我也是...
抓包看了下. 是百度的一个统计脚本被劫持了.
curl 重现...
curl -v
hm.baidu.com* Rebuilt URL to:
hm.baidu.com/* Hostname was NOT found in DNS cache
* Trying 220.181.164.39...
* Connected to
hm.baidu.com (220.181.164.39) port 80 (#0)
> GET / HTTP/1.1
> User-Agent: curl/7.37.1
> Host:
hm.baidu.com> Accept: */*
>
< HTTP/1.1 302 Found
< Location: http://122.141.234.60:51234/bdpop.sl.php?
http://hm.baidu.com/< Content-type: text/html
< Content-Length: 0
<
* Excess found in a non pipelined read: excess = 890 url = / (zero-length body)
* Connection #0 to host
hm.baidu.com left intact