11-05-2019, 11:44 AM
Just published today and this looks like something we would ignore purely at our own risk - so I suggest looking into this ESPECIALLY if you've used any NULLED stuff on your site, ever.
This malware threat is not actually 100% new.
Quoting today's Zdnet article:
This whitepaper is attached here:
Wordfence writeup:
This site plugs its own tool that claims to remove it safely:
And their free (??) plugin is here:
But their site has info that shows it is not free - or that it needs their service for cleaning ??:
This very messy site claims to have good removal info; I didn't see it as very encouraging though:
This site is less messy, but not more encouraging:
What I've been saying right along about all the 3rd party NULLED krap shared here on BBHF from untrustworthy sites is COMPLETELY affirmed by this thread, so I suggest that folks actually read my sig !!
There should be some free tool for cleaning this and if/when I find any I'll post more here.
Best Wishes to All.
This malware threat is not actually 100% new.
Quoting today's Zdnet article:
Quote:WP-VCD has been around since at least February 2017Source:
Code:
https://www.>>>[[[Reported by Members as Spam Site]]]<<</article/an-inside-look-at-wp-vcd-todays-largest-wordpress-hacking-operation/
This whitepaper is attached here:
Quote:WP-VCD: The Malware You Installed On Your Own Site
Author: Mikey Veenstra, GWAPT
Publication Date: November 4, 2019
Wordfence writeup:
Code:
https://www.wordfence.com/blog/2019/11/wp-vcd-the-malware-you-install-on-your-own-sites/
This site plugs its own tool that claims to remove it safely:
Code:
https://www.malcare.com/blog/how-to-detect-and-remove-wp-vcd-malware-a-step-by-step-guide-and-a-bonus-plugin/
And their free (??) plugin is here:
Code:
https://wordpress.org/plugins/malcare-security/
But their site has info that shows it is not free - or that it needs their service for cleaning ??:
Code:
https://www.malcare.com/pricing/
This very messy site claims to have good removal info; I didn't see it as very encouraging though:
Code:
https://developerjillur.me/wp-vcd-malware-removal/
This site is less messy, but not more encouraging:
Code:
https://techglimpse.com/wp-vcd-malware-clean-hacked-wp/
What I've been saying right along about all the 3rd party NULLED krap shared here on BBHF from untrustworthy sites is COMPLETELY affirmed by this thread, so I suggest that folks actually read my sig !!
There should be some free tool for cleaning this and if/when I find any I'll post more here.
Best Wishes to All.
Code:
https://mega.nz/file/a1NHyJoZ#47vL6_PffHvyoD2RyoBcCBFXkbN-Th3lq7QGtf8tOV8