What Is TeraBox.com?

TeraBox (terabox.com) is a file-hosting website. They call themselves the simplest way to send your files around the world. TeraBox used to be known as Dubox and is one of the more popular cloud hosting services to use. After installing the Android app, TeraBox offers 1024GB of free storage space. The free version of the TeraBox app is supported by advertisements. As of March 2023, TeraBox offers 1 TB of free space but limits the videos to under 1 minute. Nevertheless, the reviews on Google Play are mostly positive, with an average rating of 4.6 out of 5 stars. Over 1.88 million people have reviewed the TeraBox app on Google Play. TeraBox offers the same features on the iOS App Store, where it has an average rating of 4.7 out of 5 stars.

As of February 2023, the site terabox.com gets an estimated 12.3 million monthly views. The Wayback Machine estimates terabox.com was founded on April 4, 2001. Most traffic for the terabox.com website started in 2021, though that doesn’t necessarily mean its app wasn’t popular before that time.

Website: https://www.terabox.com/

Is TeraBox Safe.com?

I conducted a series of malware tests to find out if terabox.com is safe and legit. Here are the results:

I installed the Malwarebytes Browser Guard on my Edge browser and was able to browse the site terabox.com without any issues.

To check this further I ran malware scans with Malwarebytes and Spybot on my computer after browsing the site terabox.com and they returned no malware detection. I also ran a system-wide scan with Microsoft Defender and no malware was found.

To try to confirm that the site is clean, I also checked the site terabox.com on the online malware scanner Sucuri and it returned as a medium security risk. You can see the same here: https://sitecheck.sucuri.net/results/terabox.com

TeraBox.com Sucuri results

Sucuri says the site terabox.com is a medium security risk due to numerous TLS recommendations. I have listed them below:

HTTPS mixed content found. Your HTTPS website is referring to an HTTP resource:
http://blog.terabox.com/wp-content/uploads/2023/01/00-Is-TeraBox-Legit.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/01/00-Is-TeraBox-Legit.png on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/01/00-app-to-transfer-data-from-android-to-android.p… on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/01/00-app-to-transfer-data-from-android-to-android.p… on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/01/00-best-photo-sharing-app.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/01/00-best-photo-sharing-app.png on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/02/00-does-TeraBox-delete-files.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/02/00-does-TeraBox-delete-files.png on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/02/00-how-to-send-large-videos.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/02/00-how-to-send-large-videos.png on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/02/01-backup-photos-from-iphone.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/02/01-backup-photos-from-iphone.png on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/03/00-TeraBox-Referral-Program.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/03/00-TeraBox-Referral-Program.png on https://www.terabox.com/
http://blog.terabox.com/wp-content/uploads/2023/03/00-video-storage.png on https://www.terabox.com
http://blog.terabox.com/wp-content/uploads/2023/03/00-video-storage.png on https://www.terabox.com/

On a positive note, I can see no malware was detected during Sucuri’s scan. Moreover, the site terabox.com is not blacklisted on any of the 9 blacklists checked.

Some hardening improvements can be made such as solving the following missing security headers:

Missing security header for ClickJacking Protection. Alternatively, you can use Content-Security-Policy: frame-ancestors ‘none’. Affected pages:
http://terabox.com/404javascript.js
http://terabox.com/404testpage4525d2fdc

Missing security header to prevent Content Type sniffing. Affected pages:
http://terabox.com/404javascript.js
http://terabox.com/404testpage4525d2fdc

Missing Content-Security-Policy directive. We recommend to add the following CSP directives (you can use default-src if all values are the same): script-src, object-src, base-uri, frame-src

The site terabox.com could also add a website firewall to protect against hacks.

However, these hardening improvements don’t change the overall grade of the Sucuri scan.

I also ran a parasite scan with Unmask Parasites on the site terabox.com and it says the page seems to be suspicious. You can see the same here: https://unmask.sucuri.net/security-report/?page=terabox.com

Unmask Parasites sites 1 suspicious inline script found:

try {eval(decodeURIComponent(`function%20_0x1c83%28%29%7Bvar%20_0x46299c%3D%5B%27substring%27%2C%275yrkOAa%27%2C%27531567...

Lastly, I ran a malware scan with VirusTotal on the domain terabox.com and no security vendors have flagged the domain as malicious. You can see the same here: https://www.virustotal.com/gui/domain/terabox.com

TeraBox.com VirusTotal results

In conclusion, the site terabox.com was graded as a medium security risk by Sucuri due to several TLS recommendations. Unmask Parasites found 1 suspicious inline script. And no security vendor associated with Sucuri or VirusTotal has blacklisted the domain or flagged it as malicious.