Author Topic: Suspicious URL not flagged?  (Read 1251 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
Suspicious URL not flagged?
« on: May 03, 2016, 01:50:42 PM »
See: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fdi-grand.com%2Fportfolio.php
Why? -cleansed -> 2 suspicious pages: http://killmalware.com/di-grand.com/#
nameserver vuln.: https://test.drownattack.com/?site=onlinenic.com
Also jQuery retirable: -http://di-grand.com
Detected libraries:
jquery - 1.11.3 : (active1)- http://di-grand.com/js/jquery-1.11.3.min.js
Info: Severity: medium
https://github.com/jquery/jquery/issues/2432
http://blog.jquery.com/2016/01/08/jquery-2-2-and-1-12-released/
jquery-ui-dialog - 1.12.0-rc.1 : (active1) -http://di-grand.com
jquery-ui-autocomplete - 1.12.0-rc.1 : (active1) -http://di-grand.com
jquery-ui-tooltip - 1.12.0-rc.1 : (active1) -http://di-grand.com
(active) - the library was also found to be active by running code
1 vulnerable library detected  -> http://toolbar.netcraft.com/site_report?url=http://di-grand.com

yepnope vuln. code...

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: Suspicious URL not flagged?
« Reply #1 on: May 03, 2016, 04:36:50 PM »
Nothing from Avast.

PS: Their PHP and web server need an update ASAP.
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10