SE redirect on webpage with outdated CMS and coding errors (jsunpack verified).

See: http://killmalware.com/thomaspolson.xyz/
WordPress Version
4.3
Version does not appear to be latest 4.6.1 - update now.

Vuln. code: http://www.domxssscanner.com/scan?url=http%3A%2F%2Fthomaspolson.xyz%2Fwp-content%2Fjs%2Fnavigation0235.js%3Fver%3D4.1.1

errors: found JavaScript error: undefined variable jQuery error: undefined function jQuery *

One can just check the variable directly. If not defined it will return a falsy value.

  • Make sure that you have properly referenced the jquery script itself

Kicks up error in a DOM XSS vuln. script: -https://www.gstatic.com/recaptcha/api2/r20161109131337/recaptcha__pl.js
withon line:3:

ReferenceError: reference to undefined XML name :: as declaration is missing a local namespace definition,
that should be added. (Info credits for the above info should go to StackOverflow’s Peter Mortensen and Darin Dimitrov,
thanks guys, pol).

Location redirect: -https://aw-snap.info/file-viewer/?tgt=http%3A%2F%2Fthomaspolson.xyz&ref_sel=GSP2&ua_sel=ff&fs=1
Malcode on redirect: http://urlquery.net/report.php?id=1475855106341
IDS alerts forr

ETPRO CURRENT_EVENTS BossTDS Redirect

polonus (volunteer website security analyst and website error-hunter)