Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xi6a.gongfile.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xi6a.gongfile.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Mar 2015 00:58:14 GMT
Server: Apache/2.2.3 (CentOS)
Content-Length: 79
Content-Type: text/html
X-Powered-By: PHP/5.2.10
...79 bytes of data.
GET / HTTP/1.1
Host: xi6a.gongfile.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Mar 2015 00:58:14 GMT
Server: Apache/2.2.3 (CentOS)
Content-Length: 79
Content-Type: text/html
X-Powered-By: PHP/5.2.10
...79 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xi6a.gongfile.com
Referer: http://www.google.com/search?q=xi6a.gongfile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xi6a.gongfile.com
Referer: http://www.google.com/search?q=xi6a.gongfile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://xi6a.gongfile.com/ | HTTP/1.1 200 OK Connection: close Date: Mon, 02 Mar 2015 00:58:14 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |
http://mtoon.com/?pid=imaster | HTTP/1.1 302 Found Cache-Control: no-cache,must-revalidate Connection: close Date: Mon, 02 Mar 2015 00:58:15 GMT Pragma: no-cache ETag: "Fri 27 Feb 2015 02:18:42" Location: http://wwww.mtoon.com Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips PHP/5.5.18 Vary: Accept-Encoding Content-Length: 3450 Content-Type: text/html; charset=UTF-8 Last-Modified: Fri 27 Feb 2015 02:18:42 GMT P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" Set-Cookie: user_id=GBFdj7hP8Tx1IzveybOJWwYw1D6NxjVRHAHAKwJrOoUcoC6RZjo%2Fyn62AKg2%2ByFymRHehtg4az8JgPdEvbT1KI; expires=Tue, 03-Mar-2015 00:58:15 GMT; Max-Age=86400; path=/; domain=.mtoon.com Set-Cookie: login_cert=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.mtoon.com Set-Cookie: pid=imaster; expires=Wed, 01-Apr-2015 00:58:15 GMT; Max-Age=2592000; path=/; domain=.mtoon.com Set-Cookie: ref=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/; domain=.mtoon.com X-Powered-By: PHP/5.5.18 X-XSS-Protection: 0 | clean |
http://wwww.mtoon.com/ | 200 OK Content-Length: 300197 Content-Type: text/html | clean |
http://wwww.mtoon.com/js/jquery-1.11.1.min.js | 200 OK Content-Length: 95786 Content-Type: application/javascript | clean |
http://xi6a.gongfile.com/js/common.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 02 Mar 2015 00:58:22 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |
http://mtoon.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://xi6a.gongfile.com/js/jquery.cookie.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 02 Mar 2015 00:58:23 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |
http://xi6a.gongfile.com/js/jquery.blockUI.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 02 Mar 2015 00:58:24 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |
http://xi6a.gongfile.com/js/jquery.grayscale.min.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 02 Mar 2015 00:58:25 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |
http://xi6a.gongfile.com/js/search.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 02 Mar 2015 00:58:26 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |
http://xi6a.gongfile.com/js/jquery.superslide.min.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 02 Mar 2015 00:58:28 GMT Server: Apache/2.2.3 (CentOS) Content-Length: 79 Content-Type: text/html X-Powered-By: PHP/5.2.10 | clean |