Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=astroa.physics.metu.edu.tr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://astroa.physics.metu.edu.tr/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://astroa.physics.metu.edu.tr/ | 200 OK Content-Length: 6683 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.metu.edu.tr ...[63 bytes skipped]... METU </title> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-9"> <meta http-equiv=REFRESH content="300"; charset=iso-8859-1"> </head> <body background="back.gif" text="#000000" link="#990099" vlink="#003366" alink="#99CCFF"> <table width=%99 border=0 cellpadding=0 cellspacing=0> <tr valign=top> <td width=%30> <h4><a href="http://www.metu.edu.tr/" target="dene"> <img align="left" src="odtu.gif"> <i>Middle East <br> Technical University </i></a> </td> <td width=%40 align=center> <img src="header.jpg"> </td> <td width=%30 align="center"><a href="http://www.physics.metu.edu.tr/" target="dene"> <i><b>Physics <br> Department</b></i></a> </h4> </tr> </table> ...[8286 bytes skipped]... | ||
http://astroa.physics.metu.edu.tr/local.html | 200 OK Content-Length: 1803 Content-Type: text/html | clean |
http://astroa.physics.metu.edu.tr/home.html | 200 OK Content-Length: 6683 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.metu.edu.tr ...[63 bytes skipped]... METU </title> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-9"> <meta http-equiv=REFRESH content="300"; charset=iso-8859-1"> </head> <body background="back.gif" text="#000000" link="#990099" vlink="#003366" alink="#99CCFF"> <table width=%99 border=0 cellpadding=0 cellspacing=0> <tr valign=top> <td width=%30> <h4><a href="http://www.metu.edu.tr/" target="dene"> <img align="left" src="odtu.gif"> <i>Middle East <br> Technical University </i></a> </td> <td width=%40 align=center> <img src="header.jpg"> </td> <td width=%30 align="center"><a href="http://www.physics.metu.edu.tr/" target="dene"> <i><b>Physics <br> Department</b></i></a> </h4> </tr> </table> ...[8286 bytes skipped]... | ||
http://astroa.physics.metu.edu.tr/projects.html | 200 OK Content-Length: 2199 Content-Type: text/html | clean |
http://astroa.physics.metu.edu.tr/tug/home.html | 200 OK Content-Length: 3089 Content-Type: text/html | clean |
http://astroa.physics.metu.edu.tr/tug/100_0037.jpg | 200 OK Content-Length: 300325 Content-Type: image/jpeg | clean |
http://astroa.physics.metu.edu.tr/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://astroa.physics.metu.edu.tr/~umk/rotse/ | HTTP/1.1 200 OK Connection: close Date: Fri, 30 May 2014 01:26:11 GMT Accept-Ranges: bytes ETag: "1ec-3dbc8d73a5b40" Server: Apache/2.4.3 (Unix) Content-Length: 492 Content-Type: text/html Last-Modified: Tue, 01 Jun 2004 09:03:01 GMT | clean |
http://rotse.physics.metu.edu.tr/ | 200 OK Content-Length: 5975 Content-Type: text/html | clean |
http://rotse.physics.metu.edu.tr/./rotse_tr/ | 200 OK Content-Length: 8957 Content-Type: text/html | clean |
http://rotse.physics.metu.edu.tr/./rotse_tr/../images/worlddom.jpg | 200 OK Content-Length: 42379 Content-Type: image/jpeg | clean |
http://rotse.physics.metu.edu.tr/./rotse_tr/./arsiv/ | 200 OK Content-Length: 3647 Content-Type: text/html | clean |
http://rotse.physics.metu.edu.tr/rotse_tr/ | 200 OK Content-Length: 8957 Content-Type: text/html | clean |
http://rotse.physics.metu.edu.tr/rotse_tr/../images/worlddom.jpg | 200 OK Content-Length: 42379 Content-Type: image/jpeg | clean |
http://rotse.physics.metu.edu.tr/rotse_tr/./arsiv/ | 200 OK Content-Length: 3647 Content-Type: text/html | clean |
http://rotse.physics.metu.edu.tr/rotse_tr/./arsiv/./po_list.html | 200 OK Content-Length: 58480 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: astroa.physics.metu.edu.tr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 30 May 2014 01:26:08 GMT
Accept-Ranges: bytes
ETag: "1a1b-4d2dae6ef7980"
Server: Apache/2.4.3 (Unix)
Content-Length: 6683
Content-Type: text/html
Last-Modified: Wed, 09 Jan 2013 13:18:46 GMT
...6683 bytes of data.
GET / HTTP/1.1
Host: astroa.physics.metu.edu.tr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 30 May 2014 01:26:08 GMT
Accept-Ranges: bytes
ETag: "1a1b-4d2dae6ef7980"
Server: Apache/2.4.3 (Unix)
Content-Length: 6683
Content-Type: text/html
Last-Modified: Wed, 09 Jan 2013 13:18:46 GMT
...6683 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: astroa.physics.metu.edu.tr
Referer: http://www.google.com/search?q=astroa.physics.metu.edu.tr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: astroa.physics.metu.edu.tr
Referer: http://www.google.com/search?q=astroa.physics.metu.edu.tr
Result:
The result is similar to the first query. There are no suspicious redirects found.