Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cetmen.com.tr
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 16 May 2014 20:48:29 GMT
Pragma: no-cache
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.4.22
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=682caeedd98ad532a59106303c65290b; path=/
Set-Cookie: language=tr; expires=Sun, 15-Jun-2014 20:48:30 GMT; path=/; domain=cetmen.com.tr
Set-Cookie: currency=TRY; expires=Sun, 15-Jun-2014 20:48:30 GMT; path=/; domain=cetmen.com.tr
X-Powered-By: PHP/5.4.22
GET / HTTP/1.1
Host: cetmen.com.tr
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 16 May 2014 20:48:29 GMT
Pragma: no-cache
Server: Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.4.22
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=682caeedd98ad532a59106303c65290b; path=/
Set-Cookie: language=tr; expires=Sun, 15-Jun-2014 20:48:30 GMT; path=/; domain=cetmen.com.tr
Set-Cookie: currency=TRY; expires=Sun, 15-Jun-2014 20:48:30 GMT; path=/; domain=cetmen.com.tr
X-Powered-By: PHP/5.4.22
Second query (visit from search engine):
GET / HTTP/1.1
Host: cetmen.com.tr
Referer: http://www.google.com/search?q=cetmen.com.tr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cetmen.com.tr
Referer: http://www.google.com/search?q=cetmen.com.tr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://cetmen.com.tr/ | 200 OK Content-Length: 47991 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/ | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28706 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/ | 404 Not Found Content-Length: 28706 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jq <span>...76 symbols skipped</span> | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jq <span>...127 symbols skipped</span> | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jq <span>...178 symbols skipped</span> | 404 Not Found Content-Length: 28706 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jq <span>...229 symbols skipped</span> | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jq <span>...280 symbols skipped</span> | 404 Not Found Content-Length: 28706 Content-Type: text/html | clean |
http://cetmen.com.tr//www.googleadservices.com/pagead/conversion.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jquery/jquery-1.7.1.min.js/catalog/view/javascript/jq <span>...331 symbols skipped</span> | 404 Not Found Content-Length: 28717 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cetmen.com.tr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cetmen.com.tr/
Result: cetmen.com.tr is not infected or malware details are not published yet.
Result: cetmen.com.tr is not infected or malware details are not published yet.