See: https://www.virustotal.com/en/url/b9627a0920972f6bfa3e230f8b220b46c09390f19779ee2688ccdc9c232fc7bf/analysis/1455722375/
Unable to scan site: https://sitecheck.sucuri.net/results/1sforw.top#sitecheck-results
HTTP Server: Apache HTTP Server
PHP Version: 5.3.4 (Outdated)
Website risk status 10 red out of 10: http://toolbar.netcraft.com/site_report?url=http://1sforw.top
See issues: http://www.dnsinspect.com/1sforw.top/1455722930
Reverse Entries for MX records
WARNING: Found mail servers with inconsistent reverse DNS entries. You should fix them if you are using those servers to send email.
Server IP PTR (Reverse) IPs
qp7s1ho.1sforw.top. 185.122.171.77 -mx8.fortyoneeightmomentous.net. ?
All mail servers should have a reverse DNS (PTR) entry for each IP address (RFC 1912). Missing reverse DNS entries will make many mail servers to reject your e-mails or mark them as SPAM.
All IP’s reverse DNS entries should resolve back to IP address (IP → PTR → IP). Many mail servers are configured to reject e-mails from IPs with inconsistent reverse DNS configuration. → http://toolbar.netcraft.com/site_report?url=http://mx8.fortyoneeightmomentous.net Abuse on Enom → https://whois.domaintools.com/fortyoneeightmomentous.net
Fails and errors: http://www.dnsinspect.com/fortyoneeightmomentous.net/1455723272
We have an “open source” threat here.
polonus