Re: Site blocked by Avast: URL Phising

Hi please remove from blacklist my website malieinsteini.com.pl thx

Aside from Avast the site is considered a Medium Security Risk.
https://sitecheck.sucuri.net/results/malieinsteini.com.pl

You might also consider the points raised here.
https://webhint.io/scanner/05ca7f37-e5cb-4c0e-ae8e-b40cff97285d

Whilst these may not be the direct result of the Avast alert they are something that you should consider.

You should also use the - Reporting Possible False Positive File or Website - https://www.avast.com/false-positive-file-form.php. As that goes direct to the Avast virus labs.

Witam rolf75,

Apart from what DavidR lined out, some additional information about the security of your site and ad-friendliness.

3 vulnerable retirable jQuery libraries were being detected: https://retire.insecurity.today/#!/scan/408d4dfdc9403f4738599112940155e5a132806be8472e1615b2425ac93c6252

But also consider the pop-up.min.js script loaded from -cdn.js.delivr.net →
Results from scanning URL: -https://cdn.jsdelivr.net/npm/magnific-popup@1.1.0/dist/jquery.magnific-popup.min.js
Number of sources found: 27
Number of sinks found: 8
Opening up to a URL: -https://www.cmarchiviodigitale.com/media/JoomlaXTC/wallFX.js
→ Results from scanning URL:-http://i2.cdn-image.com/media/js/min.js?v2.2
Number of sources found: 10
Number of sinks found: 12

End-users may block that particular pop-up adware, but although questionable it is not malware or pua in a strict sense,
so avast should not bark on that. See whether you need it or could use a more user-friendly advertising scheme.

Also consider the various vulnerabilities for your hosting party at -cloudserver090692.home dot pl
https://www.shodan.io/host/79.96.157.14 - no DOM-XSS issues there however, which is good.

To wszystko,

pozdrawiam,

polonus (volunteer 3rd party cold reconnaissance website security analyst and website error-hunter)

Blocked because of this phishing:
malieinsteini.com[.]pl/modules/mod_ariimageslidersa/ac/linkedin/linkedin/linkedin/linkedin%20(1)/linkedin%20(1)/linkedin.html