Scanned pages/files
Request | Server response | Status |
http://hospitalmedisur.com/ | 200 OK Content-Length: 16803 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: Hacked by Milton <body oncontextmenu='return false;' onkeydown='return false;' onmousedown='return false;'>
<title>Hacked by Milton </title> <object width="0" height="0" type="application/x-shockwave-flash" data="http://flash-mp3-player.net/medias/player_mp3.swf"><param name="bgcolor" value="#ffffff"><param name="FlashVars" value="mp3=http://naninu.my.id/fun/like.mp3&loop=1&autoplay=1&volume=100"></object> <meta content='Hacked by Milton' name='description'/> <meta content='Hacked by ...[20478 bytes skipped]... | ||
http://hospitalmedisur.com/nosotros/ | 404 Not Found Content-Length: 462 Content-Type: text/html | clean |
http://hospitalmedisur.com/test404page.js | 404 Not Found Content-Length: 467 Content-Type: text/html | clean |
http://hospitalmedisur.com/tecnologias/ | 404 Not Found Content-Length: 465 Content-Type: text/html | clean |
http://hospitalmedisur.com/especialistas/ | 404 Not Found Content-Length: 467 Content-Type: text/html | clean |
http://hospitalmedisur.com/promociones/plan-mama-bebe/ | 404 Not Found Content-Length: 480 Content-Type: text/html | clean |
http://hospitalmedisur.com/wp-content/uploads/2015/01/PLAN-MAMA-BEBE-3.jpg | 200 OK Content-Length: 261173 Content-Type: image/jpeg | clean |
http://hospitalmedisur.com/promociones/paquetes-para-ti/ | 404 Not Found Content-Length: 482 Content-Type: text/html | clean |
http://hospitalmedisur.com/wp-content/uploads/2015/05/MEDISUR-2.jpg | 200 OK Content-Length: 302318 Content-Type: image/jpeg | clean |
http://hospitalmedisur.com/promociones/ | 404 Not Found Content-Length: 465 Content-Type: text/html | clean |
http://hospitalmedisur.com/wp-content/uploads/2015/02/promociones_21.jpg | 200 OK Content-Length: 99621 Content-Type: image/jpeg | clean |
http://hospitalmedisur.com/wp-content/uploads/2015/02/promociones_22.jpg | 200 OK Content-Length: 99621 Content-Type: image/jpeg | clean |
http://hospitalmedisur.com/calidad-de-vida/ | 404 Not Found Content-Length: 469 Content-Type: text/html | clean |
http://hospitalmedisur.com/author/admin/ | 404 Not Found Content-Length: 466 Content-Type: text/html | clean |
http://hospitalmedisur.com/haz-una-cita/ | 404 Not Found Content-Length: 466 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hospitalmedisur.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 24 Jul 2015 00:54:07 GMT
Pragma: no-cache
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=6b11591d665f22e7a4969ad862e505b7; path=/
X-Pingback: http://hospitalmedisur.com/xmlrpc.php
X-Powered-By: PHP/5.4.29
GET / HTTP/1.1
Host: hospitalmedisur.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 24 Jul 2015 00:54:07 GMT
Pragma: no-cache
Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=6b11591d665f22e7a4969ad862e505b7; path=/
X-Pingback: http://hospitalmedisur.com/xmlrpc.php
X-Powered-By: PHP/5.4.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: hospitalmedisur.com
Referer: http://www.google.com/search?q=hospitalmedisur.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hospitalmedisur.com
Referer: http://www.google.com/search?q=hospitalmedisur.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hospitalmedisur.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hospitalmedisur.com/
Result: hospitalmedisur.com is not infected or malware details are not published yet.
Result: hospitalmedisur.com is not infected or malware details are not published yet.