Best Blackhat Forum

Full Version: ❤️WARNING❤️=> WP-VCD: The Malware You Install On Your Own Site
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Pages: 1 2
Just published today and this looks like something we would ignore purely at our own risk - so I suggest looking into this ESPECIALLY if you've used any NULLED stuff on your site, ever.

This malware threat is not actually 100% new.
Quoting today's Zdnet article:
Quote:WP-VCD has been around since at least February 2017
Source:
Code:
https://www.>>>[[[Reported by Members as Spam Site]]]<<</article/an-inside-look-at-wp-vcd-todays-largest-wordpress-hacking-operation/

This whitepaper is attached here:
Quote:WP-VCD: The Malware You Installed On Your Own Site
Author: Mikey Veenstra, GWAPT
Publication Date: November 4, 2019

Wordfence writeup:
Code:
https://www.wordfence.com/blog/2019/11/wp-vcd-the-malware-you-install-on-your-own-sites/

This site plugs its own tool that claims to remove it safely:
Code:
https://www.malcare.com/blog/how-to-detect-and-remove-wp-vcd-malware-a-step-by-step-guide-and-a-bonus-plugin/

And their free (??) plugin is here:
Code:
https://wordpress.org/plugins/malcare-security/

But their site has info that shows it is not free - or that it needs their service for cleaning ??:
Code:
https://www.malcare.com/pricing/

This very messy site claims to have good removal info; I didn't see it as very encouraging though:
Code:
https://developerjillur.me/wp-vcd-malware-removal/

This site is less messy, but not more encouraging:
Code:
https://techglimpse.com/wp-vcd-malware-clean-hacked-wp/

What I've been saying right along about all the 3rd party NULLED krap shared here on BBHF from untrustworthy sites is COMPLETELY affirmed by this thread, so I suggest that folks actually read my sig !!

There should be some free tool for cleaning this and if/when I find any I'll post more here.

Best Wishes to All.

Code:
https://mega.nz/file/a1NHyJoZ#47vL6_PffHvyoD2RyoBcCBFXkbN-Th3lq7QGtf8tOV8
Thanks for the warning.!
Thanks will read with care. Reps
This may be so very serious of a threat - I wish that admins would pin it so that more folks might see the danger of it !!
Super service to us all smithnowt, thanks for the heads up.
More people need to know about this. Great share!
Hi and thanks.
Add this videos to your thread too:










Cheers Cool
Wonderfully helpful info Appie13 - thanks for that addition here !!
(+Rep given, as always.)
(12-28-2019 11:29 AM)smithnowt Wrote: [ -> ]Wonderfully helpful info Appie13 - thanks for that addition here !!
(+Rep given, as always.)

You welcome Cool
Thanks for the awareness
Pages: 1 2
Reference URL's