Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xiaoyueyuetuoshuibandouban.k5k3.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://xiaoyueyuetuoshuibandouban.k5k3.com/ | 200 OK Content-Length: 39500 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hirpgbqu.k5k3.com ...[3900 bytes skipped]... £ ÁõµÂ»ª×îÐÂÕÕƬÏÖÔÚÎÒÃÇÔÚÖйúÓÐÁËÒ»¸öеÄÌṩ·þÎñµÄ¼Ü¹¹£¬ СÔÂÔ ÍÑË®°æ ¶¹°êÀ´ÇÀ×¢¸öÐÔÓòÃû¡¢Æð¸öÏìÁÁµÄÃû×Ö£¬ ¼Çʱ¾³ÌÐò²»Ö§³ÖͼÐΡ£¿ÉÒÔ½«Í¼ÐβåÈ롰д×ְ塱Îĵµ£¬²¢Í¨¹ýÔÚÎĵµÖÐÁ´½Ó»òǶÈëÕâЩͼÐÎÀ´ÐÞ¸ÄËüÃÇ¡£ ÔÚÎÒ¿´µ½Ò»¸öÅ®º¢Ô¸Òâ¼Þ¸øÔø¾¾È¹ýËûÈ˵ÄÓ¢ÐÛµ«ÒѾÃæÄ¿È«·ÇËûʱ£¬ÎÒΪֹ¸Ð¶¯£¬ËýÊÇ×îÃÀµÄ£¡ È´ÒÀÈ»¼Ù×°ÄÇô¼áÇ¿£¬ËäÈ»Ãξ³×ÜÊÇÈç´ËÆàÁ¹£¬Æ«ÒªÔÚÄæ¾³ÖзÉÏè¡£ ×îеÄÉäÇé³ËÈËͼƬ¿ÉÊÇËý²»È·¶¨£¬Ëû»áÓÐÕâÑùµÄÓÂÆøÂ¼ÇµÃÒÔÇ°Ëû˵£º <a href="http://hirpgbqu.k5k3.com/">ÈÕ±¾´óµ¨ÈËÌåÒÕÊõÎÒÒªÃÃ</a>ËûÃÇÀëµÄÌ«Ô¶£¬Ò»ÈçËûÔø¾Ëµ£¬Äã¾õµÃÏÖÔÚÎÒÃÇÀëµÄÄÇôԶ£¬ÎÒÃÇ»¹¿ÉÄÜÂ𣬠ÏÂ×îÃÀºÃµÄ»ØÒ䣬À뿪ÁËÄãÈ´À뻹¿ª¼Åį¡£ Ëý¡£Ëý³£³£ÔÚɢϯÀ뿪ʱ»ØÍ·¿´Ò»ÑÛÂú×ÀµÄÀǼ®£¬ÓëÓãÑÛ¶ÔÊÓ Ò²²»ÖªµÀÍâÃæ·¢ÉúÁËʲôÊÂÇ飬ÒýÆðÕâÑùµÄ±¨µÀ£¬ <strong>Ãâ·Ñ³ÉÈËÃÀÅ®ÊÓƵ½»ÓÑ</strong>À´ÇÀ×¢¸öÐÔÓòÃû¡¢Æð¸öÏìÁÁµÄÃû×Ö£¬ ÏÖÔÚÎÒÃÇÔÚÖйúÓÐÁËÒ»¸öеÄÌṩ·þÎñµÄ¼Ü¹¹£¬ ºÃÁË£¬²»¶à·Ï»°À²£¬Óпյ½ÎÒ²©¿ÍÈ¥×ø×ø£¬°Ý°ÝÁË£¡ <br>ÄúÏÖÔÚÔĶÁµÄÎÄÕÂÊôÓÚСÔÂÔ ÍÑË®°æ ¶¹°êÔ´´·¢²¼£¬×ªÔØÇëעà ...[40062 bytes skipped]... | ||
http://js.users.51.la/4043529.js | 200 OK Content-Length: 1945 Content-Type: application/x-javascript | clean |
http://xiaoyueyuetuoshuibandouban.k5k3.com/jump.js | HTTP/1.1 200 OK Date: Tue, 24 Jun 2014 20:33:20 GMT Accept-Ranges: bytes ETag: "0b36187c333cf1:1459" Server: IIS Content-Length: 1704 Content-Location: http://xiaoyueyuetuoshuibandouban.k5k3.com/jump.js Content-Type: application/x-javascript Last-Modified: Thu, 27 Feb 2014 13:55:10 GMT X-Powered-By: WAF/2.0 | clean |
http://xiaoyueyuetuoshuibandouban.k5k3.com/test404page.js | 404 Not Found Content-Length: 670 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xiaoyueyuetuoshuibandouban.k5k3.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Jun 2014 20:33:19 GMT
Server: IIS
Content-Type: text/html; charset=gbk
X-Powered-By: WAF/2.0
X-Powered-By: WAF/2.0
GET / HTTP/1.1
Host: xiaoyueyuetuoshuibandouban.k5k3.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Jun 2014 20:33:19 GMT
Server: IIS
Content-Type: text/html; charset=gbk
X-Powered-By: WAF/2.0
X-Powered-By: WAF/2.0
Second query (visit from search engine):
GET / HTTP/1.1
Host: xiaoyueyuetuoshuibandouban.k5k3.com
Referer: http://www.google.com/search?q=xiaoyueyuetuoshuibandouban.k5k3.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xiaoyueyuetuoshuibandouban.k5k3.com
Referer: http://www.google.com/search?q=xiaoyueyuetuoshuibandouban.k5k3.com
Result:
The result is similar to the first query. There are no suspicious redirects found.