New scan:

Malware Scanner report for hotelparissantander.es

Malicious/Suspicious/Total urls checked
3/0/15
3 pages have malicious code. See details below
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
Found
Probably the website is defaced. The following signature was found:

- Hacked by Gabby - » Feed  (4 websites defaced)

See details below

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://hotelparissantander.es/
200 OK
Content-Length: 17266
Content-Type: text/html
suspicious
Malicious code - confirmed by antiviruses (see below)

jQuery(window).load(function() {
jQuery('div#sldX').nivoSlider({pauseTime: 6000,directionNav: false,captionOpacity: 0.5});
});

Antivirus reports:

Emsisoft
Android.Adware.Wapsx.A (B)

Deface/Content modification. The following signature was found: - Hacked by Gabby - » Feed

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" dir="ltr" lang="es-ES">
<head profile="http://gmpg.org/xfn/11">
<meta http-equiv="Content-Type" content="text/html; charset=UTF-7" />
<title>Hotel París Santander</title>
<link rel="stylesheet" href="http://hotelparissantander.es/wp-co
...[20310 bytes skipped]...


http://hotelparissantander.es/wp-includes/js/jquery/jquery.js?ver=1.4.2
200 OK
Content-Length: 72194
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/jj-nextgen-jquery-slider/script/jquery.nivo.slider.pack.js?ver=2.4
200 OK
Content-Length: 15919
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/jj-nextgen-jquery-slider/script/jquery.jj_ngg_shuffle.js?ver=3.0
200 OK
Content-Length: 405
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/jj-nextgen-jquery-slider/script/jjnggutils.js?ver=3.0
200 OK
Content-Length: 757
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/nextgen-gallery/shutter/shutter-reloaded.js?ver=1.3.0
200 OK
Content-Length: 9096
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/nextgen-gallery/js/jquery.cycle.all.min.js?ver=2.88
200 OK
Content-Length: 31032
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/nextgen-gallery/js/ngg.slideshow.min.js?ver=1.05
200 OK
Content-Length: 1750
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/plugins/nextgen-gallery/js/ngg.js?ver=2.0
200 OK
Content-Length: 5664
Content-Type: application/javascript
clean
http://maps.google.com/maps?file=api&v=2&sensor=false&key=ABQIAAAA5HVikuVt6fOpQT5lyfKkwBTIT2LLb8o5KjO620dfrsQegBiXjRRuP0e_jVZwrhLXmVsKfVZpjtVg5Q
200 OK
Content-Length: 4671
Content-Type: text/javascript
clean
http://hotelparissantander.es/wp-content/plugins/wp-gmaps2/js/client.js
200 OK
Content-Length: 3400
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/themes/hotel_paris/script.js
200 OK
Content-Length: 7148
Content-Type: application/javascript
clean
http://hotelparissantander.es/wp-content/themes/hotel_paris/swfobject.js
200 OK
Content-Length: 10235
Content-Type: application/javascript
clean
http://hotelparissantander.es/servicios/
200 OK
Content-Length: 17524
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)

jQuery(window).load(function() {
jQuery('div#sldX').nivoSlider({pauseTime: 6000,directionNav: false,captionOpacity: 0.5});
});

Antivirus reports:

Emsisoft
Android.Adware.Wapsx.A (B)

http://hotelparissantander.es/galeria/
200 OK
Content-Length: 29377
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)

jQuery(window).load(function() {
jQuery('div#sldX').nivoSlider({pauseTime: 6000,directionNav: false,captionOpacity: 0.5});
});

Antivirus reports:

Emsisoft
Android.Adware.Wapsx.A (B)


Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: hotelparissantander.es

Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 29 Jun 2015 21:43:59 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=3f8ef6e12e54e180378ef18009162a17; path=/
X-Pingback: http://hotelparissantander.es/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: hotelparissantander.es
Referer: http://www.google.com/search?q=hotelparissantander.es

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=hotelparissantander.es

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hotelparissantander.es/

Result: hotelparissantander.es is not infected or malware details are not published yet.