Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tfdy.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.tfdy.net/ | 200 OK Content-Length: 41793 Content-Type: text/html | clean |
http://www.tfdy.net/js/common.js | 200 OK Content-Length: 8505 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/js/function.js | 200 OK Content-Length: 14363 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/template/default/images/js/date.js | 200 OK Content-Length: 793 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/js/ads/25.js | 200 OK Content-Length: 263 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/js/ads/22.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/js/ads/10.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/js/ads/5.js | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://js.users.51.la/17223130.js | 200 OK Content-Length: 1931 Content-Type: application/x-javascript | clean |
http://www.tfdy.net/gbook.asp | 200 OK Content-Length: 11908 Content-Type: text/html | clean |
http://www.tfdy.net/js/ads/9.js | 200 OK Content-Length: 563 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.union.doudouguo.net document.write("<script type=\'text\/javascript\'>");
document.write(" ddgu_uid = \'6526\';"); document.write(" ddgu_zid = \'7451\';"); document.write(" ddgu_type = \'0\'; "); document.write(" ddgu_w = \'960\';"); document.write(" ddgu_h = \'130\';"); document.write(" ddgu_row = \'1\';"); document.write(" ddgu_col = \'6\';"); document.write(" ddgu_fd_type = \'3\';"); document.write(" ddgu_pf = \'0\';"); document.write("<\/script>"); document.write("<script src=\'http:\/\/js.union.doudouguo.net\/cpro.js\'><\/script>"); | ||
http://www.tfdy.net/tv.html | 200 OK Content-Length: 6797 Content-Type: text/html | clean |
http://static.kukuplay.com/support/mini/fyminiloader-min.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 04 Oct 2014 02:48:44 GMT Location: http://static.ws.kukuplay.com/support/mini/fyminiloader-min.js Server: pws/1.4.2.9 Content-Length: 184 Content-Type: text/html | clean |
http://static.ws.kukuplay.com/support/mini/fyminiloader-min.js | 200 OK Content-Length: 660 Content-Type: application/x-javascript | clean |
http://js.users.51.la/15302925.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://js.users.51.la/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tfdy.net
Result:
GET / HTTP/1.1
Host: tfdy.net
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: tfdy.net
Referer: http://www.google.com/search?q=tfdy.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tfdy.net
Referer: http://www.google.com/search?q=tfdy.net
Result:
The result is similar to the first query. There are no suspicious redirects found.