Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=zyy123.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.zyy123.com/ | 200 OK Content-Length: 111333 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mingyi.zyy123.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta http-equiv="x-ua-compatible" content="ie=7" /> <title>ä¸å»å-ä¸å»ç½-ä¸è¯ç½-ä¸å»è¯èµæºçå è´¹èåå¹³å°</title> <meta name="description" content="ä¸å»åzyy123comè´åä ...[4253 bytes skipped]... | ||
http://www.zyy123.com/js2/1.6.1-min.js | 200 OK Content-Length: 91342 Content-Type: application/x-javascript | clean |
http://www.zyy123.com/e/member/login/loginjs.php | 200 OK Content-Length: 625 Content-Type: text/html | clean |
http://www.zyy123.com/test404page.js | 404 Not Found Content-Length: 5164 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mingyi.zyy123.com ...[2070 bytes skipped]... id #ccc; line-height:26px; font-weight:bold; color:#333; background:#ffc} #indexr .bot{padding:10px; height:100%} #server{background:#efefef; text-align:center; border-top:1px solid #009; linarget="_blank">é æ¹</a> <a href="http://www.zyy123.com/liao/" target="_blank">è¯ç</a> <a href="http://www.zyy123.com/zcy/" title="ä¸æè¯" target="_blank">ä¸æè¯</a> <a href="http://mingyi.zyy123.com/" target="_blank">åä¸å»</a> <a href="http://www.zyy123.com/wenxian/" target="_blank">æç®</a> <a href="http://www.zyy123.com/jianfei/" target="_blank">åè¥</a> <a href="http://www.zyy123.com/meirong/" title="ä¸å»ç¾å®¹" target="_blank">ç¾å®¹</a> <a href="http://www.zyy123.com/jball/" title="ç¾ç å¤§å ¨" target="_blank">ç¾ç å¤§å ¨</a> <a href="http://www.zyy123.com/tupu" target="_blank" ...[1770 bytes skipped]... | ||
http://cpro.baidustatic.com/cpro/ui/c.js | 200 OK Content-Length: 83863 Content-Type: application/x-javascript | clean |
http://yibo.iyiyun.com/yibo.js | 200 OK Content-Length: 556 Content-Type: application/javascript | clean |
http://www.zyy123.com/tupu | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 24 Feb 2015 17:22:32 GMT Location: http://www.zyy123.com/tupu/ Server: Tengine/1.3.0 Content-Length: 286 Content-Type: text/html Thanks: Welcome to our website! | clean |
http://www.zyy123.com/tupu/ | 200 OK Content-Length: 13140 Content-Type: text/html | clean |
http://www.zyy123.com/d/js/acmsd/thea4.js | 200 OK Content-Length: 209 Content-Type: application/x-javascript | clean |
http://www.zyy123.com/d/js/acmsd/thea3.js | 200 OK Content-Length: 210 Content-Type: application/x-javascript | clean |
http://www.zyy123.com/d/js/acmsd/thea5.js | 200 OK Content-Length: 169 Content-Type: application/x-javascript | clean |
http://www.zyy123.com/a/pic-jx.html | 200 OK Content-Length: 37280 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: daohang.zyy123.com <div class="el_search search1 mr10"> <form name="schform" id="schform" action="http://www.zyy123.com/e/sch/index.php" method="get" target="_blank"> <div class="el_search_inputbox"> <input type="text" class="el_search_input" title="æç´¢" name="keyboard" id="keyboard" emptyText="请è¾å ¥å ³é®å" value="请è¾å ¥å ³é®å" onfocus="if(this.value==this.getAttribute('emptyText'))this.value=''" onbl ...[4687 bytes skipped]... | ||
http://www.zyy123.com/d/js/acmsd/thea2.js | 200 OK Content-Length: 218 Content-Type: application/x-javascript | clean |
http://www.zyy123.com/d/js/acmsd/thea1.js | 200 OK Content-Length: 157 Content-Type: application/x-javascript | clean |
http://www.zyy123.com/d/js/acmsd/thea7.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.zyy123.com/d/js/acmsd/thea29.js | 200 OK Content-Length: 18 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: zyy123.com
Result:
GET / HTTP/1.1
Host: zyy123.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: zyy123.com
Referer: http://www.google.com/search?q=zyy123.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: zyy123.com
Referer: http://www.google.com/search?q=zyy123.com
Result:
The result is similar to the first query. There are no suspicious redirects found.