Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yxshipin.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://yxshipin.com/ | 200 OK Content-Length: 41417 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.cnwsgj.com ...[11147 bytes skipped]... t;/a></li><li><a href="/a/news/2014/0424/2.html" target="_blank">å«ç纸质é好åå¦ä½é´å«</a></li> </ul> </div> </div> <!--综åä¿¡æ¯ç»æ--> <div class="banner_purch f_left"> <div class="banner"> <div id="slides"> <div class="slides_container" > <a href="http://www.cnwsgj.com" target="_blank"> <img src="uploads/images/20140424/104456281.jpg" alt="é¦é¡µ-è¡ä¸èµè®¯å³è¾¹è½®æå¾ç广å" /> </a><a href="http://www.cnwsgj.com" target="_blank"> <img src="uploads/images/20140424/104444406.jpg" alt="é¦é¡µ-è¡ä¸èµè®¯å³è¾¹è½®æå¾ç广å" /> </a> </div> </div> </div> &l ...[41087 bytes skipped]... Hidden iFrame found. The same iFrame was found in 91 websites. size: 1x1 src: http://www.brenz.pl/rc/ <iframe style="height:1px" src="http://www.brenz.pl/rc/" frameborder=0 width=1> | ||
http://yxshipin.com/include/js/jquery-1.4.4.min.js | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://yxshipin.com/include/js/top.js | 200 OK Content-Length: 6397 Content-Type: text/javascript | clean |
http://yxshipin.com/include/js/jquery.select.js | 200 OK Content-Length: 7821 Content-Type: text/javascript | clean |
http://yxshipin.com/include/js/images.js | 200 OK Content-Length: 7496 Content-Type: text/javascript | clean |
http://yxshipin.com/templets/default/js/index.js | 200 OK Content-Length: 4060 Content-Type: text/javascript | clean |
http://yxshipin.com/include/js/ScrollPic.js | 200 OK Content-Length: 8754 Content-Type: text/javascript | clean |
http://yxshipin.com/include/islogin.jsp | 200 OK Content-Length: 111 Content-Type: text/html | clean |
http://yxshipin.com/login.html | 200 OK Content-Length: 4549 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.huabeizhidu.com ...[3963 bytes skipped]... 60"> <P>çµè¯ï¼0312-5906165 ä¼ çï¼0312-5906165</P> <P>©2002-2016 åå纸é½-ä¸å½çæ´»ç¨çº¸äº¤æç½ å¤æ¡å·ICP******</P> <div class="bottom_pic"> <img src="/templets/default/images/bottom1.gif" /> <img src="/templets/default/images/bottom2.gif" /> <img src="/templets/default/images/bottom3.gif" /> <br/>Powered by <a href="http://www.huabeizhidu.com" target="_blank">åå纸é½</a> </div> </div> <script type="text/javascript"> $(document).ready(function(){ var un="#user_name"; var un_conent="ç¨æ·å/é®ç®±/ææºå·"; if($(un).val()=='' || $(un).val()==un_conent){ $(un).val(un_conent); $(un).addClass("usersize"); } //è·å¾ç¦ç¹äºä»¶ $(un).focus(function(){ if($(un).val() ...[766 bytes skipped]... | ||
http://yxshipin.com/include/advshow.jsp?pos_id=100 | 200 OK Content-Length: 149 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.cnwsgj.com document.write('<a href="http://www.cnwsgj.com" target="_blank"><img src="/include/images/adv/login.jpg" width="553" height="344"/></a>'); | ||
http://yxshipin.com/test404page.js | 404 Not Found Content-Length: 201 Content-Type: text/html | clean |
http://yxshipin.com/register.html | 200 OK Content-Length: 21235 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.huabeizhidu.com ...[27246 bytes skipped]... 60"> <P>çµè¯ï¼0312-5906165 ä¼ çï¼0312-5906165</P> <P>©2002-2016 åå纸é½-ä¸å½çæ´»ç¨çº¸äº¤æç½ å¤æ¡å·ICP******</P> <div class="bottom_pic"> <img src="/templets/default/images/bottom1.gif" /> <img src="/templets/default/images/bottom2.gif" /> <img src="/templets/default/images/bottom3.gif" /> <br/>Powered by <a href="http://www.huabeizhidu.com" target="_blank">åå纸é½</a> </div> </div> </body> </html> | ||
http://yxshipin.com/templets/default/js/register.js | 200 OK Content-Length: 21291 Content-Type: text/javascript | clean |
http://yxshipin.com/include/js/getcatarea.js | 200 OK Content-Length: 7155 Content-Type: text/javascript | clean |
http://yxshipin.com/classified_cat.html | 200 OK Content-Length: 8641 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.huabeizhidu.com ...[10735 bytes skipped]... 60"> <P>çµè¯ï¼0312-5906165 ä¼ çï¼0312-5906165</P> <P>©2002-2016 åå纸é½-ä¸å½çæ´»ç¨çº¸äº¤æç½ å¤æ¡å·ICP******</P> <div class="bottom_pic"> <img src="/templets/default/images/bottom1.gif" /> <img src="/templets/default/images/bottom2.gif" /> <img src="/templets/default/images/bottom3.gif" /> <br/>Powered by <a href="http://www.huabeizhidu.com" target="_blank">åå纸é½</a> </div> </div> </form> </body> </html> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yxshipin.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Apr 2014 19:04:14 GMT
Server: Apache/2.0.55 (Win32) mod_jk/1.2.15
Content-Language: zh-CN
Content-Length: 41417
Content-Type: text/html;charset=UTF-8
Set-Cookie: JSESSIONID=02DC86F0D192B38708ACB2616D553BFE; Path=/
...41417 bytes of data.
GET / HTTP/1.1
Host: yxshipin.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Apr 2014 19:04:14 GMT
Server: Apache/2.0.55 (Win32) mod_jk/1.2.15
Content-Language: zh-CN
Content-Length: 41417
Content-Type: text/html;charset=UTF-8
Set-Cookie: JSESSIONID=02DC86F0D192B38708ACB2616D553BFE; Path=/
...41417 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: yxshipin.com
Referer: http://www.google.com/search?q=yxshipin.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yxshipin.com
Referer: http://www.google.com/search?q=yxshipin.com
Result:
The result is similar to the first query. There are no suspicious redirects found.