Scanned pages/files
Request | Server response | Status |
http://xspace.ru/ | 200 OK Content-Length: 300818 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: vk-secrets.ru <title>uneXplored Space</title>
<meta http-equiv="Content-Type" content="text/html; charset="/> <title>uneXplored Space - Íîâîñòè</title> <meta name="description" content="uneXplored Space - ñàéò î ãëîáàëüíûõ êîñìè÷åñêèõ ñòðàòåãèÿõ" /> <meta name="keywords" content="space, game, games, forum, image, images, screenshot, faq, cheat, file, files, patch, êîñìîñ, ñòðàòåãèÿ, êîðàáëè, ôàéë, ôîðìó, êàðò ...[4160 bytes skipped]... | ||
http://xspace.ru/?option=com_games&Itemid=2 | 200 OK Content-Length: 300869 Content-Type: text/html | clean |
http://xspace.ru/?option=com_ponygallery&Itemid=14 | 200 OK Content-Length: 300818 Content-Type: text/html | clean |
http://xspace.ru/?option=com_remository&Itemid=19 | 200 OK Content-Length: 300887 Content-Type: text/html | clean |
http://xspace.ru/index.php?option=com_registration&task=register | 200 OK Content-Length: 300934 Content-Type: text/html | clean |
http://xspace.ru/test404page.js | 404 Not Found Content-Length: 689 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/' | 200 OK Content-Length: 300818 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/?option=com_games&Itemid=2 | 200 OK Content-Length: 300826 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/?option=com_ponygallery&Itemid=14 | 200 OK Content-Length: 300827 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/?option=com_remository&Itemid=19 | 200 OK Content-Length: 300818 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/index.php?option=com_registration&task=register | 200 OK Content-Length: 300818 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/Itemid,99999999/func,userpannel | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Wed, 23 Jul 2014 23:54:33 GMT Location: /component/option,com_ponygallery/func,showupload/?mosmsg=%C4%EE%F1%F2%F3%EF%ED%EE+%F2%EE%EB%FC%EA%EE+%C7%C0%D0%C5%C3%C8%D1%D2%D0%C8%D0%CE%C2%C0%CD%CD%DB%CC+%EF%EE%EB%FC%E7%EE%E2%E0%F2%E5%EB%FF%EC%21%21%21 Server: nginx Content-Type: text/html; charset=windows-1251 Expires: Wed, 23 Jul 2014 23:54:33 GMT Set-Cookie: ae812b4fe5c0a856711dd46a61fa3579=-; path=/ Set-Cookie: mosvisitor=1 Set-Cookie: Apache=78.158.11.226.590521406159673632; path=/; expires=Thu, 23-Jul-15 23:54:33 GMT | clean |
http://xspace.ru/component/option,com_ponygallery/func,showupload/?mosmsg=%c4%ee%f1%f2%f3%ef%ed%ee+%f2%ee%eb%fc%ea%ee+%c7%c0%d0%c5%c3%c8%d1%d2%d0%c8%d0%ce%c2%c0%cd%cd%db%cc+%ef%ee%eb%fc%e7%ee%e2%e0%f2%e5%eb%ff%ec%21%21%21 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=0 Connection: close Date: Wed, 23 Jul 2014 23:54:34 GMT Location: /component/option,com_ponygallery/?mosmsg=%C4%EE%F1%F2%F3%EF%ED%EE+%F2%EE%EB%FC%EA%EE+%C7%C0%D0%C5%C3%C8%D1%D2%D0%C8%D0%CE%C2%C0%CD%CD%DB%CC+%EF%EE%EB%FC%E7%EE%E2%E0%F2%E5%EB%FF%EC%21%21%21 Server: nginx Content-Type: text/html; charset=windows-1251 Expires: Wed, 23 Jul 2014 23:54:34 GMT Set-Cookie: ae812b4fe5c0a856711dd46a61fa3579=-; path=/ Set-Cookie: mosvisitor=1 Set-Cookie: Apache=78.158.11.226.5823414061596745; path=/; expires=Thu, 23-Jul-15 23:54:34 GMT | clean |
http://xspace.ru/component/option,com_ponygallery/?mosmsg=%c4%ee%f1%f2%f3%ef%ed%ee+%f2%ee%eb%fc%ea%ee+%c7%c0%d0%c5%c3%c8%d1%d2%d0%c8%d0%ce%c2%c0%cd%cd%db%cc+%ef%ee%eb%fc%e7%ee%e2%e0%f2%e5%eb%ff%ec%21%21%21 | 200 OK Content-Length: 300827 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/Itemid,99999999/func,special | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://xspace.ru/component/option,com_ponygallery/Itemid,99999999/func,special/sorting,rating/ | 200 OK Content-Length: 300818 Content-Type: text/html | clean |
http://xspace.ru/component/option,com_ponygallery/Itemid,99999999/func,special/sorting,rating/?option=com_games&Itemid=2 | 200 OK Content-Length: 300738 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xspace.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=0
Connection: close
Date: Wed, 23 Jul 2014 23:54:17 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=windows-1251
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Expires: Wed, 23 Jul 2014 23:54:16 GMT
Last-Modified: Wed, 23 Jul 2014 23:54:17 GMT
Set-Cookie: ae812b4fe5c0a856711dd46a61fa3579=-; path=/
Set-Cookie: mosvisitor=1
Set-Cookie: Apache=78.158.11.226.590351406159656719; path=/; expires=Thu, 23-Jul-15 23:54:16 GMT
GET / HTTP/1.1
Host: xspace.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Cache-Control: max-age=0
Connection: close
Date: Wed, 23 Jul 2014 23:54:17 GMT
Pragma: no-cache
Server: nginx
Content-Type: text/html; charset=windows-1251
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Expires: Wed, 23 Jul 2014 23:54:16 GMT
Last-Modified: Wed, 23 Jul 2014 23:54:17 GMT
Set-Cookie: ae812b4fe5c0a856711dd46a61fa3579=-; path=/
Set-Cookie: mosvisitor=1
Set-Cookie: Apache=78.158.11.226.590351406159656719; path=/; expires=Thu, 23-Jul-15 23:54:16 GMT
Second query (visit from search engine):
GET / HTTP/1.1
Host: xspace.ru
Referer: http://www.google.com/search?q=xspace.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xspace.ru
Referer: http://www.google.com/search?q=xspace.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xspace.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xspace.ru/
Result: xspace.ru is not infected or malware details are not published yet.
Result: xspace.ru is not infected or malware details are not published yet.