Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xthnt.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xthnt.com
Result:
HTTP/1.1 200 OK
Date: Tue, 27 Jan 2015 01:01:45 GMT
Accept-Ranges: bytes
ETag: "429d8443a86d01:5ff8"
Server: Microsoft-IIS/6.0
Content-Length: 19134
Content-Location: http://xthnt.com/index.html
Content-Type: text/html
Last-Modified: Sat, 22 Nov 2014 23:01:35 GMT
X-Powered-By: ASP.NET
...19134 bytes of data.
GET / HTTP/1.1
Host: xthnt.com
Result:
HTTP/1.1 200 OK
Date: Tue, 27 Jan 2015 01:01:45 GMT
Accept-Ranges: bytes
ETag: "429d8443a86d01:5ff8"
Server: Microsoft-IIS/6.0
Content-Length: 19134
Content-Location: http://xthnt.com/index.html
Content-Type: text/html
Last-Modified: Sat, 22 Nov 2014 23:01:35 GMT
X-Powered-By: ASP.NET
...19134 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xthnt.com
Referer: http://www.google.com/search?q=xthnt.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xthnt.com
Referer: http://www.google.com/search?q=xthnt.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://xthnt.com/ | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:01:45 GMT Accept-Ranges: bytes ETag: "429d8443a86d01:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 19134 Content-Location: http://xthnt.com/index.html Content-Type: text/html Last-Modified: Sat, 22 Nov 2014 23:01:35 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/index.html | 200 OK Content-Length: 19134 Content-Type: text/html | clean |
http://Js.lwtzdec.com/taobao.js | 200 OK Content-Length: 183 Content-Type: application/x-javascript | clean |
http://xthnt.com/tj.js | 200 OK Content-Length: 122 Content-Type: application/x-javascript | clean |
http://xthnt.com/fuwudating/2014ay5153115993.html | 200 OK Content-Length: 11417 Content-Type: text/html | clean |
http://xthnt.com/fuwudating/ | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:01:52 GMT Accept-Ranges: bytes ETag: "3a96a9ae25dbcf1:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 13626 Content-Location: http://xthnt.com/fuwudating/index.html Content-Type: text/html Last-Modified: Sun, 28 Sep 2014 14:08:30 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/fuwudating/index.html | 200 OK Content-Length: 13626 Content-Type: text/html | clean |
http://xthnt.com/fuwudating/2014epsbz3025488.html | 200 OK Content-Length: 8874 Content-Type: text/html | clean |
http://xthnt.com/fuwudating/{longshao_url} | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:01:54 GMT Accept-Ranges: bytes ETag: "ae20e66ae9d4cf1:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 1517 Content-Location: http://xthnt.com/404.html?404;http://xthnt.com:80/fuwudating/{longshao_url} Content-Type: text/html Last-Modified: Sat, 20 Sep 2014 15:42:00 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/404.html?404;http://xthnt.com:80/fuwudating/{longshao_url} | 200 OK Content-Length: 1517 Content-Type: text/html | clean |
http://xthnt.com/common.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://www.qq.com/404/search_children.js | 200 OK Content-Length: 295 Content-Type: application/javascript | clean |
http://xthnt.com/test404page.js | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:01:56 GMT Accept-Ranges: bytes ETag: "ae20e66ae9d4cf1:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 1517 Content-Location: http://xthnt.com/404.html?404;http://xthnt.com:80/test404page.js Content-Type: text/html Last-Modified: Sat, 20 Sep 2014 15:42:00 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/404.html?404;http://xthnt.com:80/test404page.js | 200 OK Content-Length: 1517 Content-Type: text/html | clean |
http://xthnt.com/shehuizeren/2014sdnc22984576.html | 200 OK Content-Length: 9337 Content-Type: text/html | clean |
http://xthnt.com/shehuizeren/ | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:01:58 GMT Accept-Ranges: bytes ETag: "e033a7ae25dbcf1:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 10747 Content-Location: http://xthnt.com/shehuizeren/index.html Content-Type: text/html Last-Modified: Sun, 28 Sep 2014 14:08:30 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/shehuizeren/index.html | 200 OK Content-Length: 10747 Content-Type: text/html | clean |
http://xthnt.com/shehuizeren/2014az0uf2706515.html | 200 OK Content-Length: 9562 Content-Type: text/html | clean |
http://xthnt.com/shehuizeren/{longshao_url} | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:02:00 GMT Accept-Ranges: bytes ETag: "ae20e66ae9d4cf1:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 1517 Content-Location: http://xthnt.com/404.html?404;http://xthnt.com:80/shehuizeren/{longshao_url} Content-Type: text/html Last-Modified: Sat, 20 Sep 2014 15:42:00 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/404.html?404;http://xthnt.com:80/shehuizeren/{longshao_url} | 200 OK Content-Length: 1517 Content-Type: text/html | clean |
http://xthnt.com/qiyehuangye/ | HTTP/1.1 200 OK Date: Tue, 27 Jan 2015 01:02:01 GMT Accept-Ranges: bytes ETag: "78aa9dae25dbcf1:5ff8" Server: Microsoft-IIS/6.0 Content-Length: 12044 Content-Location: http://xthnt.com/qiyehuangye/index.html Content-Type: text/html Last-Modified: Sun, 28 Sep 2014 14:08:30 GMT X-Powered-By: ASP.NET | clean |
http://xthnt.com/qiyehuangye/index.html | 200 OK Content-Length: 12044 Content-Type: text/html | clean |