瑞星卡卡安全论坛

首页 » 技术交流区 » 恶意网站交流 » http://fydj.com.cn/onews.asp?id=77
悠悠Wǒ╭心 - 2009-8-24 20:48:00
Log is generated by FreShow.
[wide]http://fydj.com.cn/onews.asp?id=77
    [script]http://officeon.viens.la/office.js?google_ad_format=728x90_as
    [script]http://asdze.ze.tc/asd.js?s=201&col=ffdd00
        [frame]http://baidu824.8866.org/5/ads.html?wwcc
            [frame]http://baidu824.8866.org/5/search.htm
                [script]http://baidu824.8866.org/5/google_ad.js
                    [frame]http://baidu824.8866.org/5/ceerqqmp.htm
                        [script]http://baidu824.8866.org/5/cqqskin.css
                            [object]http://xxx.ss.la/5.exe
                        [script]http://baidu824.8866.org/5/show.jpg
                        [script]http://baidu824.8866.org/5/shows.jpg
                [script]http://baidu824.8866.org/5/google_ads.js
                [script]http://baidu824.8866.org/5/google_adx.js
                [script]http://baidu824.8866.org/5/music.js
            [script]http://js.tongji.linezing.com/1247775/tongji.js
            [script]http://s107.cnzz.com/stat.php?id=1583441&web_id=1583441
        [frame]http://baidu824.8866.org/5/ads.html?wwcc
        [frame]http://baidu824.8866.org/5/ads.html?wwcc
        [frame]http://asdze.ze.tc/about:blank
        [frame]http://ddv.sarl.tk/cnzz1.html
        [frame]http://count41.51yes.com/sa.aspx?id=419175949&refe='+window.parent.location+'&location=http%3A//'+paramsArr[0]+'&color=32x&resolution=1280x1024&returning=0&language=zh-cn&ua=Mozilla/4.0%20%28compatible%3B%20MSIE%206.0%3B%20Windows%20NT%205.1%3B%20SV1%3B%20.NET%20CLR%202.0.50727%3B%20.NET%20CLR%203.0.04506.30%29
    [script]http://fydj.com.cn/mm_menu.js
    [script]http://officeon.viens.la/office.js?google_ad_format=728x90_as
    [script]http://asdze.ze.tc/asd.js?s=201&col=ffdd00
    [script]http://www.50bang.com/click.js?user_id=7172

用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
redbsd - 2009-8-24 21:41:00
关于:hxxp://fydj.com.cn/onews.asp?id=77解密的日志(全体输出 -  19):

Level  0>http://fydj.com.cn/onews.asp?id=77
Level  1>http://officeon.viens.la/office.js
Level  2>http://asdze.ze.tc/asd.js?s=201&col=ffdd00
Level  2>http://officeon.viens.la/office.js?google_ad_format=728x90_as
Level  2>http://www.macromedia.com/shockwave/download/index.cgi?p1_prod_version=shockwaveflash
Level  2>http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=5,0,0,0
Level  2>http://asdze.ze.tc/asd.js?s=201&col=ffdd00
Level  3>http://baidu824.8866.org/5/ads.html?wwcc
Level  4>http://baidu824.8866.org/5/search.htm
Level  5>http://baidu824.8866.org/5/music.js
Level  5>http://baidu824.8866.org/5/google_adx.js
Level  5>http://baidu824.8866.org/5/google_ads.js
Level  6>http://baidu824.8866.org/5/fycry.htm
Level  6>http://baidu824.8866.org/5/fydvd.htm
Level  6>http://baidu824.8866.org/5/ecof.htm
Level  6>http://baidu824.8866.org/5/fyfl.htm
Level  6>http://baidu824.8866.org/5/ertrec1.htm
Level  7>http://baidu824.8866.org/5/ec4.js
Level  8>hxxp://xxx.ss.la/5.exe
1
查看完整版本: http://fydj.com.cn/onews.asp?id=77