 302 Found Connection: Keep-Alive Date: Sun, 31 Aug 2014 13:35:50 GMT Location: http://news.baidu.com/?from=ns Server: Apache Content-Length: 160 Content-Type: text/html P3P: CP=" OTI DSP COR IVA OUR IND COM " Set-Cookie: BAIDUID=F884ADD958F75D84005CC1F66373542E:FG=1; expires=Mon, 31-Aug-15 13:35:50 GMT; max-age=31536000; path=/; domain=.baidu.com; version=1 Tracecode: 21506555400612574218083121 | clean |
http://news.baidu.com/?from=ns | 200 OK Content-Length: 234163 Content-Type: text/html | clean |
http://news.baidu.com/ns?word=intitle%3A%28%E5%9B%BD%E5%86%85%E6%96%B0%E9%97%BB%29+cont:830854091&same=2&cl=1&tn=newstitle&rn=30&fm=sd | 200 OK Content-Length: 26737 Content-Type: text/html | clean |
http://news.baidu.com/ns?word=%E5%9B%BD%E5%86%85%E6%96%B0%E9%97%BB%E6%9C%80%E8%BF%91%E6%96%B0%E9%97%BB&rsp=0&f=1&oq=title%3A%28%E5%9B%BD%E5%86%85%E6%96%B0%E9%97%BB%29&cl=1&ct=1&tn=newstitle&rn=30&ie=utf-8&bt=0&et=0&rs_src=0 | 200 OK Content-Length: 45693 Content-Type: text/html | clean |
http://news.baidu.com/ns?word=intitle%3A%28%E5%9B%BD%E5%86%85%E6%96%B0%E9%97%BB%E6%9C%80%E8%BF%91%E6%96%B0%E9%97%BB%29+cont:1672906609&same=2&cl=1&tn=newstitle&rn=30&fm=sd | 200 OK Content-Length: 27738 Content-Type: text/html | clean |
http://news.baidu.com/ns?word=%E6%9C%80%E8%BF%91%E5%9B%BD%E5%86%85%E9%87%8D%E5%A4%A7%E6%96%B0%E9%97%BB&rsp=0&f=1&oq=title%3A%28%E5%9B%BD%E5%86%85%E6%96%B0%E9%97%BB%E6%9C%80%E8%BF%91%E6%96%B0%E9%97%BB%29&cl=1&ct=1&tn=newstitle&rn=30&ie=utf-8&bt=0&et=0&rs_src=0 | 200 OK Content-Length: 43965 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xftech.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xftech.net/
Result: xftech.net is not infected or malware details are not published yet.
Result: xftech.net is not infected or malware details are not published yet.