Author Topic: www.qualitytoldos.com - URL MALWARE: My web is not infected!  (Read 1455 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
www.qualitytoldos.com - URL MALWARE: My web is not infected!
« on: March 13, 2018, 09:11:53 AM »
Hi,

I ve a problem with avast antivirus.

The avast antivirus detect my url how malware, and there is not any problem with the website or the code.

Please, can anybody help me?

I'm doing SEO and i'm at the first page, but all the pleaople that has installed the avast antivirus can't get into the site because appears this:


Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

REDACTED

  • Guest
Re: www.qualitytoldos.com - URL MALWARE: My web is not infected!
« Reply #2 on: March 13, 2018, 09:45:53 AM »
Hi,

Sorry, this is the image capture with the adventence.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: www.qualitytoldos.com - URL MALWARE: My web is not infected!
« Reply #3 on: March 13, 2018, 10:36:07 AM »
You can report a suspected FP (File/Website) here: https://www.avast.com/false-positive-file-form.php
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

REDACTED

  • Guest
Re: www.qualitytoldos.com - URL MALWARE: My web is not infected!
« Reply #4 on: March 13, 2018, 10:58:00 AM »
Great! i did it!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: www.qualitytoldos.com - URL MALWARE: My web is not infected!
« Reply #5 on: March 14, 2018, 05:55:17 AM »
You're welcome.
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
Re: www.qualitytoldos.com - URL MALWARE: My web is not infected!
« Reply #6 on: March 14, 2018, 11:44:09 AM »
While not suspicious nor malicious as far as I can establish,
there is still some room for security measures you should take or should take up with your hoster.

See where 7 alerts were reported for that same IP: https://checkphish.ai/ip/80.241.221.7
See retirable jQuery library: https://retire.insecurity.today/#!/scan/9955ab067d2eab1f7d18a96a1b7dcff328af7ae04ad16735aa56efad43af09d7

Check CMS plug-ins for latest version: The following plugins were detected by reading the HTML source of the WordPress sites front page.

wordpress-seo 7.0.3   latest release (7.0.3)
https://yoa.st/1uj
js_composer   
contact-form-7 5.0.1   latest release (5.0.1)
https://contactform7.com/
revslider   

-vmi116855.contaboserver.net  (hoster CONTABO)

You have 1 error
Wrong certificate installed.
The domain name does not match the certificate common name or SAN.
Warnings
Root installed on the server.
For best practices, remove the self-signed root from the server.

Also consider: https://observatory.mozilla.org/analyze/www.qualitytoldos.com  (recommendations)

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!