Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gamexnow.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gamexnow.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gamexnow.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 07 Jan 2015 23:31:55 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d0d5addb196758205347fdb3a4e14f19; path=/
X-Cache: HIT from Backend
X-Pingback: http://gamexnow.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: gamexnow.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 07 Jan 2015 23:31:55 GMT
Pragma: no-cache
Server: nginx admin
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d0d5addb196758205347fdb3a4e14f19; path=/
X-Cache: HIT from Backend
X-Pingback: http://gamexnow.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: gamexnow.com
Referer: http://www.google.com/search?q=gamexnow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gamexnow.com
Referer: http://www.google.com/search?q=gamexnow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gamexnow.com/ | 200 OK Content-Length: 193029 Content-Type: text/html | clean |
http://gamexnow.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js?ver=3.9.2 | 200 OK Content-Length: 33 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/persist.js?ver=3.9.2 | 200 OK Content-Length: 24995 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/store.js?ver=3.9.2 | 200 OK Content-Length: 5337 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ngg_store.js?ver=3.9.2 | 200 OK Content-Length: 891 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/plugins/iphorm-form-builder/js/iphorm.js?ver=1.4.3 | 200 OK Content-Length: 527 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-includes/js/swfupload/swfupload.js?ver=2201-20110113 | 200 OK Content-Length: 37689 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-includes/js/swfobject.js?ver=2.2-20120417 | 200 OK Content-Length: 10231 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-includes/js/swfupload/plugins/swfupload.swfobject.js?ver=2201a | 200 OK Content-Length: 3926 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-includes/js/swfupload/plugins/swfupload.queue.js?ver=2201 | 200 OK Content-Length: 3383 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/lightbox/static/lightbox_context.js?ver=3.9.2 | 200 OK Content-Length: 890 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/plugins/wp-keys-giveaway/js/getkey.js?ver=3.9.2 | 200 OK Content-Length: 733 Content-Type: application/x-javascript | clean |
http://gamexnow.com/wp-content/themes/gamexv2/js/ajax.min.js?ver=3.9.2 | 200 OK Content-Length: 18682 Content-Type: application/x-javascript | clean |