Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=heyat-ansar.ir
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: heyat-ansar.ir
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 09 Jan 2015 04:53:37 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://heyat-ansar.ir/xmlrpc.php
X-Powered-By: PHP/5.4.32
GET / HTTP/1.1
Host: heyat-ansar.ir
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 09 Jan 2015 04:53:37 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://heyat-ansar.ir/xmlrpc.php
X-Powered-By: PHP/5.4.32
Second query (visit from search engine):
GET / HTTP/1.1
Host: heyat-ansar.ir
Referer: http://www.google.com/search?q=heyat-ansar.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: heyat-ansar.ir
Referer: http://www.google.com/search?q=heyat-ansar.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.heyat-ansar.ir/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 09 Jan 2015 04:53:37 GMT Location: http://heyat-ansar.ir/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://heyat-ansar.ir/xmlrpc.php X-Powered-By: PHP/5.4.32 | clean |
http://heyat-ansar.ir/ | 200 OK Content-Length: 95704 Content-Type: text/html | clean |
http://www.ashoora.biz/mazhabi-projects/rooz/date.php?color1=FFFFFF&color2=FF0000&color3=FF0000&size=13px&size2=5px&style=none&width=300&selected=1,1,1,0&mod=2 | 200 OK Content-Length: 1117 Content-Type: application/x-javascript | clean |
http://www.ashoora.biz/mazhabi-projects/png.js | 200 OK Content-Length: 1456 Content-Type: application/javascript | clean |
http://www.ashoora.biz/mazhabi-projects/tadabor/tadabor.php?mod=4&cat=1,1,1,1,1,1,1,1,1,1,1,1&color3=F30A36&color2=F30A36&color1=000000&width=150 | 200 OK Content-Length: 3314 Content-Type: application/x-javascript | clean |
http://www.ashoora.biz/mazhabi-projects/mahdaviat/mahdaviat.php?mod=5&color2=F30A36&color1=000000&width=150 | 200 OK Content-Length: 1735 Content-Type: application/x-javascript | clean |
http://prayer.horuph.com/frame/?color0=212121&color1=226699&bgcolor=FAFAFA&inbgcolor=FFFFFF&az=1&tz=1&bdcolor=C4C4C4&border=1&curved=7&city=1-14 | 200 OK Content-Length: 379 Content-Type: text/html | clean |
http://prayer.horuph.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://www.hadithlib.com/hadithlibjs/random/a6150e/Tahoma/10/normal/ffcfcd/1f95a6/Tahoma/11/normal/c9f8ff/864d2b/Traditional Arabic/18/bold/ffc39f/20483E/Tahoma/12/normal/6bfdd9/CD8F6A/Tahoma/10/normal/fbe8dc/BFAD7B/double/3/fefce7/260/1/1/1/1/1/1/1/1/ | 200 OK Content-Length: 2026 Content-Type: text/html | clean |
http://www.hadithlib.com/ | 200 OK Content-Length: 35556 Content-Type: text/html | clean |
http://www.hadithlib.com/users/add | 200 OK Content-Length: 29973 Content-Type: text/html | clean |
http://www.hadithlib.com/comments | 200 OK Content-Length: 31722 Content-Type: text/html | clean |
http://www.hadithlib.com/about | 200 OK Content-Length: 27748 Content-Type: text/html | clean |
http://www.hadithlib.com/contact_us | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 09 Jan 2015 04:53:52 GMT Location: http://www.hadithlib.com/app/webroot/contact_us/ Server: LiteSpeed Content-Length: 413 Content-Type: text/html | clean |
http://www.hadithlib.com/app/webroot/contact_us/ | 200 OK Content-Length: 8743 Content-Type: text/html | clean |
http://www.hadithlib.com/app/webroot/contact_us/post.js | 200 OK Content-Length: 2481 Content-Type: application/javascript | clean |
http://www.hadithlib.com/Posts | 200 OK Content-Length: 35520 Content-Type: text/html | clean |