Author Topic: Word Press vulnerable ....PHISHing site!  (Read 947 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
Word Press vulnerable ....PHISHing site!
« on: August 30, 2015, 07:41:03 PM »
See: http://urlquery.net/report.php?id=1440955939477
WordPress Version
4.1.7
Version does not appear to be latest 4.3 - update now.

WordPress Plugins
The following plugins were detected by reading the HTML source of the WordPress sites front page.

wp-super-cache   latest release (1.4.4)
-http://wordpress.org/plugins/wp-super-cache/
x-shortcodes   
js_composer   
social-media-tabs   latest release (1.5.4)
-http://www.designchemical.com/blog/index.php/wordpress-plugins/wordpress-plugin-social-media-tabs/
contact-form-7   latest release (4.2.2)
-http://contactform7.com/

WordPress Theme
The theme has been found by examining the path /wp-content/themes/ *theme name* /

 X 3.2.3http://theme.co/x/

Warning User Enumeration is possible &  Warning Directory Indexing Enabled

Re: https://www.virustotal.com/nl/url/bc210e6ab23b91fff0ee587eff43e54a4c987c678d095199e5bb03970379735c/analysis/

Blacklisted: http://safeweb.norton.com/report/show?url=bodyou.com

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!