Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bia2mobile.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bia2mobile.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bia2mobile.net/ | 200 OK Content-Length: 114125 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: b2m.ir <!DOCTYPE html> <html dir="rtl" lang="fa-IR"> <head> <meta charset="UTF-8" /> <title>ساÛت داÙÙÙد Ú©ÙÛÙ¾ Ù ÙباÛÙ,Download Clip 3gp,Ú©ÙÛÙ¾ ÙØ§Û Ø®Ùد٠دار,دÙربÛÙ Ù Ø®ÙÛ, سÙتÛ,Ú©ÙÛÙ¾ شعبد٠بازÛ,ساÛت Ú©ÙÛÙ¾ جدÛد تصÙÛرÛ,بÛا ت٠٠ÙباÛÙ,داÙÙÙد Ú©ÙÛÙ¾ صÙتÛ,Ú©ÙÛÙ¾ سرکارÛ</title> <link rel="icon" href=" ...[3790 bytes skipped]... | ||
http://bia2mobile.com/wp-content/themes/ansari/js/modernizr-1.5.min.js | 200 OK Content-Length: 11642 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/themes/ansari/js/jquery.js | 200 OK Content-Length: 144347 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/themes/ansari/js/plugins.js | 200 OK Content-Length: 4098 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/plugins/quotes-collection/quotes-collection.js?ver=1.5.7 | 200 OK Content-Length: 2309 Content-Type: application/javascript | clean |
http://www.webgozar.ir/c.aspx?Code=2311642&t=counter | 200 OK Content-Length: 973 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://engine.webgozar.ir/counter/xstat.aspx?t=stat4&code=2311642&rnd= <iframe scrolling=no width=0 height=0 border=0 frameborder=0 allowtransparency="true" src="http://engine.webgozar.ir/counter/xstat.aspx?t=stat4&code=2311642&rnd=' + math.round(math.random()*50000) + '&s=' + screensize + '&c=' + colors + '&ref=' + escape(document.referrer) + '&title=' + escape(document.title) + '" > | ||
http://www.webgozar.ir/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://bia2mobile.com/wp-content/plugins/smilies-themer-toolbar/stt-common.js?ver=2.0 | 200 OK Content-Length: 1422 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.44.0-2013.09.15 | 200 OK Content-Length: 14701 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.5.3 | 200 OK Content-Length: 8326 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/plugins/wp-polls/polls-js.js?ver=2.63 | 200 OK Content-Length: 3598 Content-Type: application/javascript | clean |
http://bia2mobile.com/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.63 | 200 OK Content-Length: 3227 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bia2mobile.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 11 Aug 2014 05:56:22 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
X-Pingback: http://bia2mobile.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: bia2mobile.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 11 Aug 2014 05:56:22 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
X-Pingback: http://bia2mobile.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: bia2mobile.net
Referer: http://www.google.com/search?q=bia2mobile.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bia2mobile.net
Referer: http://www.google.com/search?q=bia2mobile.net
Result:
The result is similar to the first query. There are no suspicious redirects found.