Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tuyi123.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tuyi123.com/ | 200 OK Content-Length: 23188 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 1.32ir.com ...[1765 bytes skipped]... ÃÍø,ÐÔ°®Ð¡Ëµ,ºÝºÝÉä,avͼƬ,°³È¥Ò²,www.av.com')" title="½«AVÌìÌÃ,ÃÀ¹úÊ®´ÎÀ²,ºÝºÝߣ,AVÌìÌÃÍø,ÐÔ°®Ð¡Ëµ,ºÝºÝÉä,avͼƬ,°³È¥Ò²,www.av.com·ÅÈëÊղؼУ¬·À·âÓÊÏä">Êղر¾Õ¾ÍøÖ·</a></div> </div> </div> <a href="http://t.cn/RvBWxwX "><img src="http://img03.taobaocdn.com/imgextra/i3/26183078/TB2uHfTXVXXXXbUXXXXXXXXXXXX_!!26183078.gif" width="960" height="90" ></a> <script src="http://1.32ir.com/page/s.php?s=5992&w=960&h=90"></script> <script src="http://js.zsj18.com/page/s.php?s=8482&w=960&h=90"></script> <script src="http://js.zsj18.com/page/s.php?s=8515&w=960&h=60"></script> <script src="http://js.zsj18.com/page/s.php?s=8516&w=760&h=60"></script> <script src="http://js.zsj18.com/page/s.php?s=8514&w=760&h=60"></script> <div id="menu_box"> ...[29699 bytes skipped]... | ||
http://tuyi123.com/js/ads/diantan2.js | HTTP/1.1 404 Not Found Date: Wed, 09 Jul 2014 12:25:35 GMT Server: IIS Content-Length: 1052 Content-Type: text/html | clean |
http://tuyi123.com/test404page.js | HTTP/1.1 404 Not Found Date: Wed, 09 Jul 2014 12:25:35 GMT Server: IIS Content-Length: 1052 Content-Type: text/html | clean |
http://tuyi123.com/js/common.js | HTTP/1.1 200 OK Date: Wed, 09 Jul 2014 12:25:35 GMT Accept-Ranges: bytes ETag: "2edfdbb1e90cc1:ceed" Server: IIS Content-Length: 8205 Content-Location: http://tuyi123.com/js/common.js Content-Type: application/x-javascript Last-Modified: Fri, 22 Apr 2011 12:34:59 GMT | clean |
http://tuyi123.com/js/function.js | HTTP/1.1 200 OK Date: Wed, 09 Jul 2014 12:25:37 GMT Accept-Ranges: bytes ETag: "b6e47fe5f02ce1:ceed" Server: IIS Content-Length: 14454 Content-Location: http://tuyi123.com/js/function.js Content-Type: application/x-javascript Last-Modified: Mon, 04 Feb 2013 16:01:30 GMT | clean |
http://1.32ir.com/page/s.php?s=5992&w=960&h=90 | 200 OK Content-Length: 659 Content-Type: text/html | clean |
http://js.zsj18.com/page/s.php?s=8482&w=960&h=90 | 200 OK Content-Length: 662 Content-Type: text/html | clean |
http://js.zsj18.com/page/s.php?s=8515&w=960&h=60 | 200 OK Content-Length: 662 Content-Type: text/html | clean |
http://js.zsj18.com/page/s.php?s=8516&w=760&h=60 | 200 OK Content-Length: 662 Content-Type: text/html | clean |
http://js.zsj18.com/page/s.php?s=8514&w=760&h=60 | 200 OK Content-Length: 662 Content-Type: text/html | clean |
http://ttshow.cciuop.com/page/?s=1374 | 200 OK Content-Length: 12 Content-Type: text/html | clean |
http://1.32ir.com/page/?s=6024 | 200 OK Content-Length: 12 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tuyi123.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Connection: close
Date: Wed, 09 Jul 2014 12:25:32 GMT
Server: IIS
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQQSSBSCB=HNINAFDCKEPBGELMMFJCOOII; path=/
GET / HTTP/1.1
Host: tuyi123.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Connection: close
Date: Wed, 09 Jul 2014 12:25:32 GMT
Server: IIS
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQQSSBSCB=HNINAFDCKEPBGELMMFJCOOII; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: tuyi123.com
Referer: http://www.google.com/search?q=tuyi123.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tuyi123.com
Referer: http://www.google.com/search?q=tuyi123.com
Result:
The result is similar to the first query. There are no suspicious redirects found.