Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yuanassociates.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yuanassociates.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://yuanassociates.com/ | HTTP/1.1 302 Found Cache-Control: private Date: Sat, 04 Oct 2014 17:44:49 GMT Location: http://www.hugedomains.com/domain_profile.cfm?d=yuanassociates&e=com Server: Microsoft-IIS/8.0 Content-Length: 189 Content-Type: text/html; charset=utf-8 X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/domain_profile.cfm?d=yuanassociates&e=com | 200 OK Content-Length: 13092 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: yuanassociates.com var chost= ((document.location.protocol=="https:") ? "https://" : "http://"); document.write("<img height=1 width=1 border=0 src='" + chost + "static.hugedomains.com/Metrics/stat.aspx?r="+Math.floor(Math.random()*5000)+"&s=w29&u=" +escape(window.location.href) + "&rf=http%3A%2F%2Fsemalt.semalt.com%2Fcrawler.php%3Fu%3Dhttp%3A%2F%2Fyuanassociates.com' />"); Decoded script: <img height=1 width=1 border=0 src='http://static.hugedomains.com/Metrics/stat.aspx?r=3135&s=w29&u=http%3A//example.com&rf=http%3A%2F%2Fsemalt.semalt.com%2Fcrawler.php%3Fu%3Dhttp%3A%2F%2Fyuanassociates.com' /> | ||
http://static.HugeDomains.com/js/common.js?d=2012-02-06 | 200 OK Content-Length: 6727 Content-Type: application/x-javascript | clean |
http://yuanassociates.com//translate.google.com/translate_a/element.js?cb=googleTranslateElementInit/ | HTTP/1.1 302 Found Cache-Control: private Date: Sat, 04 Oct 2014 17:44:31 GMT Location: http://www.hugedomains.com/domain_profile.cfm?d=yuanassociates&e=com Server: Microsoft-IIS/8.0 Content-Length: 189 Content-Type: text/html; charset=utf-8 X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/test404page.js | HTTP/1.1 302 Moved temporarily Cache-Control: private Connection: close Date: Sat, 04 Oct 2014 17:44:32 GMT Location: http://www.HugeDomains.com/ Server: Microsoft-IIS/8.5 Content-Length: 58 Content-Type: text/html Set-Cookie: BTP=1; expires=Sun, 04-Oct-2015 17:44:15 GMT; path=/; domain=hugedomains.com Set-Cookie: CFID=118751; expires=Mon, 02-Oct-2023 17:44:15 GMT; path=/ Set-Cookie: CFTOKEN=C1D1CD4D-6899-185E-0316122C5077F287; expires=Mon, 02-Oct-2023 17:44:15 GMT; path=/ Set-Cookie: SHOPPINGCART=; expires=Mon, 03-Nov-2014 16:44:15 GMT; path=/ Set-Cookie: REFLOC=; expires=Sun, 04-Oct-2015 17:44:15 GMT; path=/ Set-Cookie: HD=CEBF65DCDBC8149D236D1AA48788C233059; expires=Sun, 04-Oct-2015 17:44:15 GMT; path=/ Set-Cookie: FWO=vQIF2KwBCfaKGgX1oBAW6PgJWK74QUev%2BVhaqrVEFuW9Bkq5%2B0VbquREWrP5QUqv%2BE9eqvNEX7m0CSnbizNcq402LtyKTVuq8DFYrf8xW9%2BIQVKp8U0prPpGWqvw; expires=Sun, 04-Oct-2015 17:44:15 GMT; path=/ Set-Cookie: PV=%2BAka%2F64QPPesAhk%3D; expires=Sun, 04-Oct-2015 17:44:15 GMT; path=/ X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/ | 200 OK Content-Length: 22445 Content-Type: text/html | clean |
http://www.statcounter.com/counter/counter_xhtml.js | 200 OK Content-Length: 15530 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yuanassociates.com
Result:
HTTP/1.1 302 Found
Cache-Control: private
Date: Sat, 04 Oct 2014 17:44:49 GMT
Location: http://www.hugedomains.com/domain_profile.cfm?d=yuanassociates&e=com
Server: Microsoft-IIS/8.0
Content-Length: 189
Content-Type: text/html; charset=utf-8
X-Powered-By: ASP.NET
...189 bytes of data.
GET / HTTP/1.1
Host: yuanassociates.com
Result:
HTTP/1.1 302 Found
Cache-Control: private
Date: Sat, 04 Oct 2014 17:44:49 GMT
Location: http://www.hugedomains.com/domain_profile.cfm?d=yuanassociates&e=com
Server: Microsoft-IIS/8.0
Content-Length: 189
Content-Type: text/html; charset=utf-8
X-Powered-By: ASP.NET
...189 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: yuanassociates.com
Referer: http://www.google.com/search?q=yuanassociates.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yuanassociates.com
Referer: http://www.google.com/search?q=yuanassociates.com
Result:
The result is similar to the first query. There are no suspicious redirects found.