• Skip to primary navigation
  • Skip to content
  • Skip to primary sidebar
  • Skip to footer

Sucuri Blog

Website Security News

  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Enterprise Website Security
    • Multisite Solutions
  • Features
    • Detection
    • Protection
    • Performance
    • Response
    • Backups
  • Partners
    • Agency Solutions
    • Partners
    • Referral Program
    • Ecommerce
  • Resources
    • Guides
    • Webinars
    • Infographics
    • SiteCheck
    • Reports
    • Email Courses
  • Immediate Help
  • Login

UFSC.br – Brazilian University hosting SEO SPAM

June 8, 2010David Dede

0
SHARES
FacebookTwitterSubscribe

UFSC.br (Brazilian Federal university in Santa Catarina), one of the biggest universities in Brazil, is hosting SEO SPAM on almost all their departamental web sites:

http://www.sead.ufsc.br – Department for distant education
http://cco.inf.ufsc.br/ – Computer science department (using WordPress 2.2)
http://www.lec.ufsc.br/ – Engineering department
http://emc.ufsc.br – Mechanical engineering department
http://www.ndi.ufsc.br/ – Department for child development
http://www.bu.ufsc.br/ – Library department
www.dssmovimentossociais.ufsc.br
http://www.infosam.ufsc.br/

And I could go on and on with this list. Most of them are using old versions of WordPress and Joomla, explaining how they got hacked.

We found it out while analyzing another hacked site that had hundreds of links to sead.ufsc.br:

<a href=”http://www.sead.ufsc.br/capas_fim2409/115/Drug-Free-Viagra.html”
title=”Drug Free Viagra”>Drug Free Viagra
..
<a href=”http://www.sead.ufsc.br/capas_fim2409/115/Affordable-Cheap-Propecia.html”
title=”Affordable Cheap Propecia”>Affordable Cheap Propecia

We searched a little more and saw many references to cco.inf.ufsc.br, which had spam similar to what we disclosed in this article. The shame is that they are still using WordPress 2.2… This is the output of our scanner against it:

http://sucuri.net/?page=saved-scan&scan=a27e24d491b07d461abc74f0dcec1e7f-saved

To search for more sites, use those Google queries:

“buy viagra” inurl:ufsc.br
“movie download” inurl:ufsc.br

As always, we tried to contact them and got no replies… If you know anyone working there, let them know about it.

If your site is hacked (or contains malware), and you need help, send us an email at support@sucuri.net or visit our site: Sucuri Security. We can get your sites clean up right away.

Also, consider checking out our site security monitoring. We will monitor your sites 24×7 and alert you if it ever gets infected with malware, hacked or blacklisted.

0
SHARES
FacebookTwitterSubscribe

Categories: Website SecurityTags: Hacked Websites, SEO Spam

About David Dede

David is a Security Researcher at Sucuri. He spends most of his time dissecting vulnerabilities and security issues. You won't find him on Twitter because he is paranoid about privacy.

Reader Interactions

Comments

  1. John

    June 9, 2010

    Have you tried emailing Brazil?
    http://cartilha.cert.br/spam/sec1.html#subsec1.6

  2. Henrique

    June 11, 2010

    For the really big universities in Brazil, you can contact the CERT of the high-speed academic network (RNP.BR) if you cannot find the CERT of that particular university. Email a full incident description to: cais@cais.rnp.br. I suppose CERT.BR can also forward the warnings to someone.

  3. Iacami

    June 15, 2010

    Hello! I'm from Florianópolis (city where ufsc is located) and I sent an e-mail to admins, two weeks ago I reported a SQL injection issue (answered 6 days ago).. ty guys!

Primary Sidebar

Socialize With Sucuri

We're actively engaged across multiple platforms. Follow us and let's connect!

  • Facebook
  • Twitter
  • LinkedIn
  • YouTube
  • Instagram
  • RSS Feed

2019 Threat Report

Join Over 20,000 Subscribers!

Footer

Products

  • Website Firewall
  • Website AntiVirus
  • Website Backups
  • WordPress Security
  • Enterprise Services

Solutions

  • DDos Protection
  • Malware Detection
  • Malware Removal
  • Malware Prevention
  • Blacklist Removal

Support

  • Blog
  • Knowledge Base
  • SiteCheck
  • Research Labs
  • FAQ

Company

  • About
  • Media
  • Events
  • Employment
  • Contact
  • Testimonials
  • Facebook
  • Twitter
  • LinkedIn
  • Instagram

Customer Login

Sucuri Home

  • Terms of Use
  • Privacy Policy
  • Frequently Asked Questions

© 2021 Sucuri Inc. All rights reserved

Sucuri Cookie Policy
See our policy>>

Our website uses cookies, which help us to improve our site and enables us to deliver the best possible service and customer experience.