Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: blueregency.com
Result:
HTTP/1.1 302 Found
Cache-Control: private
Connection: close
Date: Tue, 07 Oct 2014 19:01:30 GMT
Location: /tr
Server: Microsoft-IIS/7.5
Content-Type: text/html
Set-Cookie: ASP.NET_SessionId=zz5qlgtkpcvrkyt52rus5ita; path=/; HttpOnly
X-AspNet-Version: 4.0.30319
X-AspNetMvc-Version: 4.0
X-Powered-By: ASP.NET
GET / HTTP/1.1
Host: blueregency.com
Result:
HTTP/1.1 302 Found
Cache-Control: private
Connection: close
Date: Tue, 07 Oct 2014 19:01:30 GMT
Location: /tr
Server: Microsoft-IIS/7.5
Content-Type: text/html
Set-Cookie: ASP.NET_SessionId=zz5qlgtkpcvrkyt52rus5ita; path=/; HttpOnly
X-AspNet-Version: 4.0.30319
X-AspNetMvc-Version: 4.0
X-Powered-By: ASP.NET
Second query (visit from search engine):
GET / HTTP/1.1
Host: blueregency.com
Referer: http://www.google.com/search?q=blueregency.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: blueregency.com
Referer: http://www.google.com/search?q=blueregency.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://blueregency.com/ | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 07 Oct 2014 19:01:30 GMT Location: /tr Server: Microsoft-IIS/7.5 Content-Type: text/html Set-Cookie: ASP.NET_SessionId=zz5qlgtkpcvrkyt52rus5ita; path=/; HttpOnly X-AspNet-Version: 4.0.30319 X-AspNetMvc-Version: 4.0 X-Powered-By: ASP.NET | clean |
http://blueregency.com/tr | 200 OK Content-Length: 14890 Content-Type: text/html | clean |
http://blueregency.com/Scripts/jquery-1.11.0.min.js | 200 OK Content-Length: 115910 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/modernizr-2.6.2.js | 200 OK Content-Length: 52874 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/akalPopup.js | 200 OK Content-Length: 1104 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/blue-regency-default.js | 200 OK Content-Length: 1773 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/akal-slider-v1.1.js | 200 OK Content-Length: 3992 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/jquery-ui-1.9.2.custom.min.js | 200 OK Content-Length: 42005 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/DatePicker-tr.js | 200 OK Content-Length: 909 Content-Type: application/x-javascript | clean |
http://blueregency.com/Scripts/selectbox-custom.js | 200 OK Content-Length: 8294 Content-Type: application/x-javascript | clean |
http://blueregency.com/en | 200 OK Content-Length: 14977 Content-Type: text/html | clean |
http://blueregency.com/en/about-us | 200 OK Content-Length: 10024 Content-Type: text/html | clean |
http://blueregency.com/en/contact-us | 200 OK Content-Length: 13155 Content-Type: text/html | clean |
http://maps.google.com/maps/api/js?sensor=false | 200 OK Content-Length: 5033 Content-Type: text/javascript | clean |
http://blueregency.com/Scripts/map.js | 200 OK Content-Length: 2733 Content-Type: application/x-javascript | clean |
http://blueregency.com/en/suites/family-suites-blue-regency-hotel | 200 OK Content-Length: 13616 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=blueregency.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://blueregency.com/
Result: blueregency.com is not infected or malware details are not published yet.
Result: blueregency.com is not infected or malware details are not published yet.