Page 1 of 2

bdplants.com

Posted: Tue Nov 17, 2015 12:12 pm
by Sym.On
Site URL: http://bdplants.com
Scorecard: View scorecard

Introduction:
This is a Plant/Tree Shop

Passionate about plants?

So are we!

bdplants.com is a grower that discovers, develops, and grows plants for your home and life -- indoors and out.

Discover our beautiful houseplants great for windowsills, sunrooms or living rooms based on the changing lighting throughout your home. They come in every sizeā€”big to compact, making them an easy choice for small spaces, such as dorm rooms and apartments. Our varieties make the best office plants, ideal for sprucing up the workplace because of their hardy nature and varying lighting needs.

Start Searching For Your Exotic Indoor Houseplant with us.

Has privacy policy?
http://bdplants.com/index.php?id_cms=3&controller=cms

Has a way for users to contact site owners?
http://bdplants.com/index.php?controller=contact

Whois Information:
http://whois.domaintools.com/bdplants.com

Disclaimer:
This post was generated automatically. All information is as entered by the site owner.

RE: bdplants.com

Posted: Tue Nov 17, 2015 4:29 pm
by williKi
Do you know who the user "Sym.On" is with one post today "this is good site. no virus nothing."? According to ICANN, this domain has only been around since last August: hxxps://whois.icann.org/en/lookup?name=bdplants.com. Per HPHosts, it is already listed for Phishing: hxxp://hosts-file.net/?s=bdplants.com.

RE: bdplants.com

Posted: Tue Nov 17, 2015 7:16 pm
by Sym.On
this site is fresh and clear. thanks

RE: bdplants.com

Posted: Tue Nov 17, 2015 7:38 pm
by williKi
I am withholding any rating. Thanks for your time.

RE: bdplants.com

Posted: Tue Nov 17, 2015 7:50 pm
by Guest
Hello,

Due to this phishing: https://www.google.com/search?q=bdplant ... 3Fphish_id

=> The three URLs on phishtank make reference to the same phishing URL on your site which is down.

What precautions did you take to avoid this problem?

For the blacklist:
You can go here: http://hosts-file.net/?s=bdplants.com and click on Request removal.

RE: bdplants.com

Posted: Wed Nov 18, 2015 3:18 am
by Sym.On
we already removed all those links and continuously monitoring the site for future problem. we are very concern about user problem. thanks.

RE: bdplants.com

Posted: Wed Nov 18, 2015 3:53 am
by Sym.On
<quote user="matiks">
Hello,

Due to this phishing: https://www.google.com/search?q=bdplant ... 3Fphish_id

=> The three URLs on phishtank make reference to the same phishing URL on your site which is down.

What precautions did you take to avoid this problem?

For the blacklist:
You can go here: http://hosts-file.net/?s=bdplants.com and click on Request removal.
[/quote]

We have changes all password along with 2 fact authentication.

Secured FTP ensured.

Clean the PC from where we login.


RE: bdplants.com

Posted: Wed Nov 18, 2015 12:02 pm
by Guest
It is a first good step.

Due to this problem, your site is also listed :
  • Norton
  • Siteadvisor
  • Etc...
I will not assess your site while it is listed. Also, as you have an online shop and you require personal information, you should consider a SLL certificate.

RE: bdplants.com

Posted: Wed Nov 18, 2015 6:48 pm
by drsumit
Image
______________________________________________________________________________________________________________________________________
Image
__________________________________________________________________________________________________________________________________________

Also detected by
http://www.avgthreatlabs.com/ww-en/webs ... lants.com/
http://quttera.com/detailed_report/bdplants.com/
https://www.virustotal.com/en/url/50f35 ... 447872541/

Please work towards securing your site by removing any malicious content
and then by patching your server. Always change passwords before finally
publishing your content.

Image
[red]Even though you use Google Analytics there is no mention about it in your privacy policy which is a direct violation of Google Analytics terms of service. Overall your privacy policy is too short considering the fact that you use cookies and collect email address and other data through forms. [/red]

Quoting Google terms :
[cite]You must post a Privacy Policy and that Privacy Policy must provide notice of Your use of cookies that are used to collect data. You must disclose the use of Google Analytics, and how it collects and processes data. [/cite]

AT THIS MOMENT I HAVE NOT RATED DUE TO MULTIPLE ISSUES WHICH NEEDS TO BE FIXED
EACH AND EVERY AV COMPANY NEEDS TO REMOVE YOUR SITE FROM THEIR SITE BEFORE IT CAN BE RATED

I HAVE COMMENTED ON YOUR SITE'S SCORECARD

RE: bdplants.com

Posted: Thu Nov 19, 2015 3:03 pm
by Sym.On
thanks to all for time.

We already add a privacy policy for using Google Analytics and also send review request in those mentioned website.

I m telling again this site is safe and few scanner is not updating from last 4-5 days.

Thanks