See: http://killmalware.com/tangwendi.net/
Google blacklisted: http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=tangwendi.net
System Details:
Running on: nginx/1.0.15
Powered by: PHP/5.2.17p1 → http://www.cvedetails.com/vulnerability-list/vendor_id-74/product_id-128/version_id-106044/PHP-PHP-5.2.17.html & http://stackoverflow.com/questions/22536080/php-version-honeypot-server-is-5-2-vulnerable
Outdated Web Server Nginx Found: nginx/1.0.15
Code that should be blocked there: htxp://192.157.220.241/ad/tj.js htxp 192.157.220.241 /ad/tj.js analytics 1184 2081 2015-03-10 22:18:27 .51.la htxp://js.users.51.la/2482144.js\ 51.La
Re: http://whois.domaintools.com/tangwendi.net
Netcraft website report - risk status 7 red out of 10: http://toolbar.netcraft.com/site_report/?url=http%3A%2F%2Fwww.tangwendi.net%2Fhtml%2F7vss40935j4.html
document.writeln vuln. see: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fwww.tangwendi.net
polonus (volunteer website security analyst and website error-hunter)