Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=theparadiseofastrangedreame.tumblr.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://theparadiseofastrangedreame.tumblr.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: theparadiseofastrangedreame.tumblr.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 16 Sep 2014 06:56:28 GMT
Vary: X-UA-Device
Content-Type: text/html; charset=utf-8
Link: <http://33.media.tumblr.com/avatar_d455f7dca7a1_128.png>; rel=icon
P3P: CP="ALL ADM DEV PSAi COM OUR OTRo STP IND ONL"
Rating: RTA-5042-1996-1400-1577-RTA
X-Tumblr-Content-Rating: nsfw
X-Tumblr-Pixel: 7
X-Tumblr-Pixel-0: http://www.tumblr.com/impixu?T=1410850588&J=eyJ0eXBlIjoidXJsIiwidXJsIjoiaHR0cDpcL1wvdGhlcGFyYWRpc2VvZmFzdHJhbmdlZHJlYW1lLnR1bWJsci5jb21cLyIsInJlcXR5cGUiOjAsInJvdXRlIjoiXC8ifQ==&U=OBKJPPOIEC&K=b277c705ec4dfbc335aec3d97a2ca8fcbb8cafb8b6b4ec962633d6b9b3da3cae--http://www.tumblr.com/impixu?T=1410850588&J=eyJ0eXBlIjoicG9zdCIsInVybCI6Imh0dHA6XC9cL3RoZXBhcmFkaXNlb2Zhc3RyYW5nZWRyZWFtZS50dW1ibHIuY29tXC8iLCJyZXF0eXBlIjowLCJyb3V0ZSI6IlwvIiwicG9zdHMiOlt7InJvb3RfYmxvZ2lkIjoiMTg1NjA5MzgyIiwicm9vdF9w
X-Tumblr-Pixel-1: b3N0aWQiOjg2NDAzODE2MjgzLCJwb3N0aWQiOiI5MTUwNDE2NjYwMCIsImJsb2dpZCI6IjcwODkzMzc3Iiwic291cmNlIjozM30seyJyb290X2Jsb2dpZCI6IjUyODA5Mzg0Iiwicm9vdF9wb3N0aWQiOiI1Njg4MzIyNzczNCIsInBvc3RpZCI6IjkxNTAyMTk2NzQyIiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiNTEzNjgxNDEiLCJyb290X3Bvc3RpZCI6IjIwOTA0ODc4NzM0IiwicG9zdGlkIjoiOTE1MDAyMjMxODMiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiI0MDU5NjIzMCIsInJvb3RfcG9zdGlkIjo5MTE2NjUxODM0OCwicG9zdGlkIjoiOTE0OTgyODExMD
X-Tumblr-Pixel-2: giLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIxMzYwMzMwNjYiLCJyb290X3Bvc3RpZCI6Ijg4NzA4MTU3NzMyIiwicG9zdGlkIjoiOTE0OTYyNTUyMTUiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIxODExMDE1OTUiLCJyb290X3Bvc3RpZCI6IjkwMjEyMzkzMDg5IiwicG9zdGlkIjoiOTE0OTQxODg1MDMiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIxMzYyMTAxNDkiLCJyb290X3Bvc3RpZCI6IjYwOTMzNjE0Mzk2IiwicG9zdGlkIjoiOTE0OTIwODc1MDkiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9
X-Tumblr-Pixel-3: XX0=&U=MCDKGGEFPJ&K=f5d7184a910af5beb33b8c301184dc0c86cb2aab17f9554e337794b23f1bff05--http://www.tumblr.com/impixu?T=1410850588&J=eyJ0eXBlIjoicG9zdCIsInVybCI6Imh0dHA6XC9cL3RoZXBhcmFkaXNlb2Zhc3RyYW5nZWRyZWFtZS50dW1ibHIuY29tXC8iLCJyZXF0eXBlIjowLCJyb3V0ZSI6IlwvIiwicG9zdHMiOlt7InJvb3RfYmxvZ2lkIjoiMTQwMjAwMzk5Iiwicm9vdF9wb3N0aWQiOiI5MDA5Nzc0MDYxNiIsInBvc3RpZCI6IjkxNDg5OTU0MzYyIiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiMTY5NjU4MDYiLCJyb290X3Bvc3RpZCI6Ijg4Mjg0MTQ4OTgw
X-Tumblr-Pixel-4: IiwicG9zdGlkIjoiOTE0ODc4MTU1MTAiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiI1OTI1NjkyNSIsInJvb3RfcG9zdGlkIjoiOTAwMTI3MjA4MjIiLCJwb3N0aWQiOiI5MTQ4NTYwMTk0NSIsImJsb2dpZCI6IjcwODkzMzc3Iiwic291cmNlIjozM30seyJyb290X2Jsb2dpZCI6IjI1MTYwMTA2Iiwicm9vdF9wb3N0aWQiOiI5MDAwMDg0OTUwOSIsInBvc3RpZCI6IjkxNDgzNDYwNTI4IiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiMTcxODcyNzUxIiwicm9vdF9wb3N0aWQiOiI5MDEyODQxMzk4MCIsInBvc3RpZCI6IjkxNDgxMjkyMjA5IiwiYmxvZ2lkIjoiNz
X-Tumblr-Pixel-5: A4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiMTE0OTIzMDQ3Iiwicm9vdF9wb3N0aWQiOiI4OTYxNjQxMzYzOSIsInBvc3RpZCI6IjkxNDc5MTUwMDM0IiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiNjYzMTU1NDAiLCJyb290X3Bvc3RpZCI6IjI5NjY1MzgyOTcyIiwicG9zdGlkIjoiOTE0NzcwNTY2MTQiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIyNTgxNzEyIiwicm9vdF9wb3N0aWQiOiI4Njc1MTI5MjgwMSIsInBvc3RpZCI6IjkxNDc1MjI5NzE0IiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfV19&U=NHJLPALFIE&K=fd37
X-Tumblr-Pixel-6: f3ea4356f43899dae0657fe98ff7aa5eb1236699fc451d8a0fe73e30f77c
X-Tumblr-User: theparadiseofastrangedreame
X-UA-Compatible: IE=Edge,chrome=1
X-UA-Device: desktop
GET / HTTP/1.1
Host: theparadiseofastrangedreame.tumblr.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 16 Sep 2014 06:56:28 GMT
Vary: X-UA-Device
Content-Type: text/html; charset=utf-8
Link: <http://33.media.tumblr.com/avatar_d455f7dca7a1_128.png>; rel=icon
P3P: CP="ALL ADM DEV PSAi COM OUR OTRo STP IND ONL"
Rating: RTA-5042-1996-1400-1577-RTA
X-Tumblr-Content-Rating: nsfw
X-Tumblr-Pixel: 7
X-Tumblr-Pixel-0: http://www.tumblr.com/impixu?T=1410850588&J=eyJ0eXBlIjoidXJsIiwidXJsIjoiaHR0cDpcL1wvdGhlcGFyYWRpc2VvZmFzdHJhbmdlZHJlYW1lLnR1bWJsci5jb21cLyIsInJlcXR5cGUiOjAsInJvdXRlIjoiXC8ifQ==&U=OBKJPPOIEC&K=b277c705ec4dfbc335aec3d97a2ca8fcbb8cafb8b6b4ec962633d6b9b3da3cae--http://www.tumblr.com/impixu?T=1410850588&J=eyJ0eXBlIjoicG9zdCIsInVybCI6Imh0dHA6XC9cL3RoZXBhcmFkaXNlb2Zhc3RyYW5nZWRyZWFtZS50dW1ibHIuY29tXC8iLCJyZXF0eXBlIjowLCJyb3V0ZSI6IlwvIiwicG9zdHMiOlt7InJvb3RfYmxvZ2lkIjoiMTg1NjA5MzgyIiwicm9vdF9w
X-Tumblr-Pixel-1: b3N0aWQiOjg2NDAzODE2MjgzLCJwb3N0aWQiOiI5MTUwNDE2NjYwMCIsImJsb2dpZCI6IjcwODkzMzc3Iiwic291cmNlIjozM30seyJyb290X2Jsb2dpZCI6IjUyODA5Mzg0Iiwicm9vdF9wb3N0aWQiOiI1Njg4MzIyNzczNCIsInBvc3RpZCI6IjkxNTAyMTk2NzQyIiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiNTEzNjgxNDEiLCJyb290X3Bvc3RpZCI6IjIwOTA0ODc4NzM0IiwicG9zdGlkIjoiOTE1MDAyMjMxODMiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiI0MDU5NjIzMCIsInJvb3RfcG9zdGlkIjo5MTE2NjUxODM0OCwicG9zdGlkIjoiOTE0OTgyODExMD
X-Tumblr-Pixel-2: giLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIxMzYwMzMwNjYiLCJyb290X3Bvc3RpZCI6Ijg4NzA4MTU3NzMyIiwicG9zdGlkIjoiOTE0OTYyNTUyMTUiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIxODExMDE1OTUiLCJyb290X3Bvc3RpZCI6IjkwMjEyMzkzMDg5IiwicG9zdGlkIjoiOTE0OTQxODg1MDMiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIxMzYyMTAxNDkiLCJyb290X3Bvc3RpZCI6IjYwOTMzNjE0Mzk2IiwicG9zdGlkIjoiOTE0OTIwODc1MDkiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9
X-Tumblr-Pixel-3: XX0=&U=MCDKGGEFPJ&K=f5d7184a910af5beb33b8c301184dc0c86cb2aab17f9554e337794b23f1bff05--http://www.tumblr.com/impixu?T=1410850588&J=eyJ0eXBlIjoicG9zdCIsInVybCI6Imh0dHA6XC9cL3RoZXBhcmFkaXNlb2Zhc3RyYW5nZWRyZWFtZS50dW1ibHIuY29tXC8iLCJyZXF0eXBlIjowLCJyb3V0ZSI6IlwvIiwicG9zdHMiOlt7InJvb3RfYmxvZ2lkIjoiMTQwMjAwMzk5Iiwicm9vdF9wb3N0aWQiOiI5MDA5Nzc0MDYxNiIsInBvc3RpZCI6IjkxNDg5OTU0MzYyIiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiMTY5NjU4MDYiLCJyb290X3Bvc3RpZCI6Ijg4Mjg0MTQ4OTgw
X-Tumblr-Pixel-4: IiwicG9zdGlkIjoiOTE0ODc4MTU1MTAiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiI1OTI1NjkyNSIsInJvb3RfcG9zdGlkIjoiOTAwMTI3MjA4MjIiLCJwb3N0aWQiOiI5MTQ4NTYwMTk0NSIsImJsb2dpZCI6IjcwODkzMzc3Iiwic291cmNlIjozM30seyJyb290X2Jsb2dpZCI6IjI1MTYwMTA2Iiwicm9vdF9wb3N0aWQiOiI5MDAwMDg0OTUwOSIsInBvc3RpZCI6IjkxNDgzNDYwNTI4IiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiMTcxODcyNzUxIiwicm9vdF9wb3N0aWQiOiI5MDEyODQxMzk4MCIsInBvc3RpZCI6IjkxNDgxMjkyMjA5IiwiYmxvZ2lkIjoiNz
X-Tumblr-Pixel-5: A4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiMTE0OTIzMDQ3Iiwicm9vdF9wb3N0aWQiOiI4OTYxNjQxMzYzOSIsInBvc3RpZCI6IjkxNDc5MTUwMDM0IiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfSx7InJvb3RfYmxvZ2lkIjoiNjYzMTU1NDAiLCJyb290X3Bvc3RpZCI6IjI5NjY1MzgyOTcyIiwicG9zdGlkIjoiOTE0NzcwNTY2MTQiLCJibG9naWQiOiI3MDg5MzM3NyIsInNvdXJjZSI6MzN9LHsicm9vdF9ibG9naWQiOiIyNTgxNzEyIiwicm9vdF9wb3N0aWQiOiI4Njc1MTI5MjgwMSIsInBvc3RpZCI6IjkxNDc1MjI5NzE0IiwiYmxvZ2lkIjoiNzA4OTMzNzciLCJzb3VyY2UiOjMzfV19&U=NHJLPALFIE&K=fd37
X-Tumblr-Pixel-6: f3ea4356f43899dae0657fe98ff7aa5eb1236699fc451d8a0fe73e30f77c
X-Tumblr-User: theparadiseofastrangedreame
X-UA-Compatible: IE=Edge,chrome=1
X-UA-Device: desktop
Second query (visit from search engine):
GET / HTTP/1.1
Host: theparadiseofastrangedreame.tumblr.com
Referer: http://www.google.com/search?q=theparadiseofastrangedreame.tumblr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: theparadiseofastrangedreame.tumblr.com
Referer: http://www.google.com/search?q=theparadiseofastrangedreame.tumblr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://theparadiseofastrangedreame.tumblr.com/ | 200 OK Content-Length: 104443 Content-Type: text/html | clean |
http://assets.tumblr.com/assets/scripts/pre_tumblelog.js?_v=779fe45acc2d029187a87fba65d0af9e | 200 OK Content-Length: 3550 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/tumblelog.js?_v=8082b4b919d77a05b6accc3336dce2f1 | 200 OK Content-Length: 44535 Content-Type: application/javascript | clean |
http://goo.gl/oM6GBZ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Tue, 16 Sep 2014 06:56:29 GMT Pragma: no-cache Location: https://googledrive.com/host/0BxkUaiGRmyqqUHB5MUJqSHhhb1k Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 80:quic,p=0.002 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://googledrive.com/host/0bxkuaigrmyqquhb5mujqshhhb1k | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Tue, 16 Sep 2014 06:56:29 GMT Pragma: no-cache Location: https://e34d5e4c71f4355e194eb705cbffe064ae58bf52.googledrive.com/host/0bxkuaigrmyqquhb5mujqshhhb1k Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Access-Control-Allow-Credentials: false Access-Control-Allow-Headers: Accept, Accept-Language, Authorization, Cache-Control, Content-Disposition, Content-Encoding, Content-Language, Content-Length, Content-MD5, Content-Range, Content-Type, Date, GData-Version, Host, If-Match, If-Modified-Since, If-None-Match, If-Unmodified-Since, Origin, OriginToken, Pragma, Range, Slug, Transfer-Encoding, X-ClientDetails, X-GData-Client, X-GData-Key, X-Goog-AuthUser, X-Goog-PageId, X-Goog-Encode-Response-If-Executable, X-Goog-Correlation-Id, X-Goog-Request-Info, X-Goog-Experiments, x-goog-iam-role, x-goog-iam-authorization-token, X-Goog-Spatula, X-Goog-Upload-Command, X-Goog-Upload-Content-Disposition, X-Goog-Upload-Content-Length, X-Goog-Upload-Content-Type, X-Goog-Upload-File-Name, X-Goog-Upload-Offset, X-Goog-Upload-Protocol, X-Goog-Visitor-Id, X-HTTP-Method-Override, X-JavaScript-User-Agent, X-Pan-Versionid, X-Origin, X-Referer, X-Upload-Content-Length, X-Upload-Content-Type, X-Use-HTTP-Status-Code-Override, X-YouTube-VVT, X-YouTube-Page-CL, X-YouTube-Page-Timestamp Access-Control-Allow-Methods: GET,OPTIONS Access-Control-Allow-Origin: * Alternate-Protocol: 443:quic,p=0.002 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block | clean |
https://e34d5e4c71f4355e194eb705cbffe064ae58bf52.googledrive.com/host/0bxkuaigrmyqquhb5mujqshhhb1k | 404 Not Found Content-Length: 1413 Content-Type: text/html | clean |
https://e34d5e4c71f4355e194eb705cbffe064ae58bf52.googledrive.com//www.google.com/ | 404 Not Found Content-Length: 1413 Content-Type: text/html | clean |
http://e34d5e4c71f4355e194eb705cbffe064ae58bf52.googledrive.com/test404page.js | 404 Not Found Content-Length: 1413 Content-Type: text/html | clean |
http://e34d5e4c71f4355e194eb705cbffe064ae58bf52.googledrive.com//www.google.com/ | 404 Not Found Content-Length: 1413 Content-Type: text/html | clean |
http://tumblikes.com.br/wd.js | 404 Not Found Content-Length: 322 Content-Type: text/html | clean |
http://theparadiseofastrangedreame.tumblr.com/tweets.js | 200 OK Content-Length: 96399 Content-Type: text/html | clean |