Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: obraprima.net.br
Result:
GET / HTTP/1.1
Host: obraprima.net.br
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: obraprima.net.br
Referer: http://www.google.com/search?q=obraprima.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: obraprima.net.br
Referer: http://www.google.com/search?q=obraprima.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.obraprima.net.br/ | HTTP/1.1 301 Moved Permanently Cache-Control: private Date: Thu, 05 Mar 2015 00:13:50 GMT Location: http://www.bfcbr.com.br/ Content-Length: 0 Set-Cookie: visitorDeviceClass=desktop; path=/ | clean |
http://www.bfcbr.com.br/ | 200 OK Content-Length: 36588 Content-Type: text/html | clean |
http://www.bfcbr.com.br/scripts/jquery-1.8.3.min.js | 200 OK Content-Length: 94115 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/fc-1.js | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:12:53 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/fc-1.js Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/fc-1.js | 200 OK Content-Length: 470 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/CatalystScripts/Java_Box.js?vs=b2467.r447609 | 200 OK Content-Length: 4072 Content-Type: application/x-javascript | clean |
http://www.jscache.com/wejs?wtype=selfserveprop&uniq=987&locationId=4403795&lang=pt&rating=true&nreviews=2&writereviewlink=false&popIdx=false&iswide=true&border=false&langversion=2 | 200 OK Content-Length: 234 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/museutils.js?4004241294 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:12:55 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/museutils.js?4004241294 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/museutils.js?4004241294 | 200 OK Content-Length: 32443 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/jquery.musemenu.js?4009181048 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:12:56 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/jquery.musemenu.js?4009181048 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/jquery.musemenu.js?4009181048 | 200 OK Content-Length: 5803 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/webpro.js?420478120 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:12:57 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/webpro.js?420478120 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/webpro.js?420478120 | 200 OK Content-Length: 45142 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/musewpslideshow.js?480958572 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:12:58 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/musewpslideshow.js?480958572 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/musewpslideshow.js?480958572 | 200 OK Content-Length: 16979 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/jquery.museoverlay.js?184401257 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:12:59 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/jquery.museoverlay.js?184401257 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/jquery.museoverlay.js?184401257 | 200 OK Content-Length: 4376 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/touchswipe.js?60020316 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:13:00 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/touchswipe.js?60020316 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/touchswipe.js?60020316 | 200 OK Content-Length: 4844 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/scripts/jquery.watch.js?172956391 | HTTP/1.1 301 Moved Permanently Cache-Control: private Connection: keep-alive Date: Thu, 05 Mar 2015 00:13:01 GMT Accept-Ranges: bytes Location: http://www.bfcbr.com.br/scripts/jquery.watch.js?172956391 Content-Length: 0 | clean |
http://www.bfcbr.com.br/scripts/jquery.watch.js?172956391 | 200 OK Content-Length: 1295 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/index.html | HTTP/1.1 301 Moved Permanently Cache-Control: private Date: Thu, 05 Mar 2015 00:14:03 GMT Location: http://www.bfcbr.com.br/index.html Content-Length: 0 Set-Cookie: visitorDeviceClass=desktop; path=/ | clean |
http://www.bfcbr.com.br/index.html | 200 OK Content-Length: 36588 Content-Type: text/html | clean |
http://www.bfcbr.com.br/CatalystScripts/Java_Box.js?vs=b2467.r447609 | 200 OK Content-Length: 4072 Content-Type: application/x-javascript | clean |
http://www.obraprima.net.br/sobre.html | HTTP/1.1 301 Moved Permanently Cache-Control: private Date: Thu, 05 Mar 2015 00:14:03 GMT Location: http://www.bfcbr.com.br/sobre.html Content-Length: 0 Set-Cookie: visitorDeviceClass=desktop; path=/ | clean |
http://www.bfcbr.com.br/sobre.html | 200 OK Content-Length: 35182 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=obraprima.net.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://obraprima.net.br/
Result: obraprima.net.br is not infected or malware details are not published yet.
Result: obraprima.net.br is not infected or malware details are not published yet.