Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bis.bg
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bis.bg/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.bis.bg/ | 200 OK Content-Length: 24545 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://pass.bg/?login=www.bis.bg&if=1 <iframe name="pf" onload="try{if (this.contentwindow.location.href.indexof('nologin') != -1) {return false;} document.f.submit();} catch(e) {}" border=0 style="border:0px; background-color:#fff; margin-left: -2000px; position: absolute;" src="http://pass.bg/?login=www.bis.bg&if=1" width="0" height="0"> | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.imagecube.min.js | 200 OK Content-Length: 12962 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-facebox/facebox.js | 200 OK Content-Length: 9708 Content-Type: application/x-javascript | clean |
http://xslt.alexa.com/site_stats/js/t/a?url=www.bis.bg | 200 OK Content-Length: 3153 Content-Type: application/x-javascript | clean |
http://www.bis.bg/account.php?p=pass | 200 OK Content-Length: 11604 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://pass.bg/?login=www.bis.bg&if=1 <iframe name="pf" onload="try{if (this.contentwindow.location.href.indexof('nologin') != -1) {return false;} document.f.submit();} catch(e) {}" border=0 style="border:0px; background-color:#fff; margin-left: -2000px; position: absolute;" src="http://pass.bg/?login=www.bis.bg&if=1" width="0" height="0"> | ||
http://i.biscom.net/jq/jquery-metadata/jquery.metadata.min.js | 200 OK Content-Length: 1292 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.hoverIntent.min.js | 200 OK Content-Length: 1609 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.bgiframe.min.js | 200 OK Content-Length: 1402 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.bgpos.js | 200 OK Content-Length: 1247 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.autoresize.min.js | 200 OK Content-Length: 1137 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jq.ui.1821/js/jquery-ui-1.8.21.custom.min.js | 200 OK Content-Length: 206923 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.form.js | 200 OK Content-Length: 22463 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.infinitescroll.min.js | 200 OK Content-Length: 4221 Content-Type: application/x-javascript | clean |
http://i.biscom.net/jq/jquery-lib/jquery.innerfade.js | 200 OK Content-Length: 5054 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bis.bg
Result:
GET / HTTP/1.1
Host: bis.bg
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: bis.bg
Referer: http://www.google.com/search?q=bis.bg
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bis.bg
Referer: http://www.google.com/search?q=bis.bg
Result:
The result is similar to the first query. There are no suspicious redirects found.