Avast WEBforum

Other => Viruses and worms => Topic started by: artfco on August 08, 2020, 06:25:25 AM

Title: My website is blocked
Post by: artfco on August 08, 2020, 06:25:25 AM
Hello the site i manage is getting this url fishing error i scan the url and no problems

can u check and get out the black list

wxw.layouteventos.com.br
htxps://www.layouteventos.com.br

thanks
Title: Re: My website is blocked
Post by: Asyn on August 08, 2020, 07:30:31 AM
You can report a suspected FP (File/Website) here: https://www.avast.com/false-positive-file-form.php
Title: Re: My website is blocked
Post by: artfco on August 17, 2020, 11:15:25 PM
perfect.. ty
Title: Re: My website is blocked
Post by: Asyn on August 18, 2020, 07:55:02 AM
You're welcome.
Title: Re: My website is blocked
Post by: polonus on August 18, 2020, 11:21:56 AM
Hi artfco,

You have two issues with your Word Press CMS you have to tackle a.s.a.p.,
Outdated plug-in:
wordpress-seo 14.7   Warning   latest release (14.8)
https://yoa.st/1uj

 Directory Indexing
In the test an attempt was made to list the directory contents of the uploads and plugins folders to determine if Directory Indexing is enabled. This is a common information leakage vulnerability that can reveal sensitive information regarding your site configuration or content.

Path Tested   Status
/wp-content/uploads/      enabled
/wp-content/plugins/      disabled

Directory indexing is tested on the /wp-content/uploads/ and /wp-content/plugins/ directores. Note that other directories may have this web server feature enabled, so ensure you check other folders in your installation. It is good practice to ensure directory indexing is disabled for your full WordPress installation either through the web server configuration or .htaccess.

Flagged probably because of? https://checkphish.ai/ip/31.170.161.55  -> https://www.shodan.io/host/31.170.161.55

Consider improvement recommendations proposed here: https://webhint.io/scanner/346383cf-1f96-492a-a207-d2382fc26b7f

Wait for a final verdict from avast team, as they are the only ones to come and unblock.

polonus (volunteer 3rd party cold recon website security analyst and website error-hunter)