Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xinruoyuan.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 16 Jun 2014 01:11:32 GMT
Server: Microsoft-IIS/6.0
Content-Length: 3980
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQQSTBBAB=BLAAELBDPLFBKJKHDHEKJFGO; path=/
X-Powered-By: ASP.NET
...3980 bytes of data.
GET / HTTP/1.1
Host: xinruoyuan.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 16 Jun 2014 01:11:32 GMT
Server: Microsoft-IIS/6.0
Content-Length: 3980
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQQSTBBAB=BLAAELBDPLFBKJKHDHEKJFGO; path=/
X-Powered-By: ASP.NET
...3980 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xinruoyuan.com
Referer: http://www.google.com/search?q=xinruoyuan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xinruoyuan.com
Referer: http://www.google.com/search?q=xinruoyuan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://xinruoyuan.com/ | 200 OK Content-Length: 3980 Content-Type: text/html | clean |
http://xinruoyuan.com/
http://www.hxsk.net/hxinfo/5/5209.htm | 400 Bad Request Content-Length: 34 Content-Type: text/html | clean |
http://xinruoyuan.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://xinruoyuan.com/ http://www.uggbootbar.com | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://xinruoyuan.com/ http://www.bqssf.com | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://xinruoyuan.com/index1.asp | 200 OK Content-Length: 17801 Content-Type: text/html | clean |
http://xinruoyuan.com/about.asp | 200 OK Content-Length: 8166 Content-Type: text/html | clean |
http://xinruoyuan.com/UpFile/2012-6/1/201261103751238.jpg | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:40 GMT Accept-Ranges: bytes ETag: "f2d87e8a9f3fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1308 Content-Location: http://xinruoyuan.com/UpFile/2012-6/1/201261103751238.jpg Content-Type: image/jpeg Last-Modified: Fri, 01 Jun 2012 02:37:51 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/upfile/2012-6/1/201261103751238.jpg | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:40 GMT Accept-Ranges: bytes ETag: "f2d87e8a9f3fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1308 Content-Location: http://xinruoyuan.com/upfile/2012-6/1/201261103751238.jpg Content-Type: image/jpeg Last-Modified: Fri, 01 Jun 2012 02:37:51 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/UpFile/2012-6/1/201261103751604.jpg | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:42 GMT Accept-Ranges: bytes ETag: "a69d838a9f3fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1308 Content-Location: http://xinruoyuan.com/UpFile/2012-6/1/201261103751604.jpg Content-Type: image/jpeg Last-Modified: Fri, 01 Jun 2012 02:37:51 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/upfile/2012-6/1/201261103751604.jpg | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:43 GMT Accept-Ranges: bytes ETag: "a69d838a9f3fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1308 Content-Location: http://xinruoyuan.com/upfile/2012-6/1/201261103751604.jpg Content-Type: image/jpeg Last-Modified: Fri, 01 Jun 2012 02:37:51 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/UpFile/2012-6/1/201261103751171.jpg | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:43 GMT Accept-Ranges: bytes ETag: "00868a9f3fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1308 Content-Location: http://xinruoyuan.com/UpFile/2012-6/1/201261103751171.jpg Content-Type: image/jpeg Last-Modified: Fri, 01 Jun 2012 02:37:52 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/upfile/2012-6/1/201261103751171.jpg | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:44 GMT Accept-Ranges: bytes ETag: "00868a9f3fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1308 Content-Location: http://xinruoyuan.com/upfile/2012-6/1/201261103751171.jpg Content-Type: image/jpeg Last-Modified: Fri, 01 Jun 2012 02:37:52 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/admin/login.htm | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:44 GMT Accept-Ranges: bytes ETag: "62ffa86b5e2fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 1725 Content-Location: http://xinruoyuan.com/admin/login.htm Content-Type: text/html Last-Modified: Fri, 11 May 2012 10:11:24 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/product.asp?class=12 | 200 OK Content-Length: 24756 Content-Type: text/html | clean |
http://xinruoyuan.com/common/JS_CheckForm.js | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:49 GMT Accept-Ranges: bytes ETag: "30c849205e2fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 4833 Content-Location: http://xinruoyuan.com/common/JS_CheckForm.js Content-Type: application/x-javascript Last-Modified: Fri, 11 May 2012 10:09:17 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/common/js_checkform.js | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:50 GMT Accept-Ranges: bytes ETag: "30c849205e2fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 4833 Content-Location: http://xinruoyuan.com/common/js_checkform.js Content-Type: application/x-javascript Last-Modified: Fri, 11 May 2012 10:09:17 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/js/prototype.js | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:51 GMT Accept-Ranges: bytes ETag: "da394ad25d2fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 47603 Content-Location: http://xinruoyuan.com/js/prototype.js Content-Type: application/x-javascript Last-Modified: Fri, 11 May 2012 10:07:07 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/js/scriptaculous.js?load=effects | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:53 GMT Accept-Ranges: bytes ETag: "9aeefdd15d2fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 2152 Content-Location: http://xinruoyuan.com/js/scriptaculous.js?load=effects Content-Type: application/x-javascript Last-Modified: Fri, 11 May 2012 10:07:06 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/js/lightbox.js | HTTP/1.1 200 OK Date: Mon, 16 Jun 2014 01:11:53 GMT Accept-Ranges: bytes ETag: "12d666d25d2fcd1:5862a6" Server: Microsoft-IIS/6.0 Content-Length: 20701 Content-Location: http://xinruoyuan.com/js/lightbox.js Content-Type: application/x-javascript Last-Modified: Fri, 11 May 2012 10:07:07 GMT X-Powered-By: ASP.NET | clean |
http://xinruoyuan.com/product.asp?class=11 | 200 OK Content-Length: 24842 Content-Type: text/html | clean |
http://xinruoyuan.com/product.asp?class=19 | 200 OK Content-Length: 24669 Content-Type: text/html | clean |
http://xinruoyuan.com/product.asp?class=14 | 200 OK Content-Length: 15437 Content-Type: text/html | clean |
http://xinruoyuan.com/product.asp?class=15 | 200 OK Content-Length: 13665 Content-Type: text/html | clean |
http://xinruoyuan.com/product.asp?class=16 | 200 OK Content-Length: 13645 Content-Type: text/html | clean |
http://xinruoyuan.com/product.asp?class=17 | 200 OK Content-Length: 24573 Content-Type: text/html | clean |
http://xinruoyuan.com/product.asp?class=20 | 200 OK Content-Length: 9729 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xinruoyuan.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xinruoyuan.com/
Result: xinruoyuan.com is not infected or malware details are not published yet.
Result: xinruoyuan.com is not infected or malware details are not published yet.