holpo
1
holpo
2
A more recent example of such a hack: http://killmalware.com/kcrockyhorror.com/#
See: Fatal error: Call to undefined function wp() in /home/content/96/6595396/html/kcrockyhorror/wp-blog-header.php on line 14
See: http://toolbar.netcraft.com/site_report?url=http://kcrockyhorror.com
polonus
holpo
3
Update, another such malicious script defacemenr: http://killmalware.com/catholicchurchwebdesigns.com/#
VT does not detect these. Sucuri does:
ISSUE DETECTED DEFINITION INFECTED URL
Defacement MW:DEFACED:01 htxp://catholicchurchwebdesigns.com
Defacement MW:DEFACED:01 htxp://catholicchurchwebdesigns.com/404testpage4525d2fdc
Defacement MW:DEFACED:01 htxp://catholicchurchwebdesigns.com/404javascript.js
Defacement MW:DEFACED:01 htxp://catholicchurchwebdesigns.com/404javascript.js
Web site defaced. Details: http://sucuri.net/malware/entry/MW:DEFACED:01
function keypressed(){alert(“Hacked By Zerocore Haxor”);}
→ http://www.zone-h.org/mirror/id/21373962
→ http://www.perfectleads.com/lead/14714771/catholicchurchwebdesigns.com
Paraded here in 2013 already: http://www.webpagesthatsuck.com/worst-websites-of-2013-Jan-to-June.html
pol
Quttera misses detection completely: http://quttera.com/detailed_report/catholicchurchwebdesigns.com