Author Topic: on the DrWeb's list of known infection sources.  (Read 1763 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
on the DrWeb's list of known infection sources.
« on: September 30, 2014, 03:25:53 PM »
https://www.virustotal.com/nl/url/79f8527ccaaa0783aa14eaebbfb4ea0742c538be0c7b5eeb0176e8417ef05ece/analysis/1412081725/ -> Outdated Web Server Nginx Found   Vulnerabilities on nginx   nginx/1.2.3
Many issues flagged: http://quttera.com/detailed_report/hq1f-fiiil1ues.rsibiri.ru
IP badness history: https://www.virustotal.com/nl/ip-address/91.202.63.43/information/
Bad web rep: https://www.mywot.com/en/scorecard/rsibiri.ru
Javascript -> http://jsunpack.jeek.org/?report=2e39adedf12b6fcb3c32074e35e92c6cf307be4f
and               http://jsunpack.jeek.org/?report=225814a78cc903b16a59824f4298f7c6f809b9fd
XHR Cross Object Resource Sharing requests are prohibited and that is the only good http header policy,
with 9 not so happy finds.
What is wrong inside the website source see attached.

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!