Author Topic: Does Avast detect Trojan.Script.Expack.brblya on this website?  (Read 1240 times)

0 Members and 1 Guest are viewing this topic.

Online polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34052
  • malware fighter
See: https://www.virustotal.com/en/url/9f676b7545334b42cdf96fed71c6420f3ba6ce0b2101c47e7ba82b957982e8af/analysis/1457280315/
2 warnings: https://asafaweb.com/Scan?Url=in-portret.nl
Sucuri flags it as known javascript malware. Details: http://sucuri.net/malware/entry/mw:js:gen2?web.js.injection.megaadvertize.001

jQuery libraries detected: -http://in-portret.nl
Detected libraries:
jquery-migrate - 1.2.1 : -http://www.in-portret.nl/wp-includes/js/jquery/jquery-migrate.min.js?ver=438807259fb8c481528c677cfba25cc2
Info: Severity: medium
http://bugs.jquery.com/ticket/11290
http://research.insecurelabs.org/jquery/test/
jquery - 1.11.3 : (active1) -http://www.in-portret.nl/wp-includes/js/jquery/jquery.js?ver=438807259fb8c481528c677cfba25cc2
(active) - the library was also found to be active by running code
1 vulnerable library detected

WordPress scan: WordPress Plugins
The following plugins were detected by reading the HTML source of the WordPress sites front page.

easy-fancybox 1.5.7   latest release (1.5.7)
http://status301.net/wordpress-plugins/easy-fancybox/
wp-super-cache 1.4.7   latest release (1.4.7)
https://wordpress.org/plugins/wp-super-cache/
featured-posts-grid 1.7   latest release (1.7)
http://chasepettit.com
slideshow-gallery 1.5.3.4   latest release (1.6.3) Update required
http://tribulant.com/plugins/view/13/wordpress-slideshow-gallery
Plugins are a source of many security vulnerabilities within WordPress installations, always keep them updated to the latest version available and check the developers plugin page for information about security related updates and fixes.

Links checked by Google Safebrowsing and detected:

Externally Linked Host   Hosting Provider   Country

www.in-portret.nl   Duocast B.V.   Netherlands

www.studio.in-portret.nl   Duocast B.V.   Netherlands

studio.in-portret.nl   Duocast B.V.   Netherlands

Flagged as malicious: -http://www.domxssscanner.com/scan?url=http%3A%2F%2Fwww.in-portret.nl%2Fwp-content%2Fplugins%2Ffeatured-posts-grid%2Fjs%2Ffpg.js.php%3Fver%3D438807259fb8c481528c677cfba25cc2

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!