Scanned pages/files
Request | Server response | Status |
http://cineastasaragoneses.com/ | 200 OK Content-Length: 6962 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked By ZeynnymouZ <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="es-es" lang="es-es" > <head> <base href="http://cineastasaragoneses.com/" /> <meta http-equiv="content-type" content="text/html; charset=utf-8" /> <meta name="robots" content="index, follow" /> <meta name="keywords" content="Hacked By ZeynnymouZ" /> <meta name="rights" content="vHacked By ZeynnymouZ" /> <meta name="author" content="Super User" /> <meta name="description" content="Hacked By ZeynnymouZ" /> <meta name="generator" content="Joomla! 1.7 - Open Source Content Management" /> <title>Hacked By ZeynnymouZ - PORTADA</title> <link href="/templates/acaportada/favicon.ico" rel="shortcut icon ...[7847 bytes skipped]... | ||
http://cineastasaragoneses.com/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: application/javascript | clean |
http://cineastasaragoneses.com/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: application/javascript | clean |
http://cineastasaragoneses.com/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/javascript | clean |
http://widgets.twimg.com/j/2/widget.js | 200 OK Content-Length: 1489 Content-Type: application/javascript | clean |
http://cineastasaragoneses.com/index.php | 200 OK Content-Length: 6971 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/archivo | 200 OK Content-Length: 94857 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/socios | 200 OK Content-Length: 5875 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/premios | 200 OK Content-Length: 7030 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/sobre | 200 OK Content-Length: 5744 Content-Type: text/html | clean |
http://cineastasaragoneses.com/test404page.js | 404 Not Found Content-Length: 1806 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/basessimon | 200 OK Content-Length: 31284 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/prensasimon | 200 OK Content-Length: 33767 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/inscritossimon | 200 OK Content-Length: 18274 Content-Type: text/html | clean |
http://cineastasaragoneses.com/index.php/finalistassimon | 200 OK Content-Length: 7135 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cineastasaragoneses.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Sun, 30 Nov 2014 01:59:03 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 7473b9df31fd4907b6bcc90cf56f4ebb=rvulf2tabo2mep100e7c0fl9a1; path=/
X-Content-Type-Options: nosniff
X-Frame-Options: sameorigin
X-Powered-By: PHP/5.4.35-0+deb7u2
X-XSS-Protection: 1; mode=block
GET / HTTP/1.1
Host: cineastasaragoneses.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Sun, 30 Nov 2014 01:59:03 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 7473b9df31fd4907b6bcc90cf56f4ebb=rvulf2tabo2mep100e7c0fl9a1; path=/
X-Content-Type-Options: nosniff
X-Frame-Options: sameorigin
X-Powered-By: PHP/5.4.35-0+deb7u2
X-XSS-Protection: 1; mode=block
Second query (visit from search engine):
GET / HTTP/1.1
Host: cineastasaragoneses.com
Referer: http://www.google.com/search?q=cineastasaragoneses.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cineastasaragoneses.com
Referer: http://www.google.com/search?q=cineastasaragoneses.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cineastasaragoneses.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cineastasaragoneses.com/
Result: cineastasaragoneses.com is not infected or malware details are not published yet.
Result: cineastasaragoneses.com is not infected or malware details are not published yet.