Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tsccyq.com
Result:
HTTP/1.1 200 OK
Date: Sat, 04 Oct 2014 16:59:51 GMT
Accept-Ranges: bytes
ETag: "b46588737719cb1:0"
Server: Microsoft-IIS/7.0
Content-Length: 27194
Content-Type: text/html
Last-Modified: Thu, 01 Jul 2010 23:45:14 GMT
X-Powered-By: ASP.NET
...27194 bytes of data.
GET / HTTP/1.1
Host: tsccyq.com
Result:
HTTP/1.1 200 OK
Date: Sat, 04 Oct 2014 16:59:51 GMT
Accept-Ranges: bytes
ETag: "b46588737719cb1:0"
Server: Microsoft-IIS/7.0
Content-Length: 27194
Content-Type: text/html
Last-Modified: Thu, 01 Jul 2010 23:45:14 GMT
X-Powered-By: ASP.NET
...27194 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tsccyq.com
Referer: http://www.google.com/search?q=tsccyq.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tsccyq.com
Referer: http://www.google.com/search?q=tsccyq.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tsccyq.com/ | 200 OK Content-Length: 27194 Content-Type: text/html | clean |
http://tsccyq.com/Templets/images/tabstrip.js | 200 OK Content-Length: 1242 Content-Type: application/x-javascript | clean |
http://www.tsccyq.com/FS_Inc/Prototype.js | 200 OK Content-Length: 49225 Content-Type: application/x-javascript | clean |
http://%71%2E%61%64ba.%69nfo/ | 404 Not Found Content-Length: 198 Content-Type: text/html | clean |
http://%71%2E%61%64ba.%69nfo/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://%71%2Eazc%61.%69nf%6F/ | 500 Can't connect to q.azca.info:80 (Bad hostname) Content-Length: 154 Content-Type: text/plain | clean |
http://%71.%63%6Dst%2E%69n%66%6F/ | 500 Can't connect to q.cmst.info:80 (Bad hostname) Content-Length: 154 Content-Type: text/plain | clean |
http://q.c%6F%6Cn%2Ein%66o/ | 500 Can't connect to q.coln.info:80 (Bad hostname) Content-Length: 154 Content-Type: text/plain | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tsccyq.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tsccyq.com/
Result: tsccyq.com is not infected or malware details are not published yet.
Result: tsccyq.com is not infected or malware details are not published yet.