Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tanmiav.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.tanmiav.com/ | 200 OK Content-Length: 29004 Content-Type: text/html | clean |
http://www.tanmiav.com/static/js/common.js?N39 | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:16 GMT Accept-Ranges: bytes ETag: "084fc5d010ce1:c7f3" Server: IIS Content-Length: 67283 Content-Location: http://www.tanmiav.com/static/js/common.js?N39 Content-Type: application/x-javascript Last-Modified: Fri, 22 Feb 2013 07:41:28 GMT X-Powered-By: WAF/2.0 | clean |
http://www.tanmiav.com/static/js/common.js?n39 | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:18 GMT Accept-Ranges: bytes ETag: "084fc5d010ce1:c7f3" Server: IIS Content-Length: 67283 Content-Location: http://www.tanmiav.com/static/js/common.js?n39 Content-Type: application/x-javascript Last-Modified: Fri, 22 Feb 2013 07:41:28 GMT X-Powered-By: WAF/2.0 | clean |
http://www.tanmiav.com/test404page.js | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
http://www.tanmiav.com/static/js/forum.js?N39 | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:22 GMT Accept-Ranges: bytes ETag: "084fc5d010ce1:c7f3" Server: IIS Content-Length: 15312 Content-Location: http://www.tanmiav.com/static/js/forum.js?N39 Content-Type: application/x-javascript Last-Modified: Fri, 22 Feb 2013 07:41:28 GMT X-Powered-By: WAF/2.0 | clean |
http://www.tanmiav.com/static/js/forum.js?n39 | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:23 GMT Accept-Ranges: bytes ETag: "084fc5d010ce1:c7f3" Server: IIS Content-Length: 15312 Content-Location: http://www.tanmiav.com/static/js/forum.js?n39 Content-Type: application/x-javascript Last-Modified: Fri, 22 Feb 2013 07:41:28 GMT X-Powered-By: WAF/2.0 | clean |
http://www.tanmiav.com/static/js/logging.js?N39 | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:25 GMT Accept-Ranges: bytes ETag: "084fc5d010ce1:c7f3" Server: IIS Content-Length: 603 Content-Location: http://www.tanmiav.com/static/js/logging.js?N39 Content-Type: application/x-javascript Last-Modified: Fri, 22 Feb 2013 07:41:28 GMT X-Powered-By: WAF/2.0 | clean |
http://www.tanmiav.com/static/js/logging.js?n39 | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:26 GMT Accept-Ranges: bytes ETag: "084fc5d010ce1:c7f3" Server: IIS Content-Length: 603 Content-Location: http://www.tanmiav.com/static/js/logging.js?n39 Content-Type: application/x-javascript Last-Modified: Fri, 22 Feb 2013 07:41:28 GMT X-Powered-By: WAF/2.0 | clean |
http://j.humanding.com/wangzhai/i.php?z=8608 | 200 OK Content-Length: 600 Content-Type: text/html | clean |
http://vip.at98.com/cpc/i.ashx?
u=322612&s=0&b=197&w=960&h=130&bl=0&bb=1&ls=0&bc=gray&fc=%23000000&bkc= | 200 OK Content-Length: 62 Content-Type: application/x-javascript | clean |
http://j.humanding.com/wangzhai/i.php?z=8240 | 200 OK Content-Length: 600 Content-Type: text/html | clean |
http://www.tanmiav.com/source/plugin/dzkk_xshow/images/title.js | HTTP/1.1 200 OK Date: Fri, 09 Jan 2015 07:55:33 GMT Accept-Ranges: bytes ETag: "f6aaa790d698ce1:c7f3" Server: IIS Content-Length: 2624 Content-Location: http://www.tanmiav.com/source/plugin/dzkk_xshow/images/title.js Content-Type: application/x-javascript Last-Modified: Wed, 14 Aug 2013 10:10:55 GMT X-Powered-By: WAF/2.0 | clean |
http://vip.at98.com/cpc/i.ashx?
u=322612&s=0&b=197&w=960&h=130&bl=0&bb=1&ls=0&bc=gray&fc=%23000000&bkc= | 200 OK Content-Length: 62 Content-Type: application/x-javascript | clean |
http://ck.cpms.cc:899/ckf.aspx?
action=cycteamget&ad_class=7&cycteamid=10&username=s2685623&lowunionnsername=&cy
csel=1 | 200 OK Content-Length: 60 Content-Type: text/html | clean |
http://code12.onetad.com/js/294/294793.js | 200 OK Content-Length: 5660 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: www.loldaojucheng.com cid='294793'; username='s2685623'; adid_ary='||2||'; ad_replace='1'; playtime='0'; width='0'; height='0'; codetype='1'; var kurl=new Array(); var ktype=new Array(); kurl[0]='www.nvtouba.com'; ktype[0]=1; konetuid='81422'; kurl[1]='www.loldaojucheng.com'; ktype[1]=1; kurl[2]='laobingun.com'; ktype[2]=1; kurl[3]='3dhaoqin.com'; ktype[3]=1; kurl[4]='bsmln.com'; ktype[4]=1; kurl[5]='www.haoqin2.com'; ktype[5]=1; kurl[6]='duwenze.net'; ktype[6]=1; kurl[7]='gongyuefei.org'; ktype[7]=1; kurl[8]='www.lifanba.net'; ktype[8]=1; kurl[9]='www.90cunai.com'; ktype[9]=1; kurl[10]='www.topman8.com'; ktype[10]=1; kurl[11 ...[4013 bytes skipped]... | ||
http://code12.onetad.com/ok.php?user=s2685623 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://f1.1lo0.net/code/pop_cpf.asp?pid=260646 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://tcss.qq.com/ping.js?v=1N39 | 200 OK Content-Length: 8909 Content-Type: application/x-javascript | clean |
http://count25.51yes.com/click.aspx?id=259821072&logo=1 | 200 OK Content-Length: 1777 Content-Type: text/html | clean |
http://count30.51yes.com/click.aspx?id=306617458&logo=1 | 200 OK Content-Length: 1777 Content-Type: text/html | clean |
http://www.tanmiav.com/home.php?mod=misc&ac=sendmail&rand=1420790113 | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://discuz.gtimg.cn/cloud/scripts/discuz_tips.js?v=1 | 200 OK Content-Length: 6173 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tanmiav.com
Result:
GET / HTTP/1.1
Host: tanmiav.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: tanmiav.com
Referer: http://www.google.com/search?q=tanmiav.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tanmiav.com
Referer: http://www.google.com/search?q=tanmiav.com
Result:
The result is similar to the first query. There are no suspicious redirects found.