Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ww1.unityweb.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ww1.unityweb.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Wed, 28 May 2014 08:41:05 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Length: 4604
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Wed, 28 May 2014 08:41:05 GMT
Set-Cookie: tu=462dcbf34095ca56b350bf7171a960e9; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=unityweb.com; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_PZFpstmFueijUD8v4WvgsjEcooVRiSsWn+SWr/Q8ebkA1iAs7H1PegIFDFNC2wSENevgQ+vfBxVFxv+7OjG21w==
X-Cache: MISS from 630475
X-Powered-By: PHP/5.3.3-7+squeeze17
...4604 bytes of data.
GET / HTTP/1.1
Host: ww1.unityweb.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Wed, 28 May 2014 08:41:05 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Length: 4604
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Wed, 28 May 2014 08:41:05 GMT
Set-Cookie: tu=462dcbf34095ca56b350bf7171a960e9; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=unityweb.com; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_PZFpstmFueijUD8v4WvgsjEcooVRiSsWn+SWr/Q8ebkA1iAs7H1PegIFDFNC2wSENevgQ+vfBxVFxv+7OjG21w==
X-Cache: MISS from 630475
X-Powered-By: PHP/5.3.3-7+squeeze17
...4604 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ww1.unityweb.com
Referer: http://www.google.com/search?q=ww1.unityweb.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ww1.unityweb.com
Referer: http://www.google.com/search?q=ww1.unityweb.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ww1.unityweb.com/ | 200 OK Content-Length: 4604 Content-Type: text/html | clean |
http://img.sedoparking.com/js/jquery-1.4.2.min.js | 200 OK Content-Length: 52579 Content-Type: application/x-javascript | clean |
http://ww1.unityweb.com/test404page.js | 200 OK Content-Length: 26318 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://ww1.unityweb.com/search/redirect.php?f=http%3A%2F%2Fclick.taiwantrip.com%2Fr1.php%3Fh%3D327fedc3e59d2324514848e0f9c01007%26s%3Dc%26px%3D1%26mm%3D1%26wf%3D1%26ai%3D31739%26fm%3D2497%26st%3Dunity%2Bweb%26tos%3D1401266467%26mca%3D0&v=MmUzZDA1NTNiYThiOWQ2MmU3MWFhNDdlMTNkYTdhMjIJMQl3dzEudW5pdHl3ZWIuY29tNTM4NWExMjI5ZDlhMzkuMDc4OTU2NzkJd3cxLnVuaXR5d2ViLmNvbTUzODVhMTIyOWRiNDQzLjE2MTQwOTE0CTE0MDEyNj <span>...367 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Wed, 28 May 2014 08:41:07 GMT Pragma: no-cache Location: http://ww1.unityweb.com/search/tcerider.php?f=http%3A%2F%2Fclick.taiwantrip.com%2Fr1.php%3Fh%3D327fedc3e59d2324514848e0f9c01007%26s%3Dc%26px%3D1%26mm%3D1%26wf%3D1%26ai%3D31739%26fm%3D2497%26st%3Dunity%2Bweb%26tos%3D1401266467%26mca%3D0&v=MmUzZDA1NTNiYThiOWQ2MmU3MWFhNDdlMTNkYTdhMjIJMQl3dzEudW5pdHl3ZWIuY29tNTM4NWExMjI5ZDlhMzkuMDc4OTU2NzkJd3cxLnVuaXR5d2ViLmNvbTUzODVhMTIyOWRiNDQzLjE2MTQwOTE0CTE0MDEyNjY0NjcJYWRfMTVfMA==&l=NAlBRFMJYzQ2MzBlNzllMWUxODZkMDM2YTkwNzhhZTAyNGQ2MTIJMAkwCTEzCTEJMzEJMQkxCTAJZWVhMjE0NTgzYjViNmNkMzE0NmRkMGJlODI1MzJmOWEJbG9jYWxwYWdlcy5jb20JMTA0MTI5MjEzCWMJMjA0MzE2MDkJCXVuaXR5IHdlYgkxMDcwCTE1CTIwCTI1CTE0MDEyNjY0NjcJMC4wMDAxCU4JMAkwCTAJCTAJCQkJCTAJd3cxLnVuaXR5d2ViLmNvbTUzODVhMTIyOWQ5YTM5LjA3ODk1Njc5CTAuMDAwMQkwCQkxCTEzMjcJMTEyMQk0MTkyNTkzNwk%3D Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Wed, 28 May 2014 08:41:07 GMT X-Cache: MISS from 011291 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://ww1.unityweb.com/search/tcerider.php?f=http%3a%2f%2fclick.taiwantrip.com%2fr1.php%3fh%3d327fedc3e59d2324514848e0f9c01007%26s%3dc%26px%3d1%26mm%3d1%26wf%3d1%26ai%3d31739%26fm%3d2497%26st%3dunity%2bweb%26tos%3d1401266467%26mca%3d0&v=mmuzzda1ntniythiowq2mmu3mwfhnddlmtnkytdhmjijmql3dzeudw5pdhl3zwiuy29tntm4nwexmji5zdlhmzkumdc4otu2nzkjd3cxlnvuaxr5d2vilmnvbtuzodvhmtiyowrindqzlje2mtqwote0cte0mdeynj <span>...367 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |