Anti-malware site with asp.net security warnings!

Funny to get these results when scanning: https://asafaweb.com/Scan?Url=www.emsisoft.com%2Fen%2Fsupport%2Fmalware
Excessive header info proliferation and clickjacking warning flagged on Windows Server 2008 Microsoft-IIS/7.5 last seen 13-May-2014

polonus

Also dns issues on the hoster: http://dnscheck.sidn.nl/?time=1386340982&id=1706671&view=basic&test=standard
link to test: http://dnscheck.sidn.nl/?time=1400087784&id=1750689&view=basic&test=standard for ns1.denic.de
Warnings: too small number of IPv6 name servers;
Reverse adres voor 2a02:568:121:6:2:0:0:2 (2.0.0.0.0.0.0.0.0.0.0.0.2.0.0.0.6.0.0.0.1.2.1.0.8.6.5.0.2.0.a.2.ip6.arpa.) not found.
Reverse for 81.91.173.19 points to an unknown (ns3.denic.de.173.91.81.in-addr.arpa).
SOA warnings: #

Reverse adres for 2a02:568:121:6:2:0:0:2 (2.0.0.0.0.0.0.0.0.0.0.0.2.0.0.0.6.0.0.0.1.2.1.0.8.6.5.0.2.0.a.2.ip6.arpa.) not found.

PTR record(s) for address could not be found in the .arpa-zone. (ip6.arpa. for IPv6 addresses and in-addr.arpa. for IPv4).

Reverse for 2a02:568:122:16:1:0:0:2 points to an unknown host name (mailin-2.fra1.osl.denic.de).

Also see glue check here: http://www.dnsinspect.com/denic.dehttp://dnslookup.fr/mailin-2.fra1.osl.denic.de

More exposure here: Name Servers Versions are exposed
Domain doesn’t have SPF record - spam related exposure.

You would not expect that there…

polonus

Have to admit that hiding the exposed Name Servers Version is security through obscurity as you can always exactly find this out by fingerprinting,
read: http://www.cyberciti.biz/faq/hide-bind9-dns-sever-version/ info credits NixCraft
Florian030 on how to forge.com

You can set version in /etc/bind/named.conf to something like “DNS server” or "use fpdns to get version number ". Afterwards restart bind.

D

Posted it in their forum. :slight_smile: