Author Topic: anti virus para world pres  (Read 1525 times)

0 Members and 1 Guest are viewing this topic.

Offline terragrow

  • Newbie
  • *
  • Posts: 1
anti virus para world pres
« on: October 27, 2022, 10:41:11 AM »
buenas a todos! soy ruben y regento una pagina web y un comercio local, el problema es que me han tirado la web en un par de ocasiones y no se si se puede colocar avast en mi web ya que lo tengo en todos los equipos tanto encasa como en el trabajo y desconozco si se puede mi web por si necesitas ver algo de seguridad hxxps://terragrowshop.com/  no se si es por el tipo de nicho pero este sector soporta ataques constantes en internet.. mil gracias quedo ala espera.
« Last Edit: October 27, 2022, 10:55:30 AM by r@vast »

Offline Infratech Solutions

  • Avast Reseller
  • Massive Poster
  • *
  • Posts: 2443
  • Mayorista e integrador de Avast en España
    • Ciberseguridad Avast para empresas y MSPs en España.
Re: anti virus para world pres
« Reply #1 on: October 27, 2022, 10:54:17 AM »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34051
  • malware fighter
Re: anti virus para world pres
« Reply #2 on: October 27, 2022, 01:17:59 PM »
Ola terragrow and Infratech Solutions,

I reply to you in English as it is standard language of these here forums. There is a spanish section as well. Please inform.

Your website is outdated. You are making use of an outdated and vulnerable version of PHP.
See: https://sitecheck.sucuri.net/results/terragrowshop.com

Threat detected as a misconfiguration means your site could be hacked.
Re:
Quote
Directory Indexing
In the test an attempt was made to list the directory contents of the uploads and plugins folders to determine if Directory Indexing is enabled. This is a common information leakage vulnerability that can reveal sensitive information regarding your site configuration or content.

Path Tested   Status
/wp-content/uploads/      enabled  (this setting is wrong and should be set to disabled.
/wp-content/plugins/      disabled
Directory indexing is tested on the /wp-content/uploads/ and /wp-content/plugins/ directores. Note that other directories may have this web server feature enabled, so ensure you check other folders in your installation. It is good practice to ensure directory indexing is disabled for your full WordPress installation either through the web server configuration or .htaccess.
Weak security issue for jquery and PHP version.
Quote
Weak Security JavaScript Library  Migrate please to a secure version.
jquery-migrate 3.3.2

No vulnerabilities detected in this version
JavaScript Library
jquery 3.6.0

No vulnerabilities detected in this version

Missing security headers foundfor x-content-type-option, x-xss-frame-options,
content security policy-options, no secure autocomplete options. SSL  implementation is secure.

Con Dios,

polonus (volunteer 3rd party cold reconnassance website securty analyst and website error-hunter)
« Last Edit: October 27, 2022, 01:20:35 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34051
  • malware fighter
Re: anti virus para world pres
« Reply #3 on: October 27, 2022, 01:43:49 PM »
Interesting discussion on the use of ExactMetris fron-end plug-in in Word Press here: (source: quora dot com)
https://www.quora.com/What-is-ExactMetrics-in-Wordpress-Can-I-trust-it?share=1

Check for update versions:
Quote
Plugin   Update Status   About
kk-star-ratings 5.3.4    Current   latest release (5.3.4)
https://github.com/kamalkhan/kk-star-ratings
wordpress-seo-premium 19.3    Unknown   
revslider    Unknown   
divi-builder    Unknown   
gp-premium 2.1.2    Unknown   
moneytigo 1.5.3    Current   latest release (1.5.3)
https://my.ovri.app
srs-simple-hits-counter 1.1.0    Current   latest release (1.1.0)
http://sandyrig.com/srs-simple-hits-counter/
age-gate    Unknown   latest release (3.0.9)
https://agegate.io/
anti-spam 7.3.3    Current   latest release (7.3.3)
http://wordpress.org/plugins/anti-spam/
table-of-contents-plus 2106    Current   latest release (2106)
google-analytics-dashboard-for-wp 7.9.1    Current   latest release (7.9.1)
https://exactmetrics.com
woocommerce 7.0.0    Current   latest release (7.0.0)
https://woocommerce.com/


pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!