Waughd Posted October 15, 2022 ID:1537994 Share Posted October 15, 2022 Our client stylemasterhomes.com.au (IP 103.250.23.124) has customers unable to access the website as Malwarebytes has flagged it as malicious. Can you please let me know how to fix this and why it is considered malicious? I think that it's an issue with the shared hosting environment, but any assistance would be much appreciated. Thank you Link to post Share on other sites More sharing options...
Waughd Posted October 15, 2022 Author ID:1537995 Share Posted October 15, 2022 it now seems their subdomain signatures.stylemasterhomes.com.au (IP 203.220.42.134) is blocked as well can you advise why in this case as well please? Link to post Share on other sites More sharing options...
Porthos Posted October 15, 2022 ID:1537998 Share Posted October 15, 2022 It could be related to these six vendors reports. I suggest you contact each one of them to clear your site. https://www.virustotal.com/gui/url/1ede0a2006b901862884bd9e3ec75d49d477f8a41cba0962a90615900c67ffe2?nocache=1 Link to post Share on other sites More sharing options...
thisisu Posted October 15, 2022 ID:1538006 Share Posted October 15, 2022 Hi, please check out (and remove) the following list of url paths: Looks like they try to download random zip files. e.g. attachment; filename=zForWvhy.zip Regards Link to post Share on other sites More sharing options...
Waughd Posted October 15, 2022 Author ID:1538016 Share Posted October 15, 2022 Thank you both I have escalated to web developer for action Link to post Share on other sites More sharing options...
Waughd Posted October 31, 2022 Author ID:1539936 Share Posted October 31, 2022 I have been advised all should be clear Can the domain be retested and cleared please Thank you Link to post Share on other sites More sharing options...
Staff BjelakovicL Posted November 3, 2022 Staff ID:1540459 Share Posted November 3, 2022 Hi, Thanks for having it cleaned. It seems that the domain is still infected: https://sitecheck.sucuri.net/results/https/stylemasterhomes.com.au https://www.virustotal.com/gui/file/b0e432e7cf2a9927e9a82b30e7cddfd9b55410fe50ce953cc2b03b15dda8e77f https://www.virustotal.com/gui/file/f6561c262c3c80e3c09f1d5515bb40d9a5077903d8e18df867012fcc5b6c9db8 https://www.virustotal.com/gui/file/0046bb0043ed4684556e77b9bfbbd8072e7d875cc846fa6b4224bc563693d381 https://www.virustotal.com/gui/file/65a50900229e037cf5837181fde7ee074e75f0c182622d6860cc8cc61437c8aa Link to post Share on other sites More sharing options...
Waughd Posted November 10, 2022 Author ID:1541422 Share Posted November 10, 2022 It now appears the domain is finally clear with sitecheck.sucuri.net Can the domain be retested and cleared please Thank you Link to post Share on other sites More sharing options...
Solution thisisu Posted November 11, 2022 Solution ID:1541445 Share Posted November 11, 2022 Thank you, the block will be removed Link to post Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now