SE visitors redirects - vulnerable server PHP/5.5.30 Avoid header

Do not visit site unsuitable, as it is a smut and Pr0n-site and not fit for minors.

See: http://killmalware.com/apartmanibaska.com/
See: Security Headers for http://apartmanibaska.com all missing and the mentioned warning: Server Information X-Powered-By PHP/5.5.30 Avoid header Details
Including information about the server provides no tangible benefit to either the browser or user. It can direct an attacker to known vulnerabilities in the server version and should therefore be avoided. Read: https://github.com/owncloud/core/issues/22666
I get a HTTP ERROR 500 → http://toolbar.netcraft.com/site_report?url=http://apartmanibaska.com
c-panel page: http://85.10.55.149/cgi-sys/defaultwebpage.cgi
Insecure tracking: 50% of the trackers on this site could be protecting you from NSA snooping. Tell to fix it.
Cloaking on site
here is a difference of 33918 bytes between the version of the page you serve to Chrome and the version you serve to GoogleBot. This probably means some code is running on your site that’s trying to hide from browsers but make Google think there’s something else on the page

Status code differ: Status codes
These should normally all be the same.

Google Chrome returned code 500
GoogleBot returned code 200

polonus