Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=terminal-b.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://terminal-b.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 08:15:27 GMT Location: http://www.terminal-b.org/cg/ Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4 Content-Length: 374 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.terminal-b.org/cg/ | 200 OK Content-Length: 73431 Content-Type: text/html | clean |
http://www.terminal-b.org//lib/javascript/gettext.js/ | 404 Not Found Content-Length: 484 Content-Type: text/html | clean |
http://www.terminal-b.org/test404page.js | 404 Not Found Content-Length: 472 Content-Type: text/html | clean |
http://www.terminal-b.org/lib/javascript/protoaculous-compressed.js | 200 OK Content-Length: 148270 Content-Type: application/javascript | clean |
http://www.terminal-b.org/lib/javascript/kusaba.js | 200 OK Content-Length: 19532 Content-Type: application/javascript | clean |
http://pu.plugrush.com/112n.js | 200 OK Content-Length: 3635 Content-Type: text/javascript | clean |
http://slider.plugrush.com/terminal-b.org/1lf9 | 200 OK Content-Length: 6035 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: terminal-b.org var jQueryScriptOutputted = false; var sliderIntervalId = 0; var sliderHeight = 0; var sliderWidth = 0; var prQuery; var sliding = false; var slideSpeed = 10; var height = '136'; var width = '100%'; var bgColor = '##06F'; var widgetWrapper; function prCreateWidget(){ c = prReadCookie('prHideSliderpr15673'); widgetWrapper = document.createElement('div'); widgetWrapper ...[3911 bytes skipped]... | ||
http://www.allanalpass.com/Webservices/jsParseLinks.aspx?id=c0da50ba | 200 OK Content-Length: 9104 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: terminal-b.org ...[463 bytes skipped]... ://shygirlies.com,http://hardcoreteenz.com,http://lounderground.org,http://exposeddaughters.com,http://russianschoolgirls.net,http://lolataboo.com,http://littlet33n.com,http://lilnymph.com,http://juniorpussy.com,http://topchan.info,http://rankingchan.info,http://thechanlist.com,http://www.thechanlist.com/button.php?u=terminal,http://rankingchan.info/button.php?u=terminal,http://topchan.info/button.php?u=terminal,http://young-beach.com/?id=terminal-b.org,http://www.6teentube.com/,http://www.glorytube.net,http://www.elitepornfantasy.net/,http://www.gargonaxtube.net/,http://www.pussy-love.net,http://www.jbteens.net/,http://www.emily18pussy.com/,http://www.young4models.com/,http://www.redhothole.net/,http://young-vagina.com/", Frequency: 0, EncryptUrl: false, Domain: "allanalpass.com", LinkUrl: "http://www.tnabucks.com/c0da50ba", Outside: this, Init: function() { ...[3121 bytes skipped]... | ||
http://www.tnabucks.com/Webservices/jsParseLinks.aspx?id=c0da50ba | 200 OK Content-Length: 9101 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: terminal-b.org ...[463 bytes skipped]... ://shygirlies.com,http://hardcoreteenz.com,http://lounderground.org,http://exposeddaughters.com,http://russianschoolgirls.net,http://lolataboo.com,http://littlet33n.com,http://lilnymph.com,http://juniorpussy.com,http://topchan.info,http://rankingchan.info,http://thechanlist.com,http://www.thechanlist.com/button.php?u=terminal,http://rankingchan.info/button.php?u=terminal,http://topchan.info/button.php?u=terminal,http://young-beach.com/?id=terminal-b.org,http://www.6teentube.com/,http://www.glorytube.net,http://www.elitepornfantasy.net/,http://www.gargonaxtube.net/,http://www.pussy-love.net,http://www.jbteens.net/,http://www.emily18pussy.com/,http://www.young4models.com/,http://www.redhothole.net/,http://young-vagina.com/", Frequency: 0, EncryptUrl: false, Domain: "tnabucks.com", LinkUrl: "http://www.tnabucks.com/c0da50ba", Outside: this, Init: function() { ...[3121 bytes skipped]... | ||
http://chaturbate.com/creative/im/1.js?c=0&filename=240x210a.gif&height=210&width=240&wm=7qk5x&tour=Lc8u&track=track | HTTP/1.1 301 MOVED PERMANENTLY Connection: close Date: Fri, 26 Dec 2014 08:15:31 GMT Location: https://chaturbate.com/creative/im/1.js?c=0&filename=240x210a.gif&height=210&width=240&wm=7qk5x&tour=Lc8u&track=track Server: nginx/1.7.8 Vary: Cookie, Accept-Language Content-Language: en Content-Type: text/html; charset=utf-8 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" Set-Cookie: affkey="eJyrVipSslJQUqoFAAwfAk0="; expires=Sun, 25-Jan-2015 08:15:31 GMT; Max-Age=2592000; Path=/ | clean |
https://chaturbate.com/creative/im/1.js?c=0&filename=240x210a.gif&height=210&width=240&wm=7qk5x&tour=lc8u&track=track | 200 OK Content-Length: 3516 Content-Type: text/html | clean |
https://chaturbate.com/creative/im/ | 404 NOT FOUND Content-Length: 20216 Content-Type: text/html | clean |
https://chaturbate.com/jsi18n/ | 200 OK Content-Length: 2372 Content-Type: text/javascript | clean |
https://ssl-ccstatic.highwebmedia.com/CACHE/js/936fbae33046.js | 200 OK Content-Length: 118690 Content-Type: application/x-javascript | clean |
https://chaturbate.com/ | 200 OK Content-Length: 131052 Content-Type: text/html | clean |
https://ssl-ccstatic.highwebmedia.com/CACHE/js/3615ed074022.js | 200 OK Content-Length: 2196 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: terminal-b.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 26 Dec 2014 08:15:27 GMT
Location: http://www.terminal-b.org/cg/
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4
Content-Length: 374
Content-Type: text/html; charset=iso-8859-1
...374 bytes of data.
GET / HTTP/1.1
Host: terminal-b.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 26 Dec 2014 08:15:27 GMT
Location: http://www.terminal-b.org/cg/
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4
Content-Length: 374
Content-Type: text/html; charset=iso-8859-1
...374 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: terminal-b.org
Referer: http://www.google.com/search?q=terminal-b.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: terminal-b.org
Referer: http://www.google.com/search?q=terminal-b.org
Result:
The result is similar to the first query. There are no suspicious redirects found.