Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bestbabes.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bestbabes.org/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bestbabes.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 24 Sep 2014 17:22:28 GMT
Location: http://www.bestbabes.org/
Server: Apache/2.2.15 (CentOS)
Content-Length: 312
Content-Type: text/html; charset=iso-8859-1
...312 bytes of data.
GET / HTTP/1.1
Host: bestbabes.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 24 Sep 2014 17:22:28 GMT
Location: http://www.bestbabes.org/
Server: Apache/2.2.15 (CentOS)
Content-Length: 312
Content-Type: text/html; charset=iso-8859-1
...312 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bestbabes.org
Referer: http://www.google.com/search?q=bestbabes.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bestbabes.org
Referer: http://www.google.com/search?q=bestbabes.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://bestbabes.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 24 Sep 2014 17:22:28 GMT Location: http://www.bestbabes.org/ Server: Apache/2.2.15 (CentOS) Content-Length: 312 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.bestbabes.org/ | 200 OK Content-Length: 57396 Content-Type: text/html | clean |
http://www.bestbabes.org/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: text/javascript | clean |
http://www.bestbabes.org/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: text/javascript | clean |
http://www.bestbabes.org/wp-content/plugins/gd-star-rating/js/gdsr.js?ver=1.9.22 | 200 OK Content-Length: 8198 Content-Type: text/javascript | clean |
http://www.bestbabes.org/wp-content/themes/zeenews/includes/js/jquery.cycle.all.min.js?ver=4.0 | 200 OK Content-Length: 27450 Content-Type: text/javascript | clean |
http://ads.juicyads.com/jsclients/jam_min.js | 200 OK Content-Length: 21397 Content-Type: application/x-javascript | clean |
http://ads.juicyads.com/jsclients/jac.js | 200 OK Content-Length: 91344 Content-Type: application/x-javascript | clean |
http://adserver.juicyads.com/js/jfc.js | 200 OK Content-Length: 1197 Content-Type: application/x-javascript | clean |
http://adspaces.ero-advertising.com/adspace/257146.js | 200 OK Content-Length: 1775 Content-Type: application/javascript | clean |
http://ads.adxpansion.com/public/js/showads.php?zone_id=112910&ver=1&type=margin&position=left&site_alignment=center&site_width=1030 | 200 OK Content-Length: 14838 Content-Type: text/javascript | clean |
http://syndication.exoclick.com/ads.php?type=300x250&login=Malin&cat=97&search=&ad_title_color=0000cc&bgcolor=FFFFFF&border=0&border_color=000000&font=&block_keywords=&ad_text_color=000000&ad_durl_color=008000&adult=0&sub=&text_only=0&show_thumb=&idzone=627615&idsite=222325 | 200 OK Content-Length: 643 Content-Type: text/javascript | clean |
http://adspaces.ero-advertising.com/adspace/257145.js | 200 OK Content-Length: 1543 Content-Type: application/javascript | clean |
http://bestbabes.org//assets.pinterest.com/js/pinit.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 24 Sep 2014 17:22:36 GMT Location: http://www.bestbabes.org/assets.pinterest.com/js/pinit.js/ Server: Apache/2.2.15 (CentOS) Content-Length: 345 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.bestbabes.org/assets.pinterest.com/js/pinit.js/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 24 Sep 2014 17:22:37 GMT Pragma: no-cache Location: http://connexionsecure.com/go/gQ0i_bztSX/DEFAULT Server: Apache/2.2.15 (CentOS) Vary: Cookie Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Powered-By: PHP/5.4.32 | clean |
http://connexionsecure.com/go/gq0i_bztsx/default | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache Connection: close Date: Wed, 24 Sep 2014 17:23:40 GMT Location: http://connexionsecure.com/go/gq0i_bztsx/default/ Server: nginx Content-Type: text/html; charset=UTF-8 Set-Cookie: SERVERID=cm-web-lp3; path=/ X-Powered-By: PHP/5.4.32 | clean |
http://connexionsecure.com/go/gq0i_bztsx/default/ | HTTP/1.1 302 Found Cache-Control: must-revalidate, no-cache, no-store, post-check=0, pre-check=0, private Connection: close Date: Wed, 24 Sep 2014 17:23:40 GMT Location: /back?token=L_bqvyk&tracker=default Server: nginx Content-Type: text/html; charset=UTF-8 Set-Cookie: SERVERID=cm-web-lp1; path=/ X-Powered-By: PHP/5.4.32 | clean |
http://connexionsecure.com/back?token=l_bqvyk&tracker=default | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Date: Wed, 24 Sep 2014 17:23:41 GMT Location: http://asiafind.com/go/p301686.sub1.223.LT.5141.default?lang=chinese&show_lang=chinese&token=He4h_ouqB&tracker=default Server: nginx Content-Type: text/html; charset=UTF-8 Set-Cookie: PHPSESSID=9cdbgcumh39elp7sr8n8tojgp6; path=/ Set-Cookie: cr_UID=78.158.11.226820c60e4704b8583aa3d7abceaed4801; expires=Tue, 13-Sep-2016 17:23:41 GMT Set-Cookie: SERVERID=cm-web-lp6; path=/ X-Powered-By: PHP/5.4.32 | clean |
http://asiafind.com/go/p301686.sub1.223.lt.5141.default?lang=chinese&show_lang=chinese&token=he4h_ouqb&tracker=default | 200 OK Content-Length: 47894 Content-Type: text/html | clean |
http://graphics2.asiafind.com/images/common/js/jquery/jquery-1.5.1.min.js | 200 OK Content-Length: 85260 Content-Type: application/x-javascript | clean |
http://bestbabes.org/images/common/js/chinese_statedropdown_utf8.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 24 Sep 2014 17:22:41 GMT Location: http://www.bestbabes.org/images/common/js/chinese_statedropdown_utf8.js Server: Apache/2.2.15 (CentOS) Content-Length: 358 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.bestbabes.org/images/common/js/chinese_statedropdown_utf8.js | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 24 Sep 2014 17:22:42 GMT Pragma: no-cache Location: http://connexionsecure.com/go/gQ0i_bztSX/DEFAULT Server: Apache/2.2.15 (CentOS) Vary: Cookie Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Powered-By: PHP/5.4.32 | clean |
http://connexionsecure.com/test404page.js | 404 Not Found Content-Length: 2735 Content-Type: text/html | clean |