Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: radyoperisi.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Cache-Control: private
Date: Fri, 05 Sep 2014 11:03:20 GMT
Pragma: no-cache
Server: Microsoft-IIS/6.0
Content-Length: 104550
Content-Type: text/html; charset=ISO-8859-9
Content-Type: text/html; Charset=iso-8859-9
Expires: Wed, 03 Sep 2014 11:03:20 GMT
Set-Cookie: ASPSESSIONIDSABCDBRC=NIFEJJJALOOHIADMOCKPHBCP; path=/
X-Powered-By: ASP.NET
...104550 bytes of data.
GET / HTTP/1.1
Host: radyoperisi.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Cache-Control: private
Date: Fri, 05 Sep 2014 11:03:20 GMT
Pragma: no-cache
Server: Microsoft-IIS/6.0
Content-Length: 104550
Content-Type: text/html; charset=ISO-8859-9
Content-Type: text/html; Charset=iso-8859-9
Expires: Wed, 03 Sep 2014 11:03:20 GMT
Set-Cookie: ASPSESSIONIDSABCDBRC=NIFEJJJALOOHIADMOCKPHBCP; path=/
X-Powered-By: ASP.NET
...104550 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: radyoperisi.com
Referer: http://www.google.com/search?q=radyoperisi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: radyoperisi.com
Referer: http://www.google.com/search?q=radyoperisi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://radyoperisi.com/ | 200 OK Content-Length: 104550 Content-Type: text/html | clean |
http://radyoperisi.com/js/common.js | 200 OK Content-Length: 1908 Content-Type: application/x-javascript | clean |
http://radyoperisi.com/js/subModal.js | 200 OK Content-Length: 8471 Content-Type: application/x-javascript | clean |
http://radyoperisi.com/js/ajax-dynamic-content.js | 200 OK Content-Length: 2753 Content-Type: application/x-javascript | clean |
http://radyoperisi.com/js/ajax.js | 200 OK Content-Length: 3988 Content-Type: application/x-javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21259 Content-Type: text/javascript | clean |
http://radyoperisi.com/radyolar.asp?q=top | 200 OK Content-Length: 104458 Content-Type: text/html | clean |
http://radyoperisi.com/televizyonlar.asp | 200 OK Content-Length: 37611 Content-Type: text/html | clean |
http://radyoperisi.com/player/ | 200 OK Content-Length: 24535 Content-Type: text/html | clean |
http://static.ak.fbcdn.net/connect.php/js/FB.Share | 200 OK Content-Length: 165227 Content-Type: application/x-javascript | clean |
http://radyoperisi.com/miniradyo.asp | 200 OK Content-Length: 29437 Content-Type: text/html | clean |
http://radyoperisi.com/yardim.asp | 200 OK Content-Length: 22889 Content-Type: text/html | clean |
http://radyoperisi.com/teknikdestek.asp | 200 OK Content-Length: 25160 Content-Type: text/html | clean |
http://radyoperisi.com/iletisim.asp | 200 OK Content-Length: 25211 Content-Type: text/html | clean |
http://radyoperisi.com/radyobul/A.htm | 200 OK Content-Length: 51977 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=radyoperisi.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://radyoperisi.com/
Result: radyoperisi.com is not infected or malware details are not published yet.
Result: radyoperisi.com is not infected or malware details are not published yet.