Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=137ys.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.137ys.com/ | 200 OK Content-Length: 56590 Content-Type: text/html | clean |
http://www.137ys.com/js/ads/sydb.js | 200 OK Content-Length: 256 Content-Type: application/x-javascript | clean |
http://v3.jiathis.com/code/jia.js?uid=1342624645441928 | 200 OK Content-Length: 24042 Content-Type: application/x-javascript | clean |
http://www.137ys.com/js/ads/shouyetan.js | 200 OK Content-Length: 125 Content-Type: application/x-javascript | clean |
http://js.users.51.la/16011056.js | 200 OK Content-Length: 1979 Content-Type: application/x-javascript | clean |
http://www.137ys.com/search.asp?searchword=%B8%D2%CB%C0%B6%D33 | 200 OK Content-Length: 11255 Content-Type: text/html | clean |
http://www.137ys.com/js/ads/dingbu.js | 200 OK Content-Length: 564 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.net document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'9639\';"); document.write(" ddgu_zid = \'11029\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'130\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'6\';"); document.write(" ddgu_fd_type = \'0\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.net\/cpro.js\'><\/script>"); | ||
http://www.137ys.com/js/ads/youxianjiao3.js | 200 OK Content-Length: 236 Content-Type: application/x-javascript | clean |
http://www.137ys.com/search.asp?searchword=%CB%C4%B4%F3%C3%FB%B2%B63 | 200 OK Content-Length: 10772 Content-Type: text/html | clean |
http://www.137ys.com/search.asp?searchword=%BA%F3%BB%E1%CE%DE%C6%DA | 200 OK Content-Length: 11248 Content-Type: text/html | clean |
http://www.137ys.com/search.asp?searchword=%D4%D8%B5%C3%D3%D0%C7%E9%C8%CB | 200 OK Content-Length: 11298 Content-Type: text/html | clean |
http://www.137ys.com/search.asp?searchword=%D2%BB%C2%B7%CF%F2%CE%F7 | 200 OK Content-Length: 16734 Content-Type: text/html | clean |
http://www.137ys.com/search.asp?searchword=%B7%D6%CA%D6%B4%F3%CA%A6 | 200 OK Content-Length: 11258 Content-Type: text/html | clean |
http://www.137ys.com/search.asp?searchword=%D3%C2%B8%D2%B5%C4%D0%C4 | 200 OK Content-Length: 10759 Content-Type: text/html | clean |
http://www.137ys.com/hot.html | 200 OK Content-Length: 57786 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.sokuys.com ...[401 bytes skipped]... µçÊÓ¾çÅÅÐÐ ¾«²ÊÁ¬·Å-sokuÓ°ÊÓÍøÓ°Ôº" /> <meta name="description" content="ÈÈÃŵçÓ°µçÊÓ¾çÅÅÐÐ ¾«²ÊÁ¬·Å-sokuÓ°ÊÓÍø" /> <link href="/template/default/images/css.css" rel="stylesheet"> <script>var sitePath=''</script> </head> <body> <div class="wrap"> <!--Edit By Beyond--> <div class="topleft"> <h3 class="logo"><a href="http://www.sokuys.com" title="sokuÓ°ÊÓÍø"><img src="/template/default/images/logo.gif" ></a></h3> <p><a onClick="this.style.behavior='url(#default#homepage)';this.setHomePage('http://www.sokuys.com')" href=#>ÉèΪÊ×Ò³</a>|<a onClick="javascript:window.external.AddFavorite('http://www.sokuys.com', 'sokuÓ°ÊÓÍø')" href="#" target=_self>Êղر¾Õ¾</a></p> </div> <div class="topright"> <div class="toptool"&g ...[3817 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 137ys.com
Result:
GET / HTTP/1.1
Host: 137ys.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 137ys.com
Referer: http://www.google.com/search?q=137ys.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 137ys.com
Referer: http://www.google.com/search?q=137ys.com
Result:
The result is similar to the first query. There are no suspicious redirects found.