Author Topic: Google blacklisted bad web host with issues.  (Read 1407 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34052
  • malware fighter
Google blacklisted bad web host with issues.
« on: March 06, 2016, 05:00:22 PM »
Google safe browse check
WARNING https://www.google.com/transparencyreport/safebrowsing/diagnostic/index.html?hl=nl#url=http://k-tyla.ru/
Google finds the site to be potentially dangerous -> http://killmalware.com/k-tyla.ru/#
IP badness history: https://www.virustotal.com/en/ip-address/178.208.83.40/information/

jQuery library issue: -http://k-tyla.ru/
Detected libraries:
jquery - 1.11.3 : (active1) -http://k-tyla.ru/wp-includes/js/jquery/jquery.js?ver=1.11.3
jquery-migrate - 1.2.1 : -http://k-tyla.ru/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1
Info: Severity: medium
http://bugs.jquery.com/ticket/11290
http://research.insecurelabs.org/jquery/test/
(active) - the library was also found to be active by running code
1 vulnerable library detected

Script blockers should block: -https://mc.yandex.ru/watch/24368776/1?wmode=5&callback=_ymjsp579131941&page-url=http%3A%2F%2Fk-tyla.ru%2F&browser-info=s%3A1024x768x32%3Ask%3A1%3Afpr%3A216613626101%3Acn%3A1%3Aw%3A400x300%3Az%3A60%3Ai%3A20160306164621%3Aet%3A1457279181%3Aen%3Autf-8%3Av%3A679%3Ac%3A1%3Ala%3Ac%3Als%3A434723588944%3Arqn%3A1%3Arn%3A893343078%3Ahid%3A504232036%3Awn%3A54764%3Ahl%3A1%3Arqnl%3A1%3Ast%3A1457279181%3Au%3A1457279181310721369%3At%3A%D0%90%D1%84%D0%B8%D1%88%D0%B0%20%D0%BA%D0%B8%D0%BD%D0%BE%D1%82%D0%B5%D0%B0%D1%82%D1%80%D0%B0%20%D0%A2%D1%83%D0%BB%D0%B0.%20%D0%9A%D0%B8%D0%BD%D0%BE%D1%82%D0%B5%D0%B0%D1%82%D1%80%20%D0%A2%D1%83%D0%BB%D0%B0%20%D0%B2%20%D0%9F%D0%B5%D1%87%D0%B0%D1%82%D0%BD%D0%B8%D0%BA%D0%B0%D1%85%20%D0%AE%D0%92%D0%90%D0%9E.%20%D0%9A%D0%B8%D0%BD%D0%BE%20%D0%B2%20%D0%9F%D0%B5%D1%87%D0%B0%D1%82%D0%BD%D0%B8%D0%BA%D0%B0%D1%85.%20%D0%9A%D1%83%D0%B4%D0%B0%20%D0%BF%D0%BE%D0%B9%D1%82%D0%B8%20%D0%B2%20%D0%9F%D0%B5%D1%87%D0%B0%D1%82%D0%BD%D0%B8%D0%BA%D0%B0%D1%85.

ordPress Plugins
The following plugins were detected by reading the HTML source of the WordPress sites front page.

wp-postratings 1.82   latest release (1.83.2) Update required
http://lesterchan.net/portfolio/programming/php/
video-ads   
cforms   
wp-to-twitter 3.1.6   latest release (3.2.5) Update required
http://www.joedolson.com/wp-to-twitter/
simple-ads-manager 2.9.7.123   latest release (2.9.7.123)
wordpress-popular-posts 3.3.3   latest release (3.3.3)
http://wordpress.org/extend/plugins/wordpress-popular-posts
js_composer   
all-in-one-seo-pack 2.3.2.3   latest release (2.3.2.3)
http://semperfiwebdesign.com
Plugins are a source of many security vulnerabilities within WordPress installations, always keep them updated to the latest version available and check the developers plugin page for information about security related updates and fixes.

Checked for Cloaking: There is a difference of 200 bytes between the version of the page you serve to Chrome and the version you serve to GoogleBot.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!