Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=zionandshan.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: zionandshan.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 26 Dec 2014 01:30:22 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Fri, 26 Dec 2014 01:30:22 GMT
Set-Cookie: tu=ce3faee8018be22f3b4b25933097001e; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=zionandshan.com; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_VuCzImQtvxA+Aj8BBa31t0+rcTZJzU663LNUGMRMzOCMScgCfayc+eBdOP0DONMjVOvdtQi3dWAZDVyeesYuRA==
X-Cache: MISS from 341061
X-Powered-By: PHP/5.3.3-7+squeeze19
GET / HTTP/1.1
Host: zionandshan.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 26 Dec 2014 01:30:22 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Fri, 26 Dec 2014 01:30:22 GMT
Set-Cookie: tu=ce3faee8018be22f3b4b25933097001e; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=zionandshan.com; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_VuCzImQtvxA+Aj8BBa31t0+rcTZJzU663LNUGMRMzOCMScgCfayc+eBdOP0DONMjVOvdtQi3dWAZDVyeesYuRA==
X-Cache: MISS from 341061
X-Powered-By: PHP/5.3.3-7+squeeze19
Second query (visit from search engine):
GET / HTTP/1.1
Host: zionandshan.com
Referer: http://www.google.com/search?q=zionandshan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: zionandshan.com
Referer: http://www.google.com/search?q=zionandshan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://zionandshan.com/ | 200 OK Content-Length: 32214 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://zionandshan.com/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D406102%26terms%3Dzionandshan%26ai%3DGnMOWIlSKTCm6DxfjJrYUxLtqI9KEDSDCLyd7QUBByDF8svt-Sdpb3u-sUxOsyTX_wPNS9aCeuIs4RixRvSfn2zqfDOQCStjXJlI43oWcXKUfb5yzBtIM1BrBhMgiHT_RLMaaB7Z1kGzVeISEFSY6stCVU57fwIyX8Mh4HQKa2gPbBQXmCxHTFbGqF7kH99qerqYR_52Z_9K4vWD1BrCRYsP37IxEqocIq4cv9M <span>...799 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Fri, 26 Dec 2014 01:30:23 GMT Pragma: no-cache Location: http://zionandshan.com/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D406102%26terms%3Dzionandshan%26ai%3DGnMOWIlSKTCm6DxfjJrYUxLtqI9KEDSDCLyd7QUBByDF8svt-Sdpb3u-sUxOsyTX_wPNS9aCeuIs4RixRvSfn2zqfDOQCStjXJlI43oWcXKUfb5yzBtIM1BrBhMgiHT_RLMaaB7Z1kGzVeISEFSY6stCVU57fwIyX8Mh4HQKa2gPbBQXmCxHTFbGqF7kH99qerqYR_52Z_9K4vWD1BrCRYsP37IxEqocIq4cv9MLwkCWd9dX3B75C3TBcHm_Ujg8WL7ENMpP6t0YKcIQ6Uuachbdra7m23-5rCYOhX8AK2eLAIpjqleX4FmeNr8ructkqXqbB690TulQSQPZNP-O_nj4B-fFvR1-nxvYQbbbK1emg73RidmI_hbPEg1j4XNxZOwuqwbGywiugbQWLl7iEddPMUqIltsO5aOCFO6C64ljL3Fmx5KidBbjCxZj3Vms%26version%3D1.2&v=MThlYzNkYjg4Njc1NWQzMDBhYTk5ODk2NTJkZGQ4MGIJMQl6aW9uYW5kc2hhbi5jb201NDljYmEyZWJkZmYyNi4yNTE4NjgwOAl6aW9uYW5kc2hhbi5jb201NDljYmEyZWJlMGJiNy42NzAyMjI5OQkxNDE5NTU3NDIzCWFkXzdfMA==&l=NAlBRFMJMWU5MzhkYWRkODQyZTgwM2NhMWZiZjA4MmM0ZDhiODgJMC4wMDAzCTAJMTMJCTMxCTIJMQkwCTc5MTFhYjgzNjMwNTg0NzJmN2E1MTQzNDFjZTM4NDJjCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkyMDYzOTk0NTQJYwkxMDIwMDIwODMJCXppb25hbmRzaGFuCTEwMTkJNwkyMAkyNQkxNDE5NTU3NDIzCTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQl6aW9uYW5kc2hhbi5jb201NDljYmEyZWJkZmYyNi4yNTE4NjgwOAkwLjAwMDYJMAkJMQkwCTEwNjAJMTA3MDczNTYyCQ%3D%3D Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Fri, 26 Dec 2014 01:30:23 GMT X-Cache: MISS from 001415 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://zionandshan.com/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d406102%26terms%3dzionandshan%26ai%3dgnmowilsktcm6dxfjjryuxltqi9kedsdclyd7qubbydf8svt-sdpb3u-suxosytx_wpns9aceuis4rixrvsfn2zqfdoqcstjxjli43owcxkufb5yzbtim1brbhmgiht_rlmaab7z1kgzveisefsy6stcvu57fwiyx8mh4hqka2gpbbqxmcxhtfbgqf7kh99qerqyr_52z_9k4vwd1brcrysp37ixeqociq4cv9m <span>...799 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://zionandshan.com/test404page.js | 200 OK Content-Length: 25127 Content-Type: text/html | clean |
http://zionandshan.com/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D406102%26terms%3Dzionandshan%26ai%3DGnMOWIlSKTCDhoseoFgA1hLtqI9KEDSDCLyd7QUBByCUyvOAC8OEylzG8Bsu0_iP3vDvpIRpSL7O4c6NIgeyU22ZMicxof1DLDc5z5Y05X2fAz4GaWK0augBbo_IiJH0vqg0gXt1QRgKa3olarwnikVBg4lLjQFix2iAPolKrpTg0pnzW-PWxAe2zsiVyhM8PACikxp9mfyMhQxaw1mjHyEgC0PdPKT2kFE1yPr <span>...799 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Fri, 26 Dec 2014 01:30:24 GMT Pragma: no-cache Location: http://zionandshan.com/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D406102%26terms%3Dzionandshan%26ai%3DGnMOWIlSKTCDhoseoFgA1hLtqI9KEDSDCLyd7QUBByCUyvOAC8OEylzG8Bsu0_iP3vDvpIRpSL7O4c6NIgeyU22ZMicxof1DLDc5z5Y05X2fAz4GaWK0augBbo_IiJH0vqg0gXt1QRgKa3olarwnikVBg4lLjQFix2iAPolKrpTg0pnzW-PWxAe2zsiVyhM8PACikxp9mfyMhQxaw1mjHyEgC0PdPKT2kFE1yPrpfgNPTHk9pTOfPrgEvCwwVBCQR8mqhS_hz752laca2X_-Xy4Mz2ZmOje-pGuc1YBVLFFpK9tJlxg6clCdJMsC-0gEprflOs_u0vZg9QifXSrdeXj4B-fFvR1-4FBiHPm-c-5RwNHkyI4S98ljgUb1bi8JKSnN0nHl6dscNDrXYisy2n9b0j1-P6cu4evLanlIz-tYetLawPsqhXG9ctHjwIBl%26version%3D1.2&v=OTgyMGJlMTIxNDlkNzQwNjUyMDdiZTMzYjJkMTQ5MDkJMQl6aW9uYW5kc2hhbi5jb201NDljYmEyZWJkZmYyNi4yNTE4NjgwOAl6aW9uYW5kc2hhbi5jb201NDljYmEyZWJlMGJiNy42NzAyMjI5OQkxNDE5NTU3NDIzCWFkXzdfMQ==&l=NAlBRFMJYmVjM2YyMTkwNTYxZGQ2MTZlM2Y3NjhiZGIxMzM0OTgJMC4wMDAzCTAJMTMJCTMxCTIJMgkwCWE4ZjhhMDNmMWIxZjAzMzNlNDkxZTQ0MjI0NDllZGFkCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkyMDYzOTk0NTQJYwkxMDIwMDIwODMJCXppb25hbmRzaGFuCTEwMTkJNwkyMAkyNQkxNDE5NTU3NDIzCTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQl6aW9uYW5kc2hhbi5jb201NDljYmEyZWJkZmYyNi4yNTE4NjgwOAkwLjAwMDYJMAkJMQkwCTEwNjAJMTA3MDczNTYyCQ%3D%3D Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Fri, 26 Dec 2014 01:30:24 GMT X-Cache: MISS from 341061 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://zionandshan.com/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d406102%26terms%3dzionandshan%26ai%3dgnmowilsktcdhoseofga1hltqi9kedsdclyd7qubbycuyvoac8oeylzg8bsu0_ip3vdvpirpsl7o4c6nigeyu22zmicxof1dldc5z5y05x2faz4gawk0augbbo_iijh0vqg0gxt1qrgka3olarwnikvbg4lljqfix2iapolkrptg0pnzw-pwxae2zsivyhm8pacikxp9mfymhqxaw1mjhyegc0pdpkt2kfe1ypr <span>...799 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |