Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bestportalmm.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bestportalmm.org/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bestportalmm.org
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=259200
Connection: close
Date: Thu, 17 Jul 2014 00:24:23 GMT
Pragma: no-cache
Server: nginx/1.0.14
Content-Length: 5164
Content-Type: text/html; charset=utf-8
Expires: Sun, 20 Jul 2014 00:24:23 GMT
Set-Cookie: PHPSESSID=p1ejh7d4n1kphl6r3r21c3ugt7; path=/
Set-Cookie: s717=1%3A1%3A%3A%3A; expires=Fri, 18-Jul-2014 00:24:23 GMT; path=/
Set-Cookie: ip=78.158.11.226; expires=Fri, 18-Jul-2014 00:24:23 GMT; path=/
X-Powered-By: PHP/5.3.10
...5164 bytes of data.
GET / HTTP/1.1
Host: bestportalmm.org
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=259200
Connection: close
Date: Thu, 17 Jul 2014 00:24:23 GMT
Pragma: no-cache
Server: nginx/1.0.14
Content-Length: 5164
Content-Type: text/html; charset=utf-8
Expires: Sun, 20 Jul 2014 00:24:23 GMT
Set-Cookie: PHPSESSID=p1ejh7d4n1kphl6r3r21c3ugt7; path=/
Set-Cookie: s717=1%3A1%3A%3A%3A; expires=Fri, 18-Jul-2014 00:24:23 GMT; path=/
Set-Cookie: ip=78.158.11.226; expires=Fri, 18-Jul-2014 00:24:23 GMT; path=/
X-Powered-By: PHP/5.3.10
...5164 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bestportalmm.org
Referer: http://www.google.com/search?q=bestportalmm.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bestportalmm.org
Referer: http://www.google.com/search?q=bestportalmm.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://bestportalmm.org/ | 200 OK Content-Length: 5164 Content-Type: text/html | clean |
http://bestportalmm.org/?page=control | 200 OK Content-Length: 3060 Content-Type: text/html | clean |
http://bestportalmm.org/portal/skins/js/jquery-1.7.2.min.js | 200 OK Content-Length: 94840 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/portal/skins/js/jquery-ui-1.8.23.custom.min.js | 200 OK Content-Length: 61960 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/content/js/format_number.js | 200 OK Content-Length: 5947 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/test404page.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://bestportalmm.org/portal/rules.php | 200 OK Content-Length: 21187 Content-Type: text/html | clean |
http://bestportalmm.org/?page=activate | 200 OK Content-Length: 4667 Content-Type: text/html | clean |
http://bestportalmm.org/?page=mail | 200 OK Content-Length: 2131 Content-Type: text/html | clean |
http://bestportalmm.org/realmens/ | 200 OK Content-Length: 7427 Content-Type: text/html | clean |
http://bestportalmm.org/realmens//skins/default/js/jquery-1.7.2.min.js | 200 OK Content-Length: 94840 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/realmens//skins/default/js/jquery-ui-1.8.23.custom.min.js | 200 OK Content-Length: 61960 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/realmens//skins/default/js/jquery.cookie.js | 200 OK Content-Length: 1941 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/realmens//skins/default/js/jquery.uniform.min.js | 200 OK Content-Length: 9323 Content-Type: application/x-javascript | clean |
http://bestportalmm.org/realmens//skins/default/js/jquery.form.js | 200 OK Content-Length: 22329 Content-Type: application/x-javascript | clean |