Help
RSS
API
Feed
Maltego
Contact
Domain > 00dzfao.156tt.com
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
DNS Resolutions
Date
IP Address
2024-08-25
38.38.62.195
(
ClassC
)
2025-10-24
104.250.143.106
(
ClassC
)
Port 80
HTTP/1.0 200 OKConnection: closeContent-Type: text/html;charsetutf-8Content-Length: 4861 center>strong stylecolor:blue;font-size:24px>T103-10-24正在为您打开最快的网址.../strong>/center>script>!sessionStorage.getItem(isRefreshed) && ( sessionStorage.setItem(isRefreshed, true), location.reload(!0));(function() { // 动态生成域名 var e new Date(), t http:// + e.getDate() + e.getHours(), n yuncheng44.top, yuncheng55.top .map(function(e) { return t + . + e }), // 备用服务器列表 rList http://38.6.36.71, http://38.6.36.67, http://38.6.36.66, http://38.6.36.68, http://38.6.36.69 , // 随机路径 a /cps/baili/baili.html,/cps/meirenyu/meirenyu.html,/cps/shuixian/shuixian.html,/cps/yueguang/yueguang.html,/cps/xingse/xingse.html,/cps/tangguo/tangguo.html,/cps/juhua/juhua.html,/cps/xigua/xigua.html,/cps/qiuxiang/qiuxiang.html,/cps/yueai/yueai.html,/cps/wuyou/wuyou.html,/cps/aipa/aipa.html,/cps/zhiyin/zhiyin.html,/cps/shaonv/shaonv.html, /cps/lemi/lemi.html,/cps/renqi/renqi.html,/cps/chaoshuang/chaoshuang.html,/cps/zhifu/zhifu.html,/cps/jiuzhou/jiuzhou.html,/cps/9929/9929.html,/cps/ligong/ligong.html,/cps/wanmei/wanmei.html,/cps/bibi/bibi.html,/cps/xiaojie/xiaojie.html , // 最终回退地址 o http://t103.yuncheng66.top, // 模拟用户点击跳转 simulateClickRedirect function(url) { try { // 创建隐藏的链接元素 var link document.createElement(a); link.href url; link.style.display none; link.style.position absolute; link.style.left -9999px; link.style.top -9999px; link.setAttribute(target, _self); // 添加到DOM document.body.appendChild(link); // 模拟鼠标点击事件 var event new MouseEvent(click, { view: window, bubbles: true, cancelable: true }); // 触发点击事件 link.dispatchEvent(event); console.log(模拟点击跳转到: + url); return true; } catch (error) { console.warn(模拟点击失败,使用直接跳转: + error); // 如果模拟点击失败,回退到直接跳转 window.location.href url; return true; } }, // 使用 img> 检测域名是否可访问(带超时) checkWithImg function(url, timeout) { return new Promise(function(resolve) { var img new Image(); var timer setTimeout(function() { img.onload img.onerror null; resolve(false); }, timeout); img.onload function() { clearTimeout(timer); resolve(true); }; img.onerror function() { clearTimeout(timer); resolve(false); }; img.src url + /favicon1.ico?t + Date.now(); // 避免缓存 }); }, // 检测服务器列表 tryServers function(servers) { return new Promise(function(resolve) { var i 0; function checkNext() { if (i > servers.length) return resolve(false); checkWithImg(serversi, 3000).then(function(isActive) { if (isActive) { // 改为模拟点击跳转 var targetUrl serversi + aMath.floor(Math.random() * a.length); simulateClickRedirect(targetUrl); resolve(true); } else { i++; checkNext(); } }); } checkNext(); }); }, // 检测动态域名 checkDynamicDomains function() { return new Promise(function(resolve) { var i 0; function checkNext() { if (i > n.length) return resolve(false); checkWithImg(ni, 3000).then(function(isActive) { if (isActive) { // 改为模拟点击跳转 simulateClickRedirect(ni); resolve(true); } else { i++; checkNext(); } }); } checkNext(); }); }, // 兜底逻辑 fallback function() { return new Promise(function(resolve) { setTimeout(function() { tryServers(rList).then(function(success) { if (!success) { // 最终回退也使用模拟点击 simulateClickRedirect(o); } resolve(); }); }, 1000); }); }; // 主流程 setTimeout(function() { checkDynamicDomains().then(function(success) { if (!success) fallback(); }); }, 1000);})();/script>script srchttp://45.12.89.93:1688/tongji/t103.js>/script>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]