Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: portalpopular.org.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Sep 2014 11:00:29 GMT
Accept-Ranges: bytes
ETag: "da88b9f-33-4e2ed527ea280"
Server: Apache
Vary: Accept-Encoding
Content-Length: 51
Content-Type: text/html
Last-Modified: Fri, 02 Aug 2013 02:00:26 GMT
...51 bytes of data.
GET / HTTP/1.1
Host: portalpopular.org.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Sep 2014 11:00:29 GMT
Accept-Ranges: bytes
ETag: "da88b9f-33-4e2ed527ea280"
Server: Apache
Vary: Accept-Encoding
Content-Length: 51
Content-Type: text/html
Last-Modified: Fri, 02 Aug 2013 02:00:26 GMT
...51 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: portalpopular.org.br
Referer: http://www.google.com/search?q=portalpopular.org.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: portalpopular.org.br
Referer: http://www.google.com/search?q=portalpopular.org.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://portalpopular.org.br/ | HTTP/1.1 200 OK Connection: close Date: Thu, 25 Sep 2014 11:00:29 GMT Accept-Ranges: bytes ETag: "da88b9f-33-4e2ed527ea280" Server: Apache Vary: Accept-Encoding Content-Length: 51 Content-Type: text/html Last-Modified: Fri, 02 Aug 2013 02:00:26 GMT | clean |
http://portalpopular.org.br/joomla | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Sep 2014 11:00:30 GMT Location: http://portalpopular.org.br/joomla/ Server: Apache Vary: Accept-Encoding Content-Length: 243 Content-Type: text/html; charset=iso-8859-1 | clean |
http://portalpopular.org.br/joomla/ | 200 OK Content-Length: 9982 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://portalpopular.org.br/joomla/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://portalpopular.org.br/joomla/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://portalpopular.org.br/joomla/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://portalpopular.org.br/joomla/index.php/quem-somos | 200 OK Content-Length: 14085 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/ | 200 OK Content-Length: 9992 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/africa | 200 OK Content-Length: 8957 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina | 200 OK Content-Length: 14105 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina/argentina | 200 OK Content-Length: 11698 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina/ | 200 OK Content-Length: 14106 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina/bolivia | 200 OK Content-Length: 11573 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina/chile | 200 OK Content-Length: 10101 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina/colombia | 200 OK Content-Length: 10116 Content-Type: text/html | clean |
http://portalpopular.org.br/joomla/index.php/america-latina/cuba | 200 OK Content-Length: 10096 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=portalpopular.org.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://portalpopular.org.br/
Result: portalpopular.org.br is not infected or malware details are not published yet.
Result: portalpopular.org.br is not infected or malware details are not published yet.