DNS & HTTP Analysis for bing.com

Processing Domain bing.com on 29/03/2019 15:52:30


  • This tool is available free to use at GENSupport
  • Help and Support for your DNS or HTTP issues available on our Forum
  • The version that produced this report is 1.004b

Processing DNS Records

Basic Checks

Here we check the basic functioning and security of your DNS

  • Zone Queries 6 Record Types and 13 Records Found
  • Zone Transfer Failed
  • Zone Dump
    • TXT
      • _dmarc.bing.com. TTL 3600 "v=DMARC1; p=none; rua=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it.;ruf=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it.;fo=1:s:d"
      • bing.com. TTL 3600 "facebook-domain-verification=09yg8uzcfnqnlqekzsbwjxyy8rdck7"
      • bing.com. TTL 3600 "v=msv1 t=6097A7EA-53F7-4028-BA76-6869CB284C54"
      • bing.com. TTL 3600 "v=spf1 include:spf.protection.outlook.com -all"
    • A
      • bing.com. TTL 3600 13.107.21.200
      • bing.com. TTL 3600 204.79.197.200
    • AAAA
      • bing.com. TTL 3600 2620:1ec:c11:0:0:0:0:200
    • MX
      • bing.com. TTL 3600 10 bing-com.mail.protection.outlook.com.
    • NS
      • bing.com. TTL 3600 ns1-204.azure-dns.com.
      • bing.com. TTL 3600 ns2-204.azure-dns.net.
      • bing.com. TTL 3600 ns3-204.azure-dns.org.
      • bing.com. TTL 3600 ns4-204.azure-dns.info.
    • CNAME
      • www.bing.com. TTL 60 a-0001.a-afdentry.net.trafficmanager.net.

Nameservers

Here we check the setup of your nameservers. All nameservers on your domain should be listed in the zone and returned in an ANY query along with corresponding A and/or AAAA records resolving their address.

  • ns1-204.azure-dns.com 40.90.4.204 Found and Match. ( Missing from Zone Address Records )
  • ns2-204.azure-dns.net 64.4.48.204 Found and Match. ( Missing from Zone Address Records )
  • ns3-204.azure-dns.org 13.107.24.204 Found and Match. ( Missing from Zone Address Records )
  • ns4-204.azure-dns.info 13.107.160.204 Found and Match. ( Missing from Zone Address Records )

Processing TXT Records

DMARC Record:

The DMARC Record defines how MTA's should response when parsing DKIM and SPF records

  • v=dmarc1 (The Version of this record)
  • p=none (The Policy to implement on FAIL)
  • rua=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it. (Reporting URI of aggregate reports)
  • ruf=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it. (Reporting URI for forensic reports)
  • fo=1:s:d (Dictates what type of authentication/alignment vulnerabilities are reported)

Facebook Domain Verification Record:

This record is used by Facebook to validate domain ownership when creating company pages

  • facebook-domain-verification=09yg8uzcfnqnlqekzsbwjxyy8rdck7

Unknown Record:

We cannot identify this record. If you know what it is and its no longer needed then remove it

  • v=msv1 t=6097a7ea-53f7-4028-ba76-6869cb284c54

SPF Record:

The SPF Record defines which IP addresses are permitted to send email on this domain's behalf

  • v=spf1 (The SPF Format Version Number)
  • include:spf.protection.outlook.com (The SPF Record listed here should be used - Additional look-ups required)
  • -all (Permit servers listed in A records - Not a great idea)

Processing MX (Mail Exchanger) Records

These Records determine the servers (mail servers) responsible for handling your incomming email. Each service is given a priority and they will be used in that order. If all the priorities are the same then they will be used in a round-robin fashion

  • Priority 10 handled by host bing-com.mail.protection.outlook.com. [104.47.53.36] Valid
    • Email Handled By Microsoft Corporation
    • Port 25 (smtp) : Open

Processing CNAME (Alias) Records

These records are aliases making one hostname relate to another. These are often used to match hosts back to clusters or internal referencs that may change.

  • www.bing.com. a-0001.a-afdentry.net.trafficmanager.net.

Processing A (IPv4 Address) Records

These records define the IP Addresse(s) of the servers responsible for hosting your webiste and other resouces on your domain. The www record is the most common one and will be used to identify your website address

  • Host: bing.com. = IP: [13.107.21.200] Valid Reachable (14.285ms)
  • Host: bing.com. = IP: [204.79.197.200] Valid Reachable (13.149ms)

Processing AAAA (IPv6 Address) Records

These records define the IP Addresse(s) of the servers responsible for hosting your webiste and other resouces on your domain

  • Host: bing.com. = IP: [2620:1ec:c11:0:0:0:0:200] Valid

Processing Domain Public Records

    Domain Name WHOIS Information - bing.com

    • Domain Name BING.COM
    • Registry Domain ID 49639_DOMAIN_COM-VRSN
    • Registrar WHOIS Server whois.markmonitor.com
    • Registrar URL: http://www.markmonitor.com
    • Updated Date: 2019-01-03T15:57:01Z
    • Creation Date: 1996-01-29T05:00:00Z
    • Registry Expiry Date: 2020-01-30T05:00:00Z
    • Registrar MarkMonitor Inc.
    • Registrar IANA ID 292
    • Registrar Abuse Contact Email This email address is being protected from spambots. You need JavaScript enabled to view it.
    • Registrar Abuse Contact Phone +1.2083895740
    • Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
    • Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
    • Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
    • Domain Status: serverDeleteProhibited https://icann.org/epp#serverDeleteProhibited
    • Domain Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited
    • Domain Status: serverUpdateProhibited https://icann.org/epp#serverUpdateProhibited
    • Name Server NS1.MSEDGE.NET
    • Name Server NS2.MSEDGE.NET
    • Name Server NS3-204.AZURE-DNS.ORG
    • Name Server NS4-204.AZURE-DNS.INFO
    • DNSSEC unsigned
    • URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/

    Website Hosting WHOIS Information - 13.107.21.200

    • NetRange 13.64.0.0 - 13.107.255.255
    • CIDR 13.104.0.0/14, 13.64.0.0/11, 13.96.0.0/13
    • NetHandle NET-13-64-0-0-1
    • Parent NET13 (NET-13-0-0-0-0)
    • NetType Direct Assignment
    • OriginAS
    • Organization Microsoft Corporation (MSFT)
    • RegDate 2015-03-26
    • Updated 2015-03-26
    • Ref: https://rdap.arin.net/registry/ip/13.64.0.0
    • OrgName Microsoft Corporation
    • OrgId MSFT
    • Address One Microsoft Way
    • City Redmond
    • StateProv WA
    • PostalCode 98052
    • Country US
    • RegDate 1998-07-09
    • Updated 2017-01-28
    • Ref: https://rdap.arin.net/registry/entity/MSFT
    • OrgAbuseHandle MAC74-ARIN
    • OrgAbuseName Microsoft Abuse Contact
    • OrgAbusePhone +1-425-882-8080
    • OrgAbuseEmail This email address is being protected from spambots. You need JavaScript enabled to view it.
    • OrgAbuseRef: https://rdap.arin.net/registry/entity/MAC74-ARIN
    • OrgTechHandle MRPD-ARIN
    • OrgTechName Microsoft Routing, Peering, and DNS
    • OrgTechPhone +1-425-882-8080
    • OrgTechEmail This email address is being protected from spambots. You need JavaScript enabled to view it.
    • OrgTechRef: https://rdap.arin.net/registry/entity/MRPD-ARIN

Processing Website

    Website Headers for www.bing.com

    We will obtain the headers from your website and parse them for validity

    • Web Server Header is Missing
    • Request Response HTTP/1.1 200 OK OK
    • SSL is available and enabled
      • Certificate Name /CN=www.bing.com
      • Certificate Issued To
        • Country
        • City
        • Locality
        • Organisation
        • Certificate Scope www.bing.com
        Certificate Issuer
        • Country US
        • Organisation Microsoft Corporation
        • Certificate Scope Microsoft IT TLS CA 5
        Certificate Validity
        • Valid From 170720174708Z
        • Valid To 190710174708Z
        Certificate Ciphers
        • SN RSA-SHA256
        • LN sha256WithRSAEncryption
        Certificate Extensions
        • Alternative Hostnames DNS:www.bing.com, DNS:dict.bing.com.cn, DNS:*.platform.bing.com, DNS:*.bing.com, DNS:bing.com, DNS:ieonline.microsoft.com, DNS:*.windowssearch.com, DNS:cn.ieonline.microsoft.com, DNS:*.origin.bing.com, DNS:*.mm.bing.net, DNS:*.api.bing.com, DNS:ecn.dev.virtualearth.net, DNS:*.cn.bing.net, DNS:*.cn.bing.com, DNS:ssl-api.bing.com, DNS:ssl-api.bing.net, DNS:*.api.bing.net, DNS:*.bingapis.com, DNS:bingsandbox.com, DNS:feedback.microsoft.com, DNS:insertmedia.bing.office.net, DNS:r.bat.bing.com, DNS:*.r.bat.bing.com, DNS:*.dict.bing.com.cn, DNS:*.dict.bing.com, DNS:*.ssl.bing.com, DNS:*.appex.bing.com, DNS:*.platform.cn.bing.com, DNS:wp.m.bing.com, DNS:*.m.bing.com, DNS:global.bing.com, DNS:windowssearch.com, DNS:search.msn.com, DNS:*.bingsandbox.com, DNS:*.api.tiles.ditu.live.com, DNS:*.ditu.live.com, DNS:*.t0.tiles.ditu.live.com, DNS:*.t1.tiles.ditu.live.com, DNS:*.t2.tiles.ditu.live.com, DNS:*.t3.tiles.ditu.live.com, DNS:*.tiles.ditu.live.com, DNS:3d.live.com, DNS:api.search.live.com, DNS:beta.search.live.com, DNS:cnweb.search.live.com, DNS:dev.live.com, DNS:ditu.live.com, DNS:farecast.live.com, DNS:image.live.com, DNS:images.live.com, DNS:local.live.com.au, DNS:localsearch.live.com, DNS:ls4d.search.live.com, DNS:mail.live.com, DNS:mapindia.live.com, DNS:local.live.com, DNS:maps.live.com, DNS:maps.live.com.au, DNS:mindia.live.com, DNS:news.live.com, DNS:origin.cnweb.search.live.com, DNS:preview.local.live.com, DNS:search.live.com, DNS:test.maps.live.com, DNS:video.live.com, DNS:videos.live.com, DNS:virtualearth.live.com, DNS:wap.live.com, DNS:webmaster.live.com, DNS:webmasters.live.com, DNS:www.local.live.com.au, DNS:www.maps.live.com.au
        • Key Usage TLS Web Client Authentication, TLS Web Server Authentication
    • There was no redirection
    • Valid methods for a specified resource (Allow) Missing
    • Control options for the current connection (Connection) Missing
    • Specifies Technology in use (X-Powered-By) Missing
    • Security Related

      • modifies the algorithm used to populate the Referer header (Referrer-Policy) Missing
      • stops pages when they detect XSS (X-XSS-Protection) Missing
      • Allow and Deny the use of browser features (Feature-Policy) Missing
      • Platform for Privacy Preferences (P3P) : CP="NON UNI COM NAV STA LOC CURa DEVa PSAa PSDa OUR IND"

      Cross Origin Resource Sharing

      • (Access-Control-Allow-Origin) Missing
      • (Access-Control-Allow-Credentials) Missing
      • (Access-Control-Expose-Headers) Missing
      • (Access-Control-Max-Age) Missing
      • (Access-Control-Allow-Methods) Missing
      • (Access-Control-Allow-Headers) Missing

      Content Headers

      • The natural language or languages of the intended audience (Content-Language) Missing
      • The form of encoding used (Transfer-Encoding) Missing
      • The length of the response body (Content-Length) : 110262
      • The Media type of the body of the request (Content-Type) : text/html; charset=utf-8
      • The date and time of generation (Date) : Fri, 29 Mar 2019 15:48:51 GMT
      • An opportunity to raise a File Download dialogue box (Content-Disposition) Missing
      • The type of encoding used on the data (Content-Encoding) Missing
      • An alternate location for the returned data (Content-Location) Missing
      • Where in a full body message this partial message belongs (Content-Range) Missing
      • An identifier for a specific version of a resource (ETag) Missing
      • how to match future request headers (Vary) : Accept-Encoding

      Caching Control

      • Tells caches whether they may cache this object (Cache-Control) : private, max-age=0
      • Gives the date/time after which the response is considered stale (Expires) Missing
      • The last modified date for the requested object (Last-Modified) Missing
      • Implementation-specific fields for caching (Pragma) Missing
      • From an Intermediate cache (X-Cache-Action) Missing
      • Intermediate Cache Hits count (X-Cache-Hits) Missing
      • Intermediate Cache Age (X-Cache-Age) Missing
      • Informs the client of proxies through which the response was sent (Via) Missing
      • The Age this page has been cached in a proxy (Age) Missing

      Strict Transport Security (HSTS) Policy

      • A HSTS Policy for the client with scope (Strict-Transport-Security) Missing

      Cookies and Fragments

      • Cookie Data (Set-Cookie) : MUIDB=3A7445764B566B6E3FD148584A166A64; path=/; httponly; expires=Wed, 22-Apr-2020 15:48:51 GMT

      Robots.txt

      • You have a robots.txt file and it appears to be valid
        • Allow Entries (1) - Specific Allow
          • /th?
        • Disallow Entries (71) - Specific Disallow
          • /
          • /account/
          • /amp/
          • /bfp/search
          • /bing-site-safety
          • /blogs/search/
          • /entities/search
          • /fd/
          • /history
          • /hotels/search
          • /images?
          • /images/search?
          • /images/search/?
          • /images/searchbyimage
          • /local
          • /maps/adsendpoint
          • /notifications/
          • /offers/proxy/dealsserver/api/log
          • /offers/proxy/dealsserver/buy
          • /ping
          • /profile/history?
          • /profile/history?
          • /proxy.ashx
          • /results
          • /rewardsapp/
          • /search
          • /search
          • /settings
          • /shenghuo
          • /shop$
          • /shop?
          • /shop/
          • /social/search?
          • /spbasic
          • /spresults
          • /static/
          • /th?
          • /th$
          • /translator/?ref=
          • /travel/css
          • /travel/flight/flightsearch
          • /travel/flight/flightsearchaction
          • /travel/flight/search?
          • /travel/flight/search/?
          • /travel/hotel/hotelminisearchrequest
          • /travel/hotel/hotelsearch
          • /travel/hotels/search?
          • /travel/hotels/search/?
          • /travel/scripts
          • /travel/secure
          • /url
          • /videos?
          • /videos/?
          • /videos/search?
          • /videos/search/?
          • /widget/cr
          • /widget/entity/search/?
          • /widget/render
          • /widget/snapshot
          • /work
          • /academic/search
          • /academic/profile
          • /fun/g/
          • /fun/api/
          • /merchant/reviews?
          • /product/reviews?
          • /hotel/reviews?
          • /hpm
          • /hpmob
          • /hpimagearchive.aspx
        • Sitemap Entries (6) - Sitemaps
          • http://cn.bing.com/dict/sitemap-index.xml
          • http://cached.blob.core.windows.net/tmp/sitemap_all_v2.xml
          • https://www.bing.com/api/maps/mapcontrol/isdk/sitemap.xml
          • https://www.bing.com/travelguide/sitemaps/sitemap.xml
          • https://www.bing.com/maps/sitemap.xml
          • https://bingknowsblob.blob.core.windows.net/bingknows/sitemaps/sitemapindex.xml.gz
        • Other Entries (3)
          • user-agent: msnbot-media
          • user-agent: twitterbot
          • user-agent: *

Processing Website Profile Data

    Website Render for www.bing.com

    Technology Profile bing.com

    We will check for fingerprints of common website technologies

      • Failed to succesfully profile the website, it is likely either custom or plain HTML.

    Meta Profile http://www.bing.com/

    We will check the entire body for metadata

    • theme-color : #4F4F4F
    • description : Bing helps you turn information into action, making it faster and easier to go from searching to doing.
    • robots : NOODP

    Feature Profile http://www.bing.com/

    We will check for common HTML, Javascript and CSS Features

    • DocType html (110227)
    • Document Validated No
    • Tawk.to No
    • FontAwesome No
    • Google Web Fonts No
    • T3 Framework No
    • Google Structured Data No
    • Google Analytics No
    • Mamoto Analytics No
    • JQuery No
    • RequireJS No
    • jQuery No

Processing Completed

    The process is now completed and the results are shown above. Please take a moment to consider each test and its response. DNS, SMTP and HTTP are not simple protocols and it is way beyond the scope of this tool to suggest improvements, but you are welcome to request assistance via our Forum.