Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ziviok.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.ziviok.com/ | 200 OK Content-Length: 17328 Content-Type: text/html | clean |
http://www.ziviok.com/views/js/jquery.js | 200 OK Content-Length: 57254 Content-Type: application/x-javascript | clean |
http://www.ziviok.com/views/js/system.js | 200 OK Content-Length: 6989 Content-Type: application/x-javascript | clean |
http://www.ziviok.com/views/js/history.js | 200 OK Content-Length: 4494 Content-Type: application/x-javascript | clean |
http://www.ossjsy.com/comm.js | 200 OK Content-Length: 176 Content-Type: application/x-javascript | clean |
http://www.ziviok.com/template/default/template.js | 200 OK Content-Length: 2705 Content-Type: application/x-javascript | clean |
http://t.ju33.com:89/click/js/a.js | 200 OK Content-Length: 1874 Content-Type: application/x-javascript | clean |
http://www.ziviok.com/temp/Js/hot.js | 200 OK Content-Length: 520 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<a href="/index.php?s=video/search/wd/52%E8%89%B2%E4%BA%94%E6%9C%88%E5%A9%B7%E5%A9%B7">52è²äºæå©·å©·</a>'); document.write('<a href="/index.php?s=video/search/wd/%E5%BC%80%E5%BF%83%E6%BF%80%E6%83%85%E8%89%B2%E4%BA%94%E6%9C%88%E8%89%B2%E4%BA%BA%E9%98%81%E8%89%B2%E5%B0%8F%E5%A7%90">å¼å¿æ¿æ è²äºæè²äººéè²å°å§</a>'); document.write('<a href="/index.php?s=video/search/wd/%E4%B8%81%E9%A6%99%E8%89%B2%E4%BA%94%E6%9C%88%E5%A5%B3%E7%8E%8B%E6%9D%A5%E4%BA%86">ä¸é¦è²äºæ女çæ¥äº</a>'); Antivirus reports:
| ||
http://e.70e.com/js/cpc_wz_wz_stxw.js | 200 OK Content-Length: 1441 Content-Type: application/x-javascript | clean |
http://e.70e.com/js/2013_new.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://e.70e.com/test404page.js | HTTP/1.1 302 Redirect Date: Thu, 18 Dec 2014 07:52:47 GMT Location: http://www.70e.com/err/404.html Server: Microsoft-IIS/7.5 Content-Length: 154 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.70e.com/err/404.html | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://www.70e.com/ | HTTP/1.1 302 Object moved Cache-Control: private Date: Thu, 18 Dec 2014 07:52:51 GMT Location: index.html Server: Microsoft-IIS/7.5 Content-Length: 108 Content-Type: text/html Set-Cookie: ASPSESSIONIDQASDRSDA=ENEBJCPAAGLDAMPEKBAPBMIM; path=/ X-Powered-By: ASP.NET | clean |
http://www.70e.com/index.html | 200 OK Content-Length: 9627 Content-Type: text/html | clean |
http://www.70e.com/js/jquery1.9.0.js | 200 OK Content-Length: 267046 Content-Type: application/x-javascript | clean |
http://www.70e.com/js/common.js | 200 OK Content-Length: 989 Content-Type: application/x-javascript | clean |
http://www.70e.com/js/jquery.flexslider-min.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ziviok.com
Result:
GET / HTTP/1.1
Host: ziviok.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: ziviok.com
Referer: http://www.google.com/search?q=ziviok.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ziviok.com
Referer: http://www.google.com/search?q=ziviok.com
Result:
The result is similar to the first query. There are no suspicious redirects found.