Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=108ys.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://108ys.com/ | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:21 GMT Location: http://www.108ys.com/ Server: Microsoft-IIS/7.5 Content-Length: 144 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/ | HTTP/1.1 302 Object moved Cache-Control: private Date: Thu, 08 Jan 2015 09:43:22 GMT Location: /index.html Server: Microsoft-IIS/7.5 Content-Length: 109 Content-Type: text/html Set-Cookie: ASPSESSIONIDQSRDTBSD=HJODEJNCNKIMMHJKHGHCGGML; path=/ X-Powered-By: ASP.NET | clean |
http://www.108ys.com/index.html | 200 OK Content-Length: 25526 Content-Type: text/html | clean |
http://www.108ys.com/js/common.js | 200 OK Content-Length: 8205 Content-Type: application/x-javascript | clean |
http://108ys.com/js/function.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:29 GMT Location: http://www.108ys.com/js/function.js Server: Microsoft-IIS/7.5 Content-Length: 158 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/function.js | 200 OK Content-Length: 14363 Content-Type: application/x-javascript | clean |
http://108ys.com/js/ads/1.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:30 GMT Location: http://www.108ys.com/js/ads/1.js Server: Microsoft-IIS/7.5 Content-Length: 155 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/ads/1.js | 200 OK Content-Length: 563 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'9037\';"); document.write(" ddgu_zid = \'10011\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'90\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'3\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://108ys.com/js/ads/2.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:31 GMT Location: http://www.108ys.com/js/ads/2.js Server: Microsoft-IIS/7.5 Content-Length: 155 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/ads/2.js | 200 OK Content-Length: 563 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'9037\';"); document.write(" ddgu_zid = \'10011\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'90\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'3\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://108ys.com/js/ads/3.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:33 GMT Location: http://www.108ys.com/js/ads/3.js Server: Microsoft-IIS/7.5 Content-Length: 155 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/ads/3.js | 200 OK Content-Length: 563 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'9037\';"); document.write(" ddgu_zid = \'10011\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'90\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'3\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://108ys.com/js/ads/12.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:34 GMT Location: http://www.108ys.com/js/ads/12.js Server: Microsoft-IIS/7.5 Content-Length: 156 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/ads/12.js | 200 OK Content-Length: 76 Content-Type: application/x-javascript | clean |
http://108ys.com/js/ads/18.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:35 GMT Location: http://www.108ys.com/js/ads/18.js Server: Microsoft-IIS/7.5 Content-Length: 156 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/ads/18.js | 200 OK Content-Length: 564 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.com document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'9037\';"); document.write(" ddgu_zid = \'14681\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'130\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'6\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.com\/cpro.js\'><\/script>"); | ||
http://js.users.51.la/17334540.js | 200 OK Content-Length: 1964 Content-Type: application/x-javascript | clean |
http://108ys.com/js/ads/qzgg.js | HTTP/1.1 301 Moved Permanently Date: Thu, 08 Jan 2015 09:43:37 GMT Location: http://www.108ys.com/js/ads/qzgg.js Server: Microsoft-IIS/7.5 Content-Length: 158 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.108ys.com/js/ads/qzgg.js | HTTP/1.1 200 OK Date: Thu, 08 Jan 2015 09:43:37 GMT Accept-Ranges: bytes ETag: "de51b5c8e95cf1:0" Server: Microsoft-IIS/7.5 Content-Length: 1052 Content-Type: text/html Last-Modified: Tue, 31 Dec 2013 05:33:06 GMT X-Powered-By: ASP.NET | clean |
http://www.108ys.com/test404page.js | HTTP/1.1 200 OK Date: Thu, 08 Jan 2015 09:43:38 GMT Accept-Ranges: bytes ETag: "de51b5c8e95cf1:0" Server: Microsoft-IIS/7.5 Content-Length: 1052 Content-Type: text/html Last-Modified: Tue, 31 Dec 2013 05:33:06 GMT X-Powered-By: ASP.NET | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 108ys.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Thu, 08 Jan 2015 09:43:21 GMT
Location: http://www.108ys.com/
Server: Microsoft-IIS/7.5
Content-Length: 144
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
...144 bytes of data.
GET / HTTP/1.1
Host: 108ys.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Thu, 08 Jan 2015 09:43:21 GMT
Location: http://www.108ys.com/
Server: Microsoft-IIS/7.5
Content-Length: 144
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
...144 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 108ys.com
Referer: http://www.google.com/search?q=108ys.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 108ys.com
Referer: http://www.google.com/search?q=108ys.com
Result:
The result is similar to the first query. There are no suspicious redirects found.