Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tong2499.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 23 Jun 2014 01:02:02 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 76
Content-Type: text/html
X-Powered-By: PHP/5.3.28
...76 bytes of data.
GET / HTTP/1.1
Host: tong2499.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 23 Jun 2014 01:02:02 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 76
Content-Type: text/html
X-Powered-By: PHP/5.3.28
...76 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tong2499.com
Referer: http://www.google.com/search?q=tong2499.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tong2499.com
Referer: http://www.google.com/search?q=tong2499.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tong2499.com/ | HTTP/1.1 200 OK Connection: close Date: Mon, 23 Jun 2014 01:02:02 GMT Server: Apache Vary: Accept-Encoding,User-Agent Content-Length: 76 Content-Type: text/html X-Powered-By: PHP/5.3.28 | clean |
http://www.tong2499.com/wifi/?a=6332 | 200 OK Content-Length: 84450 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21540 Content-Type: text/javascript | clean |
http://guru.sanook.com/gadget/gadget_utf8.js | 200 OK Content-Length: 294 Content-Type: text/javascript | clean |
http://tong2499.com/index.php?show_flash_subject=1&mod=&path= | HTTP/1.1 200 OK Connection: close Date: Mon, 23 Jun 2014 01:02:08 GMT Server: Apache Vary: Accept-Encoding,User-Agent Content-Length: 76 Content-Type: text/html X-Powered-By: PHP/5.3.28 | clean |
http://www.tong2499.com/wifi/?a=4080 | 200 OK Content-Length: 84450 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?show_flash_subject=1&mod=&path= | 200 OK Content-Length: 83893 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?show_flash_subject=0&mod=&path= | 200 OK Content-Length: 84450 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?language=2&mod=&path= | 200 OK Content-Length: 83833 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?language=1&mod=&path= | 200 OK Content-Length: 84450 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?mod=login&path=user | 200 OK Content-Length: 40366 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?show_flash_subject=1&mod=login&path=user | 200 OK Content-Length: 39809 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?show_flash_subject=0&mod=login&path=user | 200 OK Content-Length: 40366 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?language=2&mod=login&path=user | 200 OK Content-Length: 39537 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?language=1&mod=login&path=user | 200 OK Content-Length: 40367 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?mod=blog&path=web/blog&id_sub_menu=30&namemenu=%E0%B8%9B%E0%B8%A3%E0%B8%B0%E0%B8%A7%E0%B8%B1%E0%B8%95%E0%B8%B4 | 200 OK Content-Length: 73875 Content-Type: text/html | clean |
http://www.tong2499.com/wifi/index.php?mod=blog&path=web/index.php?show_flash_subject=1&mod=blog&path=web/blog | 200 OK Content-Length: 37138 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tong2499.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tong2499.com/
Result: tong2499.com is not infected or malware details are not published yet.
Result: tong2499.com is not infected or malware details are not published yet.