Scanned pages/files
Request | Server response | Status |
http://www.space-gear.info/ | 200 OK Content-Length: 12408 Content-Type: text/html | clean |
http://www.space-gear.info/common/lib/prototype.js | 200 OK Content-Length: 96046 Content-Type: application/javascript | clean |
http://www.space-gear.info/common/lib/swfobject.js | 200 OK Content-Length: 6881 Content-Type: application/javascript | clean |
http://www.space-gear.info/modules/xanhte/js/admanage.js | 200 OK Content-Length: 2412 Content-Type: application/javascript | clean |
http://www.space-gear.info/include/xoops.js | 200 OK Content-Length: 13762 Content-Type: application/javascript | clean |
http://www.space-gear.info/modules/pico/index.php/content0003.html | 200 OK Content-Length: 12059 Content-Type: text/html | clean |
http://www.space-gear.info/modules/xoopsfaq/ | 200 OK Content-Length: 11413 Content-Type: text/html | clean |
http://www.space-gear.info/modules/pico/index.php/content0005.html | 200 OK Content-Length: 13752 Content-Type: text/html | clean |
http://www.space-gear.info/modules/formmail/index.php?id_form=1 | 200 OK Content-Length: 13182 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Formmail 1.3 hacked by ...[7959 bytes skipped]... r/> <tr> <td class="head"></td> <td class="even"> <input type='submit' class='formButton' name='submit' id='submit' value='éä¿¡' /> </td> </tr> </table> </form> <br /><br /> <div style='text-align: right; font-size: x-small; font-style: italic;'>Formmail 1.3 hacked by <a href='http://www.chushokigyo.net/' target='_blank'>Chushokigyo.net</a></div><div style='text-align: right; font-size: 6pt; font-style: italic;'> Powered by FormMail 1.0beta by Tom <a href='http://malaika.s31.xrea.com/' target='_blank'>Malaika System</a>Based on Formulaire 1.0 © 2003 <a href='http://www.xoops-themes.com/' target='_blank'>xoops-themes·com</a> / Liaise 1.0b5 by NS Tai (aka tuff) < ...[6951 bytes skipped]... | ||
http://www.space-gear.info/lostpass.php | 200 OK Content-Length: 10701 Content-Type: text/html | clean |
http://www.space-gear.info/register.php | 200 OK Content-Length: 17774 Content-Type: text/html | clean |
http://www.space-gear.info/modules/resendmail/ | 200 OK Content-Length: 10468 Content-Type: text/html | clean |
http://www.space-gear.info/modules/openid/try_auth.php?openid_identifier=https%3A%2F%2Fmixi.jp&frompage=/modules/resendmail/ | 200 OK Content-Length: 2188 Content-Type: text/html | clean |
http://www.space-gear.info/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://www.space-gear.info/modules/openid/try_auth.php?openid_identifier=yahoo.co.jp&frompage=/modules/resendmail/ | 200 OK Content-Length: 2288 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: space-gear.info
Result:
GET / HTTP/1.1
Host: space-gear.info
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: space-gear.info
Referer: http://www.google.com/search?q=space-gear.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: space-gear.info
Referer: http://www.google.com/search?q=space-gear.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=space-gear.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://space-gear.info/
Result: space-gear.info is not infected or malware details are not published yet.
Result: space-gear.info is not infected or malware details are not published yet.