Scanned pages/files
Request | Server response | Status |
http://grassrootshealthcare.org/ | 200 OK Content-Length: 43768 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: hacked by Mr. Bangladesh ...[47725 bytes skipped]... ;/td><td class="view-field view-field-og-count">22</td><td class="view-field view-field-og-uid-mail-type"></td><td class="view-field view-field-og-uid-managelink"><a href="/?q=og/manage/9735&destination=custom_login">my membership</a></td> </tr> <tr class="even"><td class="view-field view-field-node-title"><a href="/?q=node/9732">hacked by Mr. Bangladesh</a></td><td class="view-field view-field-users-name">Anonymous</td><td class="view-field view-field-og-count">25</td><td class="view-field view-field-og-uid-mail-type"></td><td class="view-field view-field-og-uid-managelink"><a href="/?q=og/manage/9732&destination=custom_login">my membership</a></td> </tr> <tr class="odd"><td class="view-field view-field-node-title">< ...[5717 bytes skipped]... | ||
http://grassrootshealthcare.org/sites/grassrootshealthcare.org/files/js/cf89861158036e98f3a9202cb7af3e92.js | 200 OK Content-Length: 80680 Content-Type: application/javascript | clean |
http://grassrootshealthcare.org/sites/grassrootshealthcare.org/themes/litejazz/js/pickstyle.js | 200 OK Content-Length: 228 Content-Type: application/javascript | clean |
http://grassrootshealthcare.org/?q=about/grhc_description | 200 OK Content-Length: 32685 Content-Type: text/html | clean |
http://grassrootshealthcare.org/?q=about/grhc_purpose | 200 OK Content-Length: 33036 Content-Type: text/html | clean |
http://grassrootshealthcare.org/sites/grassrootshealthcare.org/files/js/564221dc62a700f8fe591bd668258558.js | 200 OK Content-Length: 84166 Content-Type: application/javascript | clean |
http://grassrootshealthcare.org/?q=about/grhc_goals | 200 OK Content-Length: 31260 Content-Type: text/html | clean |
http://grassrootshealthcare.org/?q=find_us/grhc_map | 200 OK Content-Length: 98101 Content-Type: text/html | clean |
http://maps.google.com/maps?file=api&v=2.115&key=ABQIAAAAQNn1qN-EHDo0hXLH82D_wxRokFS1aPejh8kTtMainBMcBwyOdhSCQtIp_A_d9j96RUr2pEcO8XPj5Q&hl=en | 200 OK Content-Length: 4485 Content-Type: text/javascript | clean |
http://grassrootshealthcare.org/sites/grassrootshealthcare.org/files/js/b00a831300ce1dade03c54dc70dd4ede.js | 200 OK Content-Length: 112633 Content-Type: application/javascript | clean |
http://grassrootshealthcare.org/?q=learn/description | 200 OK Content-Length: 37716 Content-Type: text/html | clean |
http://grassrootshealthcare.org/?q=timeline/healthcare_quality | 200 OK Content-Length: 27565 Content-Type: text/html | clean |
http://grassrootshealthcare.org/sites/grassrootshealthcare.org/files/js/9f03132cde3f5b1de48c4b28637fd114.js | 200 OK Content-Length: 94594 Content-Type: application/javascript | clean |
http://grassrootshealthcare.org/?q=best_practices | 200 OK Content-Length: 125082 Content-Type: text/html | clean |
http://grassrootshealthcare.org/sites/grassrootshealthcare.org/files/js/186ba29048ca862440f7a2b075ca0ca2.js | 200 OK Content-Length: 177814 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: grassrootshealthcare.org
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 28 Sep 2015 16:46:23 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Mon, 28 Sep 2015 16:46:24 GMT
Set-Cookie: SESS7d64a04c2d9d0f2b10a2b2005e02b08a=04d838b95b862cc848487e5307571caf; expires=Wed, 21-Oct-2015 20:19:44 GMT; path=/; domain=.grassrootshealthcare.org
GET / HTTP/1.1
Host: grassrootshealthcare.org
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 28 Sep 2015 16:46:23 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Mon, 28 Sep 2015 16:46:24 GMT
Set-Cookie: SESS7d64a04c2d9d0f2b10a2b2005e02b08a=04d838b95b862cc848487e5307571caf; expires=Wed, 21-Oct-2015 20:19:44 GMT; path=/; domain=.grassrootshealthcare.org
Second query (visit from search engine):
GET / HTTP/1.1
Host: grassrootshealthcare.org
Referer: http://www.google.com/search?q=grassrootshealthcare.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: grassrootshealthcare.org
Referer: http://www.google.com/search?q=grassrootshealthcare.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=grassrootshealthcare.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://grassrootshealthcare.org/
Result: grassrootshealthcare.org is not infected or malware details are not published yet.
Result: grassrootshealthcare.org is not infected or malware details are not published yet.