Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=t.saybox.co.kr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: t.saybox.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: Keep-Alive
Date: Wed, 14 Jan 2015 23:16:31 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Keep-Alive: timeout=5, max=60
P3P: CP='ALL DSP COR MON LAW OUR LEG DEL'
Set-Cookie: visited=1421277391; path=/; domain=t.saybox.co.kr
X-UA-Compatible: IE=Edge
GET / HTTP/1.1
Host: t.saybox.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: Keep-Alive
Date: Wed, 14 Jan 2015 23:16:31 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Keep-Alive: timeout=5, max=60
P3P: CP='ALL DSP COR MON LAW OUR LEG DEL'
Set-Cookie: visited=1421277391; path=/; domain=t.saybox.co.kr
X-UA-Compatible: IE=Edge
Second query (visit from search engine):
GET / HTTP/1.1
Host: t.saybox.co.kr
Referer: http://www.google.com/search?q=t.saybox.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: t.saybox.co.kr
Referer: http://www.google.com/search?q=t.saybox.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://t.saybox.co.kr/ | 200 OK Content-Length: 88964 Content-Type: text/html | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/plugins/lightbox/lightbox_plus_ope.js | 200 OK Content-Length: 15081 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/plugins/A_ShareEntryWithSNS/script/shareEntryWithSNS.js | 200 OK Content-Length: 865 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/plugins/TistoryProfileLayer/profile.js | 200 OK Content-Length: 11104 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/lib/jigu/jigu-latest.min.js | 200 OK Content-Length: 49862 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/T.js | 200 OK Content-Length: 7105 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/EAF2.js | 200 OK Content-Length: 16578 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/common.js | 200 OK Content-Length: 54355 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/gallery.js | 200 OK Content-Length: 4565 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/flash.js | 200 OK Content-Length: 9824 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/PHON.js | 200 OK Content-Length: 3435 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/script/swfobject.js | 200 OK Content-Length: 6880 Content-Type: application/javascript | clean |
http://www.tistory.com/api/secondaryDomain/?callback=secondaryDomainLogin&dummy=506669760 | 200 OK Content-Length: 23 Content-Type: application/javascript | clean |
http://s1.daumcdn.net/cfs.tistory/resource/174/blog/plugins/PreventCopyContents/js/functions.js | 200 OK Content-Length: 4162 Content-Type: application/javascript | clean |
http://m1.daumcdn.net/tiara/js/td.min.js | 200 OK Content-Length: 28538 Content-Type: application/x-javascript | clean |