Author Topic: Another Word Press site just for linking through, does not resolve...  (Read 837 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
See: https://urlquery.net/report/ca01372a-6d33-41f3-9164-4ef4774be450
linking to    Externally Linked Host   Hosting Provider   Country   
                           getstockd.com   Premier.                   United States
 WordPress Plugins
The following plugins were detected by reading the HTML source of the WordPress sites front page.

js_composer   
Plugins are a source of many security vulnerabilities within WordPress installations, always keep them updated to the latest version available and check the developers plugin page for information about security related updates and fixes.

There are likely more plugins installed than those listed here as the detection method used here is passive. While these results give an indication of the status of plugin updates, a more comprehensive assessment should be undertaken by brute forcing the plugin paths  using a dedicated tool.

Quote
-stockd.com
WEBSITE STATUS
Status:   Domain Registered and Website Active
Response: 200
SSL INFORMATION

Domain: -www.stockd.com
URL: -https://www.stockd.com
  The issuer of this certificate is trusted.
  The Certificate has not expired.
Issued By: DigiCert Inc, US
TITLE
stockd Marketplace ? Just another WordPress site

IP info: https://ipinfo.io/216.221.254.154

Potential problems and suspicious redirect found: https://aw-snap.info/file-viewer/?protocol=secure&ref_sel=GSP2&ua_sel=ff&chk-cache=&fs=1&tgt=d3d3LnN0XV5rIy5eXW0%3D~enc
syntax errors
Quote
setup transport confidential in our web.xml e.g.

...

            <url-pattern>/xxx</url-pattern>

            <url-pattern>/stats/*</url-pattern>

            <url-pattern>/_ah/mail/*</url-pattern>

         </web-resource-collection>

        <user-data-constraint>

            <transport-guarantee>CONFIDENTIAL</transport-guarantee>

        </user-data-constraint>

 

But when this is hit http://localhost/xxx, it is redirected to https://localhost:8443/xxx? Why?
SSL dependant locally to be configured. 

No detections: https://www.virustotal.com/gui/url/64e4c4963639f4ad1bf83fa727e5131775665c3160c4bd48de2f16383b2db012/detection

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!