Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dragon.net.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dragon.net.br/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://dragon.net.br/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 25 Feb 2015 01:44:47 GMT Location: http://www.dragon.net.br/portal Server: Apache Vary: Accept-Encoding Content-Length: 302 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.dragon.net.br/portal | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 25 Feb 2015 01:44:48 GMT Location: http://www.dragon.net.br/portal/ Server: Apache Vary: Accept-Encoding Content-Length: 307 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.dragon.net.br/portal/ | 200 OK Content-Length: 33192 Content-Type: text/html | clean |
http://www.dragon.net.br/portal/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://dragon.net.br/portal/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://dragon.net.br/portal/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://dragon.net.br/portal/media/system/js/modal.js | 200 OK Content-Length: 9732 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7/jquery.min.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://ajax.aspnetcdn.com/ajax/jquery.migrate/jquery-migrate-none.min.js | 404 Not Found Content-Length: 57002 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 style: hidden src: http://www.microsoft.com/library/errorpages/searchmetric.html?form=mserro&q= <iframe src="http://www.microsoft.com/library/errorpages/searchmetric.html?form=mserro&q=" id="becaonframe" height="1px" width="1px" frameborder="0" scrolling="no" style="visibility:hidden""> | ||
http://ajax.aspnetcdn.com/Scripts/wt_capi.js | 404 Not Found Content-Length: 57002 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 style: hidden src: http://www.microsoft.com/library/errorpages/searchmetric.html?form=mserro&q= <iframe src="http://www.microsoft.com/library/errorpages/searchmetric.html?form=mserro&q=" id="becaonframe" height="1px" width="1px" frameborder="0" scrolling="no" style="visibility:hidden""> | ||
http://ajax.aspnetcdn.com/Scripts/site.js | 404 Not Found Content-Length: 57002 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 style: hidden src: http://www.microsoft.com/library/errorpages/searchmetric.html?form=mserro&q= <iframe src="http://www.microsoft.com/library/errorpages/searchmetric.html?form=mserro&q=" id="becaonframe" height="1px" width="1px" frameborder="0" scrolling="no" style="visibility:hidden""> | ||
http://ajax.aspnetcdn.com/shared/core/2/js/js.ashx?c=oneMscomBlade | HTTP/1.1 302 Found Cache-Control: max-age=0, no-cache, no-store Connection: close Date: Wed, 25 Feb 2015 01:44:58 GMT Pragma: no-cache Location: http://www.microsoft.com/library/errorpages/smarterror.aspx?aspxerrorpath=http%3a%2f%2fwww.microsoft.com%2fresources%2fshared%2fcore%2f2%2fjs%2fjs.ashx%3fc%3doneMscomBlade Server: Microsoft-IIS/8.5 Content-Length: 322 Content-Type: text/html; charset=utf-8 Expires: Wed, 25 Feb 2015 01:44:58 GMT P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" VTag: 438338728200000000 X-CCC: SE X-CID: 2 X-Powered-By: ASP.NET X-Powered-By: ARR/2.5 X-Powered-By: ASP.NET | clean |
http://www.microsoft.com/library/errorpages/smarterror.aspx?aspxerrorpath=http%3a%2f%2fwww.microsoft.com%2fresources%2fshared%2fcore%2f2%2fjs%2fjs.ashx%3fc%3donemscomblade | 404 Not Found Content-Length: 57002 Content-Type: text/html | clean |
http://www.microsoft.com/Scripts/wt_capi.js | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0, no-cache, no-store Connection: close Date: Wed, 25 Feb 2015 01:44:59 GMT Pragma: no-cache Location: http://technet.microsoft.com/en-us/scriptcenter/bb410849.aspx Server: Microsoft-IIS/8.5 Content-Length: 184 Content-Type: text/html; charset=UTF-8 Expires: Wed, 25 Feb 2015 01:44:59 GMT P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" VTag: 791315425300000000 X-CCC: SE X-CID: 2 X-Powered-By: ASP.NET X-Powered-By: ARR/2.5 X-Powered-By: ASP.NET | clean |
http://technet.microsoft.com/en-us/scriptcenter/bb410849.aspx | HTTP/1.1 301 Moved Permanently Cache-Control: private, no-store Date: Wed, 25 Feb 2015 01:44:59 GMT Pragma: no-cache Location: https://technet.microsoft.com/en-us/scriptcenter/bb410849.aspx Server: Microsoft-IIS/8.0 Content-Length: 179 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Info: RPSMCRT-PA=ap ssl enforce; X-Instance: CO102 X-Instance: CO102 X-Powered-By: ASP.NET X-Powered-By: ARR/2.5 X-Powered-By: ASP.NET X-UA-Compatible: IE=edge | clean |
https://technet.microsoft.com/en-us/scriptcenter/bb410849.aspx | 200 OK Content-Length: 45502 Content-Type: text/html | clean |
https://ajax.aspnetcdn.com/ajax/jQuery/jquery-1.8.2.min.js | 200 OK Content-Length: 93436 Content-Type: application/x-javascript | clean |
https://i2-technet.sec.s-msft.com/Areas/Sto/Content/Scripts/jquery.partial.js | 200 OK Content-Length: 594 Content-Type: application/javascript | clean |
http://www.microsoft.com/Scripts/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0, no-cache, no-store Connection: close Date: Wed, 25 Feb 2015 01:45:02 GMT Pragma: no-cache Location: http://technet.microsoft.com/en-us/scriptcenter/bb410849.aspx Server: Microsoft-IIS/8.5 Content-Length: 184 Content-Type: text/html; charset=UTF-8 Expires: Wed, 25 Feb 2015 01:45:02 GMT P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" VTag: 438456326600000000 X-CCC: SE X-CID: 2 X-Powered-By: ASP.NET X-Powered-By: ARR/2.5 X-Powered-By: ASP.NET | clean |
http://technet.microsoft.com/test404page.js | 200 OK Content-Length: 0 | clean |
https://www.microsoft.com/en-us/projectsiena/default.aspx | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dragon.net.br
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 25 Feb 2015 01:44:47 GMT
Location: http://www.dragon.net.br/portal
Server: Apache
Vary: Accept-Encoding
Content-Length: 302
Content-Type: text/html; charset=iso-8859-1
...302 bytes of data.
GET / HTTP/1.1
Host: dragon.net.br
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 25 Feb 2015 01:44:47 GMT
Location: http://www.dragon.net.br/portal
Server: Apache
Vary: Accept-Encoding
Content-Length: 302
Content-Type: text/html; charset=iso-8859-1
...302 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: dragon.net.br
Referer: http://www.google.com/search?q=dragon.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dragon.net.br
Referer: http://www.google.com/search?q=dragon.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.