Scanned pages/files
Request | Server response | Status |
http://redic.ir/ | 200 OK Content-Length: 26674 Content-Type: text/html | clean |
http://redic.ir/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/javascript | clean |
http://redic.ir/catalog/view/javascript/jquery/ui/jquery-ui-1.8.16.custom.min.js | 200 OK Content-Length: 210463 Content-Type: application/javascript | clean |
http://redic.ir/catalog/view/javascript/jquery/ui/external/jquery.cookie.js | 200 OK Content-Length: 3655 Content-Type: application/javascript | clean |
http://redic.ir/catalog/view/javascript/common.js | 200 OK Content-Length: 5175 Content-Type: application/javascript | clean |
http://redic.ir/catalog/view/theme/lexus_store/javascript/common.js | 200 OK Content-Length: 8571 Content-Type: application/javascript | suspicious |
Page code contains blacklisted domain: coveroverflow.com ...[150 bytes skipped]... ses/mit-license.php * * Copyright 2013, Codrops * http://www.codrops.com */ var SidebarMenuEffects = (function() { function hasParentClass( e, classname ) { if(e === document) return false; if( classie.has( e, classname ) ) { return true; } return e.parentNode && hasParentClass( e.parentNode, classname ); } // http://coveroverflow.com/a/11381730/989439 function mobilecheck() { var check = false; (function(a){if(/(android|ipad|playbook|silk|bb\d+|meego).+mobile|avantgo|bada\/|blackberry|blazer|compal|elaine|fennec|hiptop|iemobile|ip(hone|od)|iris|kindle|lge |maemo|midp|mmp|netfront|opera m(ob|in)i|palm( os)?|phone|p(ixi|re)\/|plucker|pocket|psp|series(4|6)0|symbian|treo|up\.(browser|link)|vodafone|wap|windows (ce|phone)|xda|xiino/i.test(a)||/1207|6310|6590|3gso|4thp|50[1-6]i|770 ...[3263 bytes skipped]... | ||
http://redic.ir/catalog/view/javascript/jquery/bootstrap/bootstrap.min.js | 200 OK Content-Length: 27242 Content-Type: application/javascript | clean |
http://redic.ir/catalog/view/javascript/jquery/colorbox/jquery.colorbox-min.js | 200 OK Content-Length: 9517 Content-Type: application/javascript | clean |
http://redic.ir/index.php?route=account/account | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 31 Oct 2014 17:16:19 GMT Pragma: no-cache Location: http://redic.ir/index.php?route=account/login Server: nginx admin Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=08fb8c37ba9fe7c7d998a006521d24ed; path=/; HttpOnly Set-Cookie: language=fa; expires=Sun, 30-Nov-2014 17:16:19 GMT; path=/; domain=redic.ir Set-Cookie: currency=RLS; expires=Sun, 30-Nov-2014 17:16:19 GMT; path=/; domain=redic.ir X-Powered-By: PHP/5.4.34 | clean |
http://redic.ir/index.php?route=account/login | 200 OK Content-Length: 17875 Content-Type: text/html | clean |
http://redic.ir/index.php?route=account/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 16867 Content-Type: text/html | clean |
http://redic.ir/index.php?route=account/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 16991 Content-Type: text/html | clean |
http://redic.ir/index.php?route=account/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 17115 Content-Type: text/html | clean |
http://redic.ir/index.php?route=account/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 17239 Content-Type: text/html | clean |
http://redic.ir/index.php?route=account/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 17363 Content-Type: text/html | clean |
http://redic.ir/index.php?route=account/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/catalog/view/javascript/jquery/jquery-1.7.1.min.js | 200 OK Content-Length: 17487 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: redic.ir
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=0, no-cache
Connection: close
Date: Fri, 31 Oct 2014 17:16:16 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Length: 26674
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=17f6703e1545d7e08d9a5a08f2183af3; path=/; HttpOnly
Set-Cookie: language=fa; expires=Sun, 30-Nov-2014 17:16:15 GMT; path=/; domain=redic.ir
Set-Cookie: currency=RLS; expires=Sun, 30-Nov-2014 17:16:15 GMT; path=/; domain=redic.ir
X-Cache: HIT from Backend
X-Mod-Pagespeed: 1.3.25.4-2941
X-Powered-By: PHP/5.4.34
...26674 bytes of data.
GET / HTTP/1.1
Host: redic.ir
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=0, no-cache
Connection: close
Date: Fri, 31 Oct 2014 17:16:16 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Length: 26674
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=17f6703e1545d7e08d9a5a08f2183af3; path=/; HttpOnly
Set-Cookie: language=fa; expires=Sun, 30-Nov-2014 17:16:15 GMT; path=/; domain=redic.ir
Set-Cookie: currency=RLS; expires=Sun, 30-Nov-2014 17:16:15 GMT; path=/; domain=redic.ir
X-Cache: HIT from Backend
X-Mod-Pagespeed: 1.3.25.4-2941
X-Powered-By: PHP/5.4.34
...26674 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: redic.ir
Referer: http://www.google.com/search?q=redic.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: redic.ir
Referer: http://www.google.com/search?q=redic.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=redic.ir
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://redic.ir/
Result: redic.ir is not infected or malware details are not published yet.
Result: redic.ir is not infected or malware details are not published yet.