Forum Replies Created

Viewing 4 replies - 1 through 4 (of 4 total)
  • Thread Starter tehfamine

    (@tehfamine)

    I understand the amount is far greater than what a handful of volunteers can handle. But it’s also creating a repository of infection because they decide to allow free realm to upload anything as opposed to a serious review system.

    But I guess that’s what you get with free.

    Thread Starter tehfamine

    (@tehfamine)

    Does wordpress not validate the plugins?

    I mean, this is a Sitemap plugin that’s installed under a directory called “jpeg-upload-only”. That name has nothing to do with Sitemap or the author. On top of that, there is a fishy function that injects a fishy link into the WordPress header.

    Regardless if everything checks out, how is that methodology allowed in the plugin repository for WordPress? These are peoples websites that are hosted on real servers. 😀

    Thread Starter tehfamine

    (@tehfamine)

    Like I said, opened the zip file and it auto-installed software before extracting the zip file contents. Windows explorer restarted (Windows 8) therefore after. That is very abnormal activity for a normal zip archive.

    You can feel free to check if you want.

    http://downloads.wp.xz.cn/plugin/jpeg-upload-only.bwp-google-xml-sitemaps.zip

    This is the file that I snagged from the authors profile when reviewing other versions of the plugin.

    Thread Starter tehfamine

    (@tehfamine)

    Confirmed.

    The author is malicious. Upon reviewing the developer profile and downloading the previous version zip files, malware was activated after opening the zip files. I don’t know what types, but a commandline window was opened and something was installed after the zip was closed.

    DO NOT DOWNLOAD THIS PLUGIN.

Viewing 4 replies - 1 through 4 (of 4 total)