Author Topic: Only blacklisted site with some insecurity flagged?  (Read 1056 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34051
  • malware fighter
Only blacklisted site with some insecurity flagged?
« on: March 05, 2016, 03:23:04 PM »
GoDaddy abuse.

See: http://killmalware.com/jeffreymichaelssalon.com/#

WordPress issues: RevSlider Plugin outdated: Upgrade required.
Outdated RevSlider Found. Serious risk: Under 4.1.4

Warning User Enumeration is possible  :o
The first two user ID's were tested to determine if user enumeration is possible.

ID   User   Login
1   ebusby   ebusby
2   Dave Easton   david
It is recommended to rename the admin user account to reduce the chance of brute force attacks occurring. As this will reduce the chance of automated password attackers gaining access. However it is important to understand that if the author archives are enabled it is usually possible to enumerate all users within a WordPress installation.

Re: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fjeffreymichaelssalon.com%2Fwp-content%2Fthemes%2Fmx%2Fjs%2Fie10-viewport-bug-workaround.js

Sucuri flags: Known javascript malware. Details: http://sucuri.net/malware/entry/mw:js:gen2?web.js.injection.megaadvertize.001
for instance here: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fjeffreymichaelssalon.com%2Fabout%2F+

Code: [Select]
<script type="text/javascript"> (function(){var hzfhashe="";var fntfktrf= etc. Read about the threat of Bash Shellshock Command Injection Vulnerability here: https://blog.qualys.com/securitylabs/2014/09/24/bash-remote-code-execution-vulnerability-cve-2014-6271
above link article author =  Security Lab's Prutha Parikh

polonus
« Last Edit: March 05, 2016, 03:26:50 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!