Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=theory.ipm.ac.ir
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://theory.ipm.ac.ir/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://theory.ipm.ac.ir/ | 200 OK Content-Length: 12588 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.ipm.ac.ir ...[667 bytes skipped]... asis, WITHOUT WARRANTY OF ANY KIND, either express or implied. * ***** END LICENSE BLOCK ***** --> <meta http-equiv="Content-Type" content="text/html;charset=utf-8"> <title>IPM Mail Log In</title> <meta name="viewport" content="width=device-width; initial-scale=1.0; maximum-scale=8.0; user-scalable=1;"> <meta name="description" content="http://www.ipm.ac.ir"> <link rel="stylesheet" type="text/css" href="/zimbra/css/common,login,zhtml,skin.css?skin=beach&v=100820053050"> <link rel="SHORTCUT ICON" href="/zimbra/img/logo/favicon.ico"> </head> <body onload="onLoad();"> <table width="100%" style="height:100%;"> <tr> <td align="center" valign="middle"> <div id="ZloginPanel" > ...[3315 bytes skipped]... | ||
http://theory.ipm.ac.ir/test404page.js | 404 Not Found Content-Length: 1218 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.ipm.ac.ir <app:skinAndRedirect /> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <meta http-equiv="Content-Type" content="text/html;charset=utf-8"> <title>404 - Not Found</title> <meta name="viewport" content="width=320; initial-scale=1.0; maximum-scale=8.0; user-scalable=1;"> <meta name="description" content="http://www.ipm.ac.ir"> <link rel="stylesheet" type="text/css" href="/zimbra/css/common,login,zhtml,skin.css?skin=&v=100820053050"> <link rel="SHORTCUT ICON" href="/zimbra/img/logo/favicon.ico"> </head> <body> <p><br><br></p><p><br><br></p> <table width="100%"><tr><td align="center"> <div id="ZloginPanel"> <ta ...[827 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: theory.ipm.ac.ir
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Connection: close
Date: Tue, 09 Sep 2014 12:38:25 GMT
Pragma: no-cache
Content-Language: en-US
Content-Type: text/html; charset=utf-8
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: ZM_TEST=true
GET / HTTP/1.1
Host: theory.ipm.ac.ir
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Connection: close
Date: Tue, 09 Sep 2014 12:38:25 GMT
Pragma: no-cache
Content-Language: en-US
Content-Type: text/html; charset=utf-8
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Set-Cookie: ZM_TEST=true
Second query (visit from search engine):
GET / HTTP/1.1
Host: theory.ipm.ac.ir
Referer: http://www.google.com/search?q=theory.ipm.ac.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: theory.ipm.ac.ir
Referer: http://www.google.com/search?q=theory.ipm.ac.ir
Result:
The result is similar to the first query. There are no suspicious redirects found.